Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Missing Authorization
CVE-2025-53499
Affects
mediawiki/abuse-filter
| Versions
<1.43
M
Insufficient Logging
CVE-2025-53498
Affects
mediawiki/abuse-filter
| Versions
<1.44
C
Missing Authorization
CVE-2025-53495
Affects
mediawiki/abuse-filter
| Versions
<1.43.2
M
Session Fixation
CVE-2025-53021
Affects
moodle/moodle
| Versions
>=3.0.0, <4.0.0
C
SQL Injection
CVE-2025-8264
Affects
z-push/z-push-dev
| Versions
<2.7.6
C
Arbitrary File Upload
CVE-2025-54082
Affects
marshmallow/nova-tiptap
| Versions
<5.7.0
H
PHP Remote File Inclusion
CVE-2025-54138
Affects
librenms/librenms
| Versions
<25.7.0
C
Arbitrary File Upload
CVE-2014-125116
Affects
hybridauth/hybridauth
| Versions
>=2.0.8, <2.3.0
H
PHP Remote File Inclusion
Affects
dolibarr/dolibarr
| Versions
>=0.0.0
M
Authorization Bypass Through User-Controlled Key
CVE-2025-7899
Affects
in2code/powermail
| Versions
>=12.0.0, <12.5.3
>=13.0.0, <13.0.1
H
Relative Path Traversal
CVE-2025-52207
Affects
mikopbx/core
| Versions
>=0.0.0
M
Authorization Bypass Through User-Controlled Key
CVE-2025-7900
Affects
in2code/femanager
| Versions
<6.4.2
>=7.0.0, <7.5.3
>=8.0.0, <8.3.1
M
Incorrect Privilege Assignment
CVE-2025-6736
Affects
juzaweb/cms
| Versions
>=0.0.0
M
Incorrect Privilege Assignment
CVE-2025-6735
Affects
juzaweb/cms
| Versions
>=0.0.0
M
Directory Traversal
CVE-2025-34076
Affects
microweber/microweber
| Versions
<1.2.11
M
Cross-site Scripting (XSS)
CVE-2023-38329
Affects
egroupware/egroupware
| Versions
>=0.0.0
M
Information Exposure
CVE-2023-38327
Affects
egroupware/egroupware
| Versions
>=0.0.0
C
Arbitrary Code Injection
CVE-2025-54068
Affects
livewire/livewire
| Versions
>=3.0.0-beta.1, <3.6.4
C
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2025-53833
Affects
binarytorch/larecipe
| Versions
<2.8.1
M
Cross-site Scripting (XSS)
CVE-2018-20755
Affects
modx/revolution
| Versions
<2.7.1-pl
M
Cross-site Scripting (XSS)
CVE-2018-20757
Affects
modx/revolution
| Versions
<2.7.1-pl
L
Command Injection
CVE-2025-52994
Affects
james-heinrich/phpthumb
| Versions
>=0.0.0, <v1.7.24
H
Exposure of Private Personal Information to an Unauthorized Actor
CVE-2025-53625
Affects
universal-omega/dynamic-page-list3
| Versions
<3.6.4
H
Arbitrary Code Injection
CVE-2025-34086
Affects
bolt/bolt
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2025-7053
Affects
cockpit-hq/cockpit
| Versions
<2.11.4
M
Arbitrary File Upload
CVE-2025-5108
Affects
shopxo/shopxo
| Versions
>=0.0.0
H
Cross-site Scripting (XSS)
CVE-2025-53370
Affects
starcitizentools/citizen-skin
| Versions
<3.4.0
M
Cross-site Scripting (XSS)
CVE-2025-53368
Affects
starcitizentools/citizen-skin
| Versions
<3.4.0
M
SQL Injection
CVE-2025-28057
Affects
slowlyo/owl-admin
| Versions
<4.1.0
M
Cross-site Scripting (XSS)
CVE-2025-28073
Affects
phplist/phplist3
| Versions
>=0.0.0