Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • L
Incorrect Implementation of Authentication Algorithm
github.com/mattermost/mattermost/server/public/model>=9.5.0 <9.5.11>=9.11.0 <9.11.3>=10.0.0 <10.1.0Go12 Nov 2024
  • L
Incorrect Implementation of Authentication Algorithm
github.com/mattermost/mattermost/server/platform/shared/mfa>=9.5.0 <9.5.11>=9.11.0 <9.11.3>=10.0.0 <10.1.0Go12 Nov 2024
  • L
Incorrect Implementation of Authentication Algorithm
github.com/mattermost/mattermost/server/channels/store/timerlayer>=9.5.0 <9.5.11>=9.11.0 <9.11.3>=10.0.0 <10.1.0Go12 Nov 2024
  • L
Incorrect Implementation of Authentication Algorithm
github.com/mattermost/mattermost/server/channels/store>=9.5.0 <9.5.11>=9.11.0 <9.11.3>=10.0.0 <10.1.0Go12 Nov 2024
  • M
Incorrect Authorization
github.com/mattermost/mattermost/server/public/model>=9.10.0 <9.10.3>=9.11.0 <9.11.2>=9.5.0 <9.5.10>=10.0.0 <10.0.1Go12 Nov 2024
  • M
Incorrect Authorization
github.com/mattermost/mattermost/server/channels/api4/>=9.10.0 <9.10.3>=9.11.0 <9.11.2>=9.5.0 <9.5.10>=10.0.0 <10.0.1Go12 Nov 2024
  • H
Allocation of Resources Without Limits or Throttling
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc<0.46.0Go11 Nov 2024
  • M
Information Exposure
github.com/hashicorp/nomad/drivers<0.12.10>=1.0.0 <1.0.3Go11 Nov 2024
  • H
Insertion of Sensitive Information into Log File
github.com/runatlantis/atlantis/server/events/vcs<0.30.0Go11 Nov 2024
  • H
Insertion of Sensitive Information into Log File
github.com/runatlantis/atlantis/server/core/runtime<0.30.0Go11 Nov 2024
  • H
Files or Directories Accessible to External Parties
www.velocidex.com/golang/velociraptor/vql/parsers/journald*Go8 Nov 2024
  • H
Files or Directories Accessible to External Parties
www.velocidex.com/golang/velociraptor/services/client_info*Go8 Nov 2024
  • H
Files or Directories Accessible to External Parties
github.com/velocidex/velociraptor/vql/parsers/journald*Go8 Nov 2024
  • H
Files or Directories Accessible to External Parties
github.com/velocidex/velociraptor/services/client_info*Go8 Nov 2024
  • H
SQL Injection
github.com/devtron-labs/devtron/pkg/auth/user/repository<0.7.2Go8 Nov 2024
  • M
UNIX Symbolic Link (Symlink) Following
github.com/nvidia/nvidia-container-toolkit/cmd/nvidia-cdi-hook/create-symlinks<1.17.0Go8 Nov 2024
  • M
Incorrect Authorization
github.com/hashicorp/nomad/nomad<1.9.2Go8 Nov 2024
  • H
Improper Validation of Array Index
github.com/cometbft/cometbft/consensus>=0.38.0 <0.38.15>=1.0.0-alpha.1Go7 Nov 2024
  • H
Improper Authentication
github.com/sigstore/gitsign/pkg/rekor<0.11.0Go6 Nov 2024
  • H
Cross-site Scripting (XSS)
github.com/j3ssie/osmedeus/core*Go6 Nov 2024
  • M
Uncontrolled Search Path Element
github.com/google/safearchive/zip*Go5 Nov 2024
  • M
Uncontrolled Search Path Element
github.com/google/safearchive/tar*Go5 Nov 2024
  • M
Uncontrolled Search Path Element
github.com/google/safearchive/sanitizer*Go5 Nov 2024
  • L
Insufficient Documentation of Error Handling Techniques
github.com/golang-jwt/jwt>=0.0.0Go5 Nov 2024
  • L
Insufficient Documentation of Error Handling Techniques
github.com/golang-jwt/jwt/v4<4.5.1Go5 Nov 2024
  • M
Missing Authorization
kubesphere.io/kubesphere/pkg/kapis/cluster/v1alpha1>=3.0.0Go4 Nov 2024
  • M
Missing Authorization
github.com/kubesphere/kubesphere/pkg/kapis/cluster/v1alpha1>=3.0.0Go4 Nov 2024
  • H
Denial of Service (DoS)
github.com/ollama/ollama/server<0.1.34-rc1Go1 Nov 2024
  • H
Directory Traversal
github.com/ollama/ollama/server<0.1.46Go1 Nov 2024
  • M
Information Exposure
github.com/ollama/ollama/server<0.1.47Go1 Nov 2024