Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Cross-Site Request Forgery (CSRF)
ipl/web<0.10.1Composer6 Aug 2024
  • M
Cross-site Scripting (XSS)
twitter/bootstrap<5.0.0-beta1Composer6 Aug 2024
  • M
Cross-site Scripting (XSS)
twbs/bootstrap<5.0.0-beta1Composer6 Aug 2024
  • M
Cross-site Scripting (XSS)
microweber/microweber>=0.0.0Composer6 Aug 2024
  • M
Cross-site Scripting (XSS)
microweber/microweber>=0.0.0Composer6 Aug 2024
  • M
Cross-site Scripting (XSS)
twitter/bootstrap>=4.0.0, <5.0.0.beta1Composer6 Aug 2024
  • M
Cross-site Scripting (XSS)
twbs/bootstrap>=4.0.0, <5.0.0.beta1Composer6 Aug 2024
  • L
Cross-site Scripting
concrete5/concrete5<9.3.3Composer2 Aug 2024
  • M
Cross-site Scripting (XSS)
ibexa/admin-ui>=4.6.0, <4.6.9Composer1 Aug 2024
  • M
Cross-site Scripting (XSS)
ezsystems/ezplatform-admin-ui>=3.3.0, <3.3.39Composer1 Aug 2024
  • H
Improper Access Control
studio-42/elfinder>=0.0.0Composer31 Jul 2024
  • M
Information Exposure
pimcore/admin-ui-classic-bundle<1.3.10>=1.4.0, <1.4.6>=1.5.0, <1.5.2Composer31 Jul 2024
  • M
Improper Input Validation
ec-cube/ec-cube>=4.0.0, <4.0.6-p5>=4.1.0, <4.1.2-p4>=4.2.0, <4.3.0Composer30 Jul 2024
  • M
Cross-site Scripting
openmage/magento-lts<20.10.1Composer30 Jul 2024
  • M
SQL Injection
admidio/admidio<4.3.9Composer30 Jul 2024
  • H
Unrestricted Upload of File with Dangerous Type
admidio/admidio<4.3.10Composer30 Jul 2024
  • H
Improper Privilege Management
billz/raspap-webgui<3.1.5Composer29 Jul 2024
  • C
Path Traversal
icecoder/icecoder>=0.0.0Composer28 Jul 2024
  • M
Cross-site Scripting (XSS)
icecoder/icecoder>=0.0.0Composer28 Jul 2024
  • C
Cross-site Scripting (XSS)
icecoder/icecoder>=0.0.0Composer28 Jul 2024
  • M
Cross-site Scripting (XSS)
oveleon/contao-cookiebar<1.16.3>=2.0.0, <2.1.3Composer28 Jul 2024
  • M
Improper Authentication
craftcms/cms>=5.0.0-beta.1, <5.2.3Composer26 Jul 2024
  • M
Deserialization of Untrusted Data
swiftmailer/swiftmailer<6.2.5Composer25 Jul 2024
  • M
Deserialization of Untrusted Data
friendsofsymfony1/symfony1>=1.3.0, <1.5.18Composer25 Jul 2024
  • C
Deserialization of Untrusted Data
friendsofsymfony1/symfony1<1.5.19Composer25 Jul 2024
  • H
XML External Entity (XXE) Injection
laravel/laravel>=0.0.0Composer23 Jul 2024
  • M
Cross-site Scripting (XSS)
wikibase/wikibase>=0.0.0Composer23 Jul 2024
  • M
Cross-site Scripting (XSS)
wikibase/wikibase>=0.0.0Composer23 Jul 2024
  • M
Cross-site Scripting (XSS)
backdrop/backdrop<1.29.0Composer22 Jul 2024
  • M
SQL Injection
limesurvey/limesurvey>=0.0.0Composer21 Jul 2024