Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2025-65621
Affects
snipe/snipe-it
| Versions
<8.3.4
H
Directory Traversal
CVE-2025-65345
Affects
alexusmai/laravel-file-manager
| Versions
>=2.0.0, <3.3.2
H
Arbitrary Command Injection
CVE-2025-65657
Affects
feehi/cms
| Versions
>=0.0.1
H
Arbitrary File Upload
CVE-2025-13827
Affects
mautic/core-lib
| Versions
>=4.0.0-alpha1, <4.4.18
>=5.0.0-alpha, <5.2.9
>=6.0.0-alpha, <6.0.7
H
Arbitrary File Upload
CVE-2025-13827
Affects
mautic/core
| Versions
>=4.0.0-alpha1, <4.4.18
>=5.0.0-alpha, <5.2.9
>=6.0.0-alpha, <6.0.7
C
Access Control Bypass
CVE-2025-13828
Affects
mautic/core-lib
| Versions
>=4.0.0-alpha1, <4.4.18
>=5.0.0-alpha, <5.2.9
>=6.0.0-alpha, <6.0.7
C
Access Control Bypass
CVE-2025-13828
Affects
mautic/core
| Versions
>=4.0.0-alpha1, <4.4.18
>=5.0.0-alpha, <5.2.9
>=6.0.0-alpha, <6.0.7
H
Unsafe Dependency Resolution
CVE-2025-65656
Affects
dcat/laravel-admin
| Versions
>=0.1.0
H
Cross-site Scripting (XSS)
CVE-2025-66468
Affects
aimeos/ai-cms-grapesjs
| Versions
>=2022.4.1, <2022.10.9
>=2023.4.1, <2023.10.15
>=2024.4.1, <2024.10.8
>=2025.4.1, <2025.10.2
M
Improper Restriction of Rendered UI Layers or Frames
CVE-2025-63522
Affects
feehi/cms
| Versions
>=0.0.1
M
Authorization Bypass Through User-Controlled Key
CVE-2025-63523
Affects
feehi/cms
| Versions
>=0.0.1
M
Cross-site Scripting (XSS)
CVE-2025-63520
Affects
feehi/cms
| Versions
>=0.0.1
H
Improper Authorization
CVE-2025-66301
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2025-66297
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2025-66298
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Directory Traversal
CVE-2025-66300
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Arbitrary Code Injection
CVE-2025-66294
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Arbitrary Code Injection
CVE-2025-66299
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Incorrect Privilege Assignment
CVE-2025-66296
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Information Exposure
CVE-2025-66304
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
M
Directory Traversal
CVE-2025-66302
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
M
Uncaught Exception
CVE-2025-66305
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
H
Directory Traversal
CVE-2025-66295
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
M
Authorization Bypass Through User-Controlled Key
CVE-2025-66306
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
M
Denial of Service (DoS)
CVE-2025-66303
Affects
getgrav/grav
| Versions
<1.8.0-beta.27
M
Cross-site Scripting (XSS)
CVE-2025-64049
Affects
redaxo/source
| Versions
<5.20.1
H
Arbitrary Code Injection
CVE-2025-64050
Affects
redaxo/source
| Versions
<5.20.1
M
Cross-site Scripting (XSS)
CVE-2025-66026
Affects
redaxo/source
| Versions
<5.20.1
L
Cross-site Scripting (XSS)
CVE-2025-65961
Affects
contao/core-bundle
| Versions
>=4.0.0, <4.13.57
>=5.0.0-RC1, <5.3.42
>=5.4.0-RC1, <5.6.5
H
Insufficient Type Distinction
CVE-2025-65960
Affects
contao/core-bundle
| Versions
<4.13.57
>=5.0.0-RC1, <5.3.42
>=5.4.0-RC1, <5.6.5