Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Insufficient Type Distinction
Affects
contao/core-bundle
| Versions
<4.13.57
>=5.0.0-RC1, <5.3.42
>=5.4.0-RC1, <5.6.5
M
Cross-site Scripting (XSS)
Affects
getformwork/formwork
| Versions
<2.2.0
M
Infinite loop
Affects
limesurvey/limesurvey
| Versions
>=2.2.5, <6.14.1
M
Infinite loop
Affects
limesurvey/limesurvey
| Versions
>=2.2.5, <6.14.2
M
Information Exposure
Affects
limesurvey/limesurvey
| Versions
>=2.2.5, <6.15.0
H
SQL Injection
Affects
devcode-it/openstamanager
| Versions
<2.9.5
M
Expired Pointer Dereference
Affects
mongodb/mongodb-extension
| Versions
>=1.20.0, <1.21.2
L
User Interface (UI) Misrepresentation of Critical Information
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
L
Use of Web Browser Cache Containing Sensitive Information
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
H
Deserialization of Untrusted Data
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
M
Improper Check for Unusual or Exceptional Conditions
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
H
HTTP Header Injection
Affects
backdrop/backdrop
| Versions
>=0.0.0
L
Cross-site Scripting (XSS)
Affects
privatebin/privatebin
| Versions
>=1.7.7, <2.0.3
M
Cross-site Scripting (XSS)
Affects
ph7software/ph7builder
| Versions
>=0.0.0
H
SQL Injection
Affects
librenms/librenms
| Versions
>=25.10.0, <25.11.0
H
Cross-site Scripting (XSS)
Affects
librenms/librenms
| Versions
>=25.10.0, <25.11.0
M
Weak Password Requirements
Affects
librenms/librenms
| Versions
>=25.10.0, <25.11.0
M
Cross-site Scripting (XSS)
Affects
getkirby/cms
| Versions
>=5.0.0, <5.1.4
H
SQL Injection
Affects
phpmyfaq/phpmyfaq
| Versions
<4.0.14
M
Relative Path Traversal
Affects
privatebin/privatebin
| Versions
>=1.7.7, <2.0.3
M
Weak Password Recovery Mechanism for Forgotten Password
Affects
shopware/core
| Versions
<6.6.10.9
>=6.7.0.0, <6.7.4.1
M
Incorrect Authorization
Affects
symfony/http-foundation
| Versions
<5.4.50
>=6.0.0-BETA1, <6.4.29
>=7.0.0-BETA1, <7.3.7
H
Incorrect Authorization
Affects
codingms/modules
| Versions
<4.3.11
>=5.0.0, <5.7.4
>=6.0.0, <6.4.2
>=7.0.0, <7.5.5
H
SQL Injection
Affects
torrentpier/torrentpier
| Versions
<2.8.9
M
Resource Injection
Affects
yungifez/skuul
| Versions
>=2.3.0
M
Missing Authorization
Affects
magento/community-edition
| Versions
<2.4.4-p10
>=2.4.5, <2.4.5-p9
>=2.4.6, <2.4.6-p7
>=2.4.7-beta1, <2.4.7-p2
M
Missing Authorization
Affects
magento/community-edition
| Versions
<2.4.4-p10
>=2.4.5, <2.4.5-p9
>=2.4.6, <2.4.6-p7
>=2.4.7-beta1, <2.4.7-p2
C
Command Injection
Affects
magento/community-edition
| Versions
<2.4.4-p10
>=2.4.5, <2.4.5-p9
>=2.4.6, <2.4.6-p7
>=2.4.7-beta1, <2.4.7-p2
M
Premature Release of Resource During Expected Lifetime
Affects
magento/community-edition
| Versions
<2.4.4-p10
>=2.4.5, <2.4.5-p9
>=2.4.6, <2.4.6-p7
>=2.4.7-beta1, <2.4.7-p2
M
Premature Release of Resource During Expected Lifetime
Affects
magento/community-edition
| Versions
<2.4.4-p10
>=2.4.5, <2.4.5-p9
>=2.4.6, <2.4.6-p7
>=2.4.7-beta1, <2.4.7-p2