Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpoffice/phpspreadsheet<1.29.7>=2.0.0, <2.1.6>=2.2.0, <2.3.5>=3.0.0, <3.7.0Composer5 Jan 2025
  • M
Cross-site Scripting (XSS)
phpmyfaq/phpmyfaq>=3.2.10, <4.0.2Composer3 Jan 2025
  • M
Cross-site Scripting (XSS)
dcat/laravel-admin>=2.2.0-betaComposer31 Dec 2024
  • M
Cross-site Scripting (XSS)
dcat/laravel-admin>=2.2.0-betaComposer31 Dec 2024
  • M
Improper Authorization
nilsteampassnet/teampass<3.1.3.1Composer31 Dec 2024
  • M
Improper Authorization
nilsteampassnet/teampass<3.1.3.1Composer31 Dec 2024
  • C
Authorization Bypass Through User-Controlled Key
nilsteampassnet/teampass<3.1.3.1Composer31 Dec 2024
  • M
Cross-site Scripting (XSS)
tltneon/lgsl>=0.0.0Composer31 Dec 2024
  • C
Improper Certificate Validation
tecnickcom/tcpdf<6.8.0Composer27 Dec 2024
  • C
Arbitrary Code Injection
tecnickcom/tc-lib-pdf-font<2.6.4Composer27 Dec 2024
  • C
Arbitrary Code Injection
tecnickcom/tcpdf<6.8.0Composer27 Dec 2024
  • C
Improper Input Validation
tecnickcom/tcpdf<6.8.0Composer27 Dec 2024
  • C
Deserialization of Untrusted Data
tecnickcom/tcpdf<6.8.0Composer27 Dec 2024
  • C
Cross-site Scripting (XSS)
tecnickcom/tcpdf<6.8.0Composer27 Dec 2024
  • M
Cross-site Scripting (XSS)
tltneon/lgsl>=0.0.0Composer27 Dec 2024
  • M
Cross-site Request Forgery (CSRF)
wordpress-premium/advanced-custom-fields-pro<3.6.10>=5.7.13, <6.3.4Composer25 Dec 2024
  • M
Cross-site Scripting (XSS)
shuchkin/simplexlsx>=1.0.12, <1.1.13Composer24 Dec 2024
  • H
Improper Authentication
joelbutcher/socialstream<6.2.0Composer22 Dec 2024
  • C
Command Injection
craftcms/cms>=4.0.0-RC1, <4.13.2>=5.0.0-RC1, <5.5.2Composer19 Dec 2024
  • H
Improper Neutralization of Special Elements Used in a Template Engine
opencart/opencart>=0.0.0Composer19 Dec 2024
  • H
Improper Input Validation
spatie/browsershot<5.0.3Composer19 Dec 2024
  • H
Directory Traversal
spatie/browsershot<5.0.2Composer16 Dec 2024
  • C
Remote Code Execution (RCE)
unisharp/laravel-filemanager<2.9.1Composer16 Dec 2024
  • H
Arbitrary Code Injection
laravel/pulse<1.3.1Composer15 Dec 2024