Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Arbitrary Code Injection
craftcms/cms>=4.13.8, <4.16.3>=5.5.8, <5.8.4Composer10 Aug 2025
  • M
Cross-site Scripting (XSS)
concrete5/concrete5<8.5.21>=9.0.0RC1, <9.4.3Composer8 Aug 2025
  • L
Cross-site Scripting (XSS)
concrete5/concrete5>=9.0.0RC1, <9.4.3Composer8 Aug 2025
  • C
Directory Traversal
topthink/framework>=0.0.0Composer8 Aug 2025
  • M
Cross-site Scripting (XSS)
microweber/microweber>=2.0.0Composer8 Aug 2025
  • M
Cross-site Scripting (XSS)
microweber/microweber>=2.0.0Composer8 Aug 2025
  • M
Cross-site Scripting (XSS)
microweber/microweber>=2.0.0Composer8 Aug 2025
  • M
Cross-site Scripting (XSS)
shopxo/shopxo>=0.0.0Composer6 Aug 2025
  • M
Race Condition
shopware/shopware>=0.0.0Composer6 Aug 2025
  • M
Allocation of Resources Without Limits or Throttling
setasign/fpdi<2.6.4Composer6 Aug 2025
  • H
SQL Injection
adodb/adodb-php<5.22.10Composer5 Aug 2025
  • M
Cross-site Scripting (XSS)
microweber/microweber>=0.0.0Composer5 Aug 2025
  • M
Inadequate Encryption Strength
firebase/php-jwt>=0.0.0Composer1 Aug 2025
  • M
Relative Path Traversal
simogeo/filemanager<2.4.0Composer31 Jul 2025
  • C
Arbitrary File Upload
simogeo/filemanager<2.4.0Composer31 Jul 2025
  • M
SQL Injection
bacula-web/bacula-web<9.7.1Composer31 Jul 2025
  • M
Cross-site Scripting (XSS)
mediawiki/approved-revs<2.2.2Composer30 Jul 2025
  • C
Missing Authorization
mediawiki/abuse-filter<1.43Composer30 Jul 2025
  • M
Insufficient Logging
mediawiki/abuse-filter<1.44Composer30 Jul 2025
  • C
Missing Authorization
mediawiki/abuse-filter<1.43.2Composer30 Jul 2025
  • M
Session Fixation
moodle/moodle>=3.0.0, <4.0.0Composer30 Jul 2025
  • M
Cross-site Scripting (XSS)
getgrav/grav>=0.0.0Composer28 Jul 2025
  • M
Cross-site Scripting (XSS)
getgrav/grav>=0.0.0Composer28 Jul 2025
  • C
SQL Injection
z-push/z-push-dev<2.7.6Composer28 Jul 2025
  • C
Arbitrary File Upload
marshmallow/nova-tiptap<5.7.0Composer28 Jul 2025
  • H
PHP Remote File Inclusion
librenms/librenms<25.7.0Composer28 Jul 2025
  • C
Arbitrary File Upload
hybridauth/hybridauth>=2.0.8, <2.3.0Composer27 Jul 2025
  • H
PHP Remote File Inclusion
dolibarr/dolibarr>=0.0.0Composer27 Jul 2025
  • M
Authorization Bypass Through User-Controlled Key
in2code/powermail>=12.0.0, <12.5.3>=13.0.0, <13.0.1Composer23 Jul 2025
  • H
Relative Path Traversal
mikopbx/core>=0.0.0Composer23 Jul 2025