Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Deserialization of Untrusted Data
CVE-2017-6920
Affects
drupal/drupal
| Versions
>=8.0.0, <8.3.4
M
Information Exposure
CVE-2017-6922
Affects
drupal/drupal
| Versions
>=7.0.0, <7.56
>=8.0.0, <8.3.4
M
Arbitrary File Upload
CVE-2017-6921
Affects
drupal/drupal
| Versions
>=8.0.0, <8.3.4
H
Access Restriction Bypass
CVE-2017-6919
Affects
drupal/drupal
| Versions
>=8.3.0, <8.3.1
<8.2.8
H
Cross-site Request Forgery (CSRF)
CVE-2017-6379
Affects
drupal/drupal
| Versions
>=8.0.0, <8.2.7
H
Access Restriction Bypass
CVE-2017-6377
Affects
drupal/drupal
| Versions
>=8.0.0, <8.2.7
H
Arbitrary Code Execution
CVE-2017-6381
Affects
drupal/drupal
| Versions
>=8.0.0, <8.2.7
M
Information Exposure
CVE-2016-9449
Affects
drupal/drupal
| Versions
>=8.0.0, <8.2.3
M
Denial of Service (DoS)
CVE-2016-9452
Affects
drupal/drupal
| Versions
>=8.0.0, <8.2.3
H
Cache Poisoning
CVE-2016-9450
Affects
drupal/drupal
| Versions
>=8.0.0, <8.2.3
M
Access Restriction Bypass
CVE-2016-7572
Affects
drupal/drupal
| Versions
>=8.0.0, <8.1.10
M
Cross-site Scripting (XSS)
CVE-2016-7571
Affects
drupal/drupal
| Versions
>=8.0.0, <8.1.10
M
Access Restriction Bypass
CVE-2016-7570
Affects
drupal/drupal
| Versions
>=8.0.0, <8.1.10
H
HTTP Header Injection
CVE-2016-5385
Affects
drupal/drupal
| Versions
>=8.0.0, <8.1.7
H
Privilege Escalation
CVE-2016-6211
Affects
drupal/drupal
| Versions
>=7.0.0, <7.44
M
Information Exposure
CVE-2016-6212
Affects
drupal/drupal
| Versions
>=8.0.0, <8.1.3
H
Open Redirect
CVE-2016-3164
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
>=7.0.0, <7.43
>=8.0.0, <8.0.4
H
Denial of Service (DoS)
CVE-2016-3162
Affects
drupal/drupal
| Versions
>=7.0.0, <7.43
>=8.0.0, <8.0.4
H
Privilege Escalation
CVE-2016-3169
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
>=7.0.0, <7.43
H
Deserialization of Untrusted Data
CVE-2016-3171
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
H
Brute Force
CVE-2016-3163
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
>=7.0.0, <7.43
M
Information Exposure
CVE-2016-3170
Affects
drupal/drupal
| Versions
>=7.0.0, <7.43
>=8.0.0, <8.0.4
H
Access Restriction Bypass
CVE-2016-3165
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
M
HTTP Header Injection
CVE-2016-3166
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
M
Reflected File Download
CVE-2016-3168
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
>=7.0.0, <7.43
H
Open Redirect
CVE-2016-3167
Affects
drupal/drupal
| Versions
>=6.0.0, <6.38
H
Malicious Package
Affects
drupal-fu
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
Affects
drupal-pattern-lab/add-attributes-twig-extension
| Versions
>=0.0.0
L
Cross-site Scripting (XSS)
Affects
drupal-pattern-lab/bem-twig-extension
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2025-11570
Affects
drupal-pattern-lab/unified-twig-extensions
| Versions
>=0.0.0