Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Untrusted Search Path
org.apache.tomcat:tomcat[9.0.23,9.0.106)[10.1.0,10.1.42)[11.0.0-M1,11.0.8)Maven29 Oct 2025
  • H
Untrusted Search Path
org.apache.tomcat:tomcat-catalina[9.0.23,9.0.106)[10.1.0,10.1.42)[11.0.0-M1,11.0.8)Maven29 Oct 2025
  • H
Untrusted Search Path
org.apache.tomcat.embed:tomcat-embed-core[9.0.23,9.0.106)[10.1.0,10.1.42)[11.0.0-M1,11.0.8)Maven29 Oct 2025
  • M
SQL Injection
typeorm<0.3.26npm29 Oct 2025
  • M
Cross-site Scripting (XSS)
fastmcp[,2.13.0)pip29 Oct 2025
  • C
Malicious Package
zustand.js*npm29 Oct 2025
  • C
Malicious Package
typescriptjs*npm29 Oct 2025
  • C
Malicious Package
react-router-dom.js*npm29 Oct 2025
  • C
Malicious Package
nodemonjs*npm29 Oct 2025
  • C
Malicious Package
ethetsjs*npm29 Oct 2025
  • C
Malicious Package
ethesjs*npm29 Oct 2025
  • C
Malicious Package
etherdjs*npm29 Oct 2025
  • C
Malicious Package
dizcordjs*npm29 Oct 2025
  • C
Malicious Package
dezcord.js*npm29 Oct 2025
  • C
Malicious Package
deezcord.js*npm29 Oct 2025
  • M
Cross-site Scripting (XSS)
privatebin/privatebin>=1.7.7, <2.0.2Composer29 Oct 2025
  • L
Improper Restriction of Communication Channel to Intended Endpoints
github.com/bishopfox/sliver/server/c2<1.5.44Go29 Oct 2025
  • L
Improper Restriction of Communication Channel to Intended Endpoints
github.com/bishopfox/sliver/server/netstack<1.5.44Go29 Oct 2025
  • M
Files or Directories Accessible to External Parties
github.com/edgelesssys/contrast/initializer<1.12.1Go29 Oct 2025
  • M
Uncontrolled Search Path Element
org.keycloak:keycloak-quarkus-server[,26.4.0)Maven29 Oct 2025
  • M
Improper Neutralization
@auth/core<0.41.1npm29 Oct 2025
  • M
Improper Neutralization
next-auth<4.24.12>=5.0.0-beta.0 <5.0.0-beta.30npm29 Oct 2025
  • H
Arbitrary File Upload
alexusmai/laravel-file-manager>=1.0.0Composer29 Oct 2025
  • H
Use After Free
Firefox[,144.0.2)Unmanaged (C/C++)29 Oct 2025
  • M
Server-side Request Forgery (SSRF)
@astrojs/internal-helpers<0.7.3npm29 Oct 2025
  • H
Insecure Default Initialization of Resource
dotnetnuke.core[,10.1.1)NuGet29 Oct 2025
  • M
Cross-site Scripting (XSS)
code16/sharp<9.11.1Composer29 Oct 2025
  • H
Arbitrary File Upload
dotnetnuke.core[,10.1.1)NuGet29 Oct 2025
  • M
Cross-site Scripting (XSS)
dotnetnuke.core[,10.1.1)NuGet29 Oct 2025
  • H
Regular Expression Denial of Service (ReDoS)
starlette[,0.49.1)pip29 Oct 2025