Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • L
Timing Attack
github.com/mattermost/mattermost/server>=10.5.0 <10.5.11>=10.11.0 <10.11.3>=10.12.0-rc1 <10.12.0-rc2Go17 Oct 2025
  • L
Timing Attack
github.com/mattermost/mattermost/server/v8<8.0.0-20250728063359-38208b8f065fGo17 Oct 2025
  • L
Timing Attack
github.com/mattermost/mattermost-server>=10.5.0 <10.5.11>=10.11.0 <10.11.3>=10.12.0-rc1 <10.12.0-rc2Go17 Oct 2025
  • L
Incorrect Authorization
github.com/mattermost/mattermost-server/server/v8/channels/api4<8.0.0-20250820115038-ff30b84049f0Go17 Oct 2025
  • L
Incorrect Authorization
github.com/mattermost/mattermost-server>=10.5.0 <10.5.11>=10.11.0 <10.11.3>=10.12.0-rc1 <10.12.0-rc2Go17 Oct 2025
  • L
Incorrect Authorization
github.com/mattermost/mattermost/server/v8/channels/api4<8.0.0-20250820115038-ff30b84049f0Go17 Oct 2025
  • M
Missing Authorization
github.com/mattermost/mattermost/server/v8/channels/api4<8.0.0-20250822090405-e8c7e7d0252bGo17 Oct 2025
  • M
Missing Authorization
github.com/mattermost/mattermost-server/server/v8/channels/api4<8.0.0-20250822090405-e8c7e7d0252bGo17 Oct 2025
  • M
Missing Authorization
github.com/mattermost/mattermost-server>=10.5.0 <10.5.11>=10.11.0 <10.11.3>=10.12.0-rc1 <10.12.0-rc2Go17 Oct 2025
  • M
Improper Certificate Validation
github.com/in-toto/go-witness/attestation/aws-iid<0.9.0Go16 Oct 2025
  • C
Improper Handling of Syntactically Invalid Structure
github.com/cometbft/cometbft/consensus<0.37.16>0.38.0-alpha.1 <0.38.19Go15 Oct 2025
  • C
Improper Handling of Syntactically Invalid Structure
github.com/cometbft/cometbft/libs/bits<0.37.16>0.38.0-alpha.1 <0.38.19Go15 Oct 2025
  • H
Relative Path Traversal
github.com/argoproj/argo-workflows/v3/workflow/executor<3.6.12>=3.7.0 <3.7.3Go15 Oct 2025
  • H
Insufficiently Protected Credentials
github.com/argoproj/argo-workflows/v3/workflow/controller<3.6.12>=3.7.0 <3.7.3Go15 Oct 2025
  • M
NULL Pointer Dereference
github.com/siderolabs/omni/internal/pkg/auth/interceptor<1.0.2>=1.1.0-beta.0 <1.1.5Go14 Oct 2025
  • M
NULL Pointer Dereference
github.com/siderolabs/omni/internal/pkg/auth/handler<1.0.2>=1.1.0-beta.0 <1.1.5Go14 Oct 2025
  • M
NULL Pointer Dereference
github.com/siderolabs/omni/internal/backend/grpc/router<1.0.2>=1.1.0-beta.0 <1.1.5Go14 Oct 2025
  • M
NULL Pointer Dereference
github.com/siderolabs/omni/internal/backend/grpc<1.0.2>=1.1.0-beta.0 <1.1.5Go14 Oct 2025
  • M
NULL Pointer Dereference
github.com/siderolabs/omni/hack/generate-certs<1.0.2>=1.1.0-beta.0 <1.1.5Go14 Oct 2025
  • H
Insertion of Sensitive Information Into Sent Data
github.com/siderolabs/omni/internal/pkg/siderolink<1.0.2>=1.1.0-beta.0 <1.1.5Go14 Oct 2025
  • M
Memory Allocation with Excessive Size Value
github.com/nwaples/rardecode/v2<2.2.0Go13 Oct 2025
  • M
Memory Allocation with Excessive Size Value
github.com/nwaples/rardecode<2.2.0Go13 Oct 2025
  • H
Use of Hard-coded Credentials
github.com/ossf/allstar/pkg/reviewbot<4.5.0Go13 Oct 2025
  • H
Missing Authorization
github.com/external-secrets/external-secrets/pkg/provider/beyondtrust>=0.10.1 <0.20.0Go13 Oct 2025
  • H
Reachable Assertion
github.com/quic-go/quic-go<0.49.1>=0.50.0 <0.54.1Go10 Oct 2025
  • H
Incorrect Authorization
github.com/casdoor/casdoor/controllers<2.63.0Go10 Oct 2025
  • H
Incorrect Authorization
github.com/casdoor/casdoor/object<2.63.0Go10 Oct 2025
  • H
Incorrect Authorization
github.com/casdoor/casdoor/routers<2.63.0Go10 Oct 2025
  • H
Incorrect Authorization
github.com/casdoor/casdoor/authz<2.63.0Go10 Oct 2025
  • M
Observable Discrepancy
github.com/hashicorp/vault/api/auth/userpass>=0.1.0Go10 Oct 2025