Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
PHP Remote File Inclusion
moodle/moodle>=4.1.0, <4.1.12>=4.2.0, <4.2.9>=4.3.0, <4.3.6>=4.4.0, <4.4.2Composer28 Aug 2024
  • C
Remote Code Execution
moodle/moodle<4.1.12>=4.2.0, <4.2.9>=4.3.0, <4.3.6>=4.4.0, <4.4.2Composer27 Aug 2024
  • L
Cross-site Scripting (XSS)
samiahmedsiddiqui/custom-permalinks<2.7.0Composer25 Aug 2024
  • H
Incorrect Permission Assignment for Critical Resource
froxlor/froxlor<2.2.0Composer25 Aug 2024
  • C
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
zencart/zencart<2.0.0-alpha1Composer22 Aug 2024
  • M
Cross-site Scripting (XSS)
geshi/geshi>=0.0.0Composer22 Aug 2024
  • C
Cross-site Scripting (XSS)
ratmd/bloghub-plugin<1.3.9Composer18 Aug 2024
  • M
Improper Resource Shutdown or Release
limesurvey/limesurvey>=0.0.0Composer18 Aug 2024
  • H
Cross-site Scripting (XSS)
ezsystems/ezplatform-richtext>=3.3.0, <3.3.40Composer15 Aug 2024
  • H
Cross-site Scripting (XSS)
ibexa/fieldtype-richtext>=4.6.0, <4.6.10Composer15 Aug 2024
  • H
Path Traversal
pxlrbt/filament-excel<2.3.3Composer13 Aug 2024
  • L
Cross-site Scripting (XSS)
concrete5/concrete5<8.5.18>=9.0.0RC1, <9.3.3Composer9 Aug 2024
  • L
Cross-site Scripting (XSS)
concrete5/concrete5>=9.0.0RC1, <9.3.3Composer9 Aug 2024
  • L
Cross-site Scripting (XSS)
concrete5/concrete5<8.5.18>=9.0.0RC1, <9.3.3Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • H
Server-Side Template Injection
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
SQL Injection
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
SQL Injection
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
Improper Preservation of Permissions
shopware/core<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
Improper Preservation of Permissions
shopware/platform<6.5.8.13>=6.6.0.0, <6.6.5.1Composer9 Aug 2024
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p9>=2.4.5-p1, <2.4.5-p8>=2.4.6-p1, <2.4.6-p6>=2.4.7-beta1, <2.4.7-p1Composer8 Aug 2024
  • M
Incorrect Authorization
magento/community-edition<2.4.4-p9>=2.4.5-p1, <2.4.5-p8>=2.4.6-p1, <2.4.6-p6>=2.4.7-beta1, <2.4.7-p1Composer8 Aug 2024
  • M
Improper Access Control
magento/community-edition<2.4.4-p9>=2.4.5-p1, <2.4.5-p8>=2.4.6-p1, <2.4.6-p6>=2.4.7-beta1, <2.4.7-p1Composer8 Aug 2024
  • H
Improper Authorization
magento/community-edition<2.4.4-p9>=2.4.5-p1, <2.4.5-p8>=2.4.6-p1, <2.4.6-p6>=2.4.7-beta1, <2.4.7-p1Composer8 Aug 2024
  • H
Server-Side Request Forgery (SSRF)
magento/community-edition<2.4.4-p9>=2.4.5-p1, <2.4.5-p8>=2.4.6-p1, <2.4.6-p6>=2.4.7-beta1, <2.4.7-p1Composer8 Aug 2024
  • C
Improper Authentication
magento/community-edition<2.4.4-p9>=2.4.5-p1, <2.4.5-p8>=2.4.6-p1, <2.4.6-p6>=2.4.7-beta1, <2.4.7-p1Composer8 Aug 2024
  • M
Cross-site Scripting (XSS)
microweber/microweber<2.0.16Composer7 Aug 2024
  • M
Cross-Site Request Forgery (CSRF)
ipl/web<0.10.1Composer6 Aug 2024