Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Information Exposure
drupal/core>=8.0.0, <10.2.9>=10.3.0, <10.3.6>=11.0.0, <11.0.5Composer30 Aug 2024
  • M
Improper Authorization
getkirby/cms<3.6.6.6>=3.7.0, <3.7.5.5>=3.8.0, <3.8.4.4>=3.9.0, <3.9.8.2>=3.10.0, <3.10.1.1>=4.0.0, <4.3.1Composer30 Aug 2024
  • M
Unrestricted Upload of File with Dangerous Type
feehi/feehicms>=0.0.0Composer29 Aug 2024
  • M
Unrestricted Upload of File with Dangerous Type
feehi/feehicms>=0.0.0Composer29 Aug 2024
  • M
Improper Access Control
in2code/powermail<7.5.0>=8.0.0, <8.5.0>=10.0.0, <10.9.0>=12.0.0, <12.4.0Composer29 Aug 2024
  • M
Unrestricted Upload of File with Dangerous Type
feehi/feehicms>=0.0.0Composer29 Aug 2024
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.1>=2.0.0, <2.1.0Composer29 Aug 2024
  • M
XML External Entity (XXE) Injection
phpoffice/phpspreadsheet<1.29.1>=2.0.0, <2.1.0>=2.2.0, <2.2.1Composer29 Aug 2024
  • M
Authorization Bypass Through User-Controlled Key
in2code/powermail<7.5.0>=8.0.0, <8.5.0>=9.0.0, <10.9.0>=12.0.0, <12.4.0Composer28 Aug 2024
  • H
PHP Remote File Inclusion
moodle/moodle>=4.1.0, <4.1.12>=4.2.0, <4.2.9>=4.3.0, <4.3.6>=4.4.0, <4.4.2Composer28 Aug 2024
  • C
Remote Code Execution
moodle/moodle<4.1.12>=4.2.0, <4.2.9>=4.3.0, <4.3.6>=4.4.0, <4.4.2Composer27 Aug 2024
  • L
Cross-site Scripting (XSS)
samiahmedsiddiqui/custom-permalinks<2.7.0Composer25 Aug 2024
  • H
Incorrect Permission Assignment for Critical Resource
froxlor/froxlor<2.2.0Composer25 Aug 2024
  • C
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
zencart/zencart<2.0.0-alpha1Composer22 Aug 2024
  • M
Cross-site Scripting (XSS)
geshi/geshi>=0.0.0Composer22 Aug 2024
  • C
Cross-site Scripting (XSS)
ratmd/bloghub-plugin<1.3.9Composer18 Aug 2024
  • M
Improper Resource Shutdown or Release
limesurvey/limesurvey>=0.0.0Composer18 Aug 2024
  • H
Cross-site Scripting (XSS)
ezsystems/ezplatform-richtext>=3.3.0, <3.3.40Composer15 Aug 2024
  • H
Cross-site Scripting (XSS)
ibexa/fieldtype-richtext>=4.6.0, <4.6.10Composer15 Aug 2024
  • H
Path Traversal
pxlrbt/filament-excel<2.3.3Composer13 Aug 2024
  • L
Cross-site Scripting (XSS)
concrete5/concrete5<8.5.18>=9.0.0RC1, <9.3.3Composer9 Aug 2024
  • L
Cross-site Scripting (XSS)
concrete5/concrete5>=9.0.0RC1, <9.3.3Composer9 Aug 2024
  • L
Cross-site Scripting (XSS)
concrete5/concrete5<8.5.18>=9.0.0RC1, <9.3.3Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
SQL Injection
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
SQL Injection
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
Improper Preservation of Permissions
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024