Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/api/oidc<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/auth/repository/eventsourcing<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/query<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/api/saml<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/api/oidc<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/api/grpc/user<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/api/grpc/auth<2.54.10>=2.55.0 <2.55.8>=2.56.0 <2.56.6>=2.57.0 <2.57.5>=2.58.0 <2.58.5>=2.59.0 <2.59.3>=2.60.0 <2.60.2>=2.61.0 <2.61.1>=2.62.0 <2.62.1Go30 Sept 2024
  • H
Infinite Loop
github.com/wcharczuk/go-chart/v2<2.1.2Go29 Sept 2024
  • H
Arbitrary Code Injection
github.com/mudler/localai/pkg/model<2.18.0Go29 Sept 2024
  • M
Access Control Bypass
github.com/mattermost/mattermost/server/channels/store/sqlstore>=9.5.0 <9.5.9>=9.9.0 <9.9.3>=9.10.0 <9.10.2Go29 Sept 2024
  • L
Server-Side Request Forgery (SSRF)
github.com/mattermost/mattermost/server/public/shared/httpservice>=9.5.0 <9.5.9-rc1Go29 Sept 2024
  • M
Improper Isolation or Compartmentalization
github.com/grafana/grafana/pkg/services/ngalert/api<10.3.10>=10.4.0 <10.4.9>=11.0.0 <11.0.5>=11.1.0 <11.1.6>=11.2.0 <11.2.1Go29 Sept 2024
  • M
Use of Weak Hash
github.com/amir20/dozzle/internal/auth<8.5.3Go29 Sept 2024
  • M
Improper Access Control
github.com/mattermost/mattermost/server/channels/api4/>=9.5.0 <9.5.9>=9.9.0 <9.9.3>=9.10.0 <9.10.2>=9.11.0 <9.11.1Go29 Sept 2024
  • L
Improper Access Control
github.com/mattermost/mattermost/server/channels/api4/>=9.5.0 <9.5.9Go29 Sept 2024
  • L
Improper Access Control
github.com/mattermost/mattermost/server/channels/app>=9.5.0 <9.5.9Go29 Sept 2024
  • M
Improper Check for Unusual or Exceptional Conditions
github.com/mattermost/mattermost/server/channels/app>=9.5.0-rc1 <9.5.9-rc1>=9.11.0-rc1 <9.11.1-rc1Go29 Sept 2024
  • M
Improper Check for Unusual or Exceptional Conditions
github.com/mattermost/mattermost/server/public/model>=9.5.0-rc1 <9.5.9-rc1>=9.11.0-rc1 <9.11.1-rc1Go29 Sept 2024
  • H
Authentication Bypass
github.com/rancher/rancher/pkg/settings>=2.7.0 <2.7.15>=2.8.0 <2.8.8>=2.9.0 <2.9.2Go27 Sept 2024
  • H
Incorrect Permission Assignment for Critical Resource
github.com/hashicorp/vault/builtin/logical/ssh>=1.7.7 <1.17.6Go27 Sept 2024
  • M
Improper Masking of Secrets in Logs
github.com/microsoft/terraform-provider-power-platform/internal/powerplatform/helpers<3.0.0Go26 Sept 2024
  • M
Improper Masking of Secrets in Logs
github.com/microsoft/terraform-provider-power-platform/internal/powerplatform/config<3.0.0Go26 Sept 2024
  • M
Improper Masking of Secrets in Logs
github.com/microsoft/terraform-provider-power-platform/internal/powerplatform/api<3.0.0Go26 Sept 2024
  • M
Improper Masking of Secrets in Logs
github.com/microsoft/terraform-provider-power-platform/internal/powerplatform<3.0.0Go26 Sept 2024
  • C
Authentication Bypass by Spoofing
mellium.im/xmpp<0.22.0Go25 Sept 2024
  • C
Authentication Bypass by Spoofing
github.com/mellium/xmpp>=0.0.0Go25 Sept 2024
  • C
SQL Injection
github.com/navidrome/navidrome/model<0.53.0Go22 Sept 2024
  • C
SQL Injection
github.com/navidrome/navidrome/persistence<0.53.0Go22 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/api/saml*Go20 Sept 2024
  • H
Operation on a Resource after Expiration or Release
github.com/zitadel/zitadel/internal/command*Go20 Sept 2024