Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
SQL Injection
com.liferay.commerce:com.liferay.commerce.product.service[,5.0.19)Maven18 May 2025
  • H
Access Control Bypass
com.liferay:com.liferay.multi.factor.authentication.web[,2.0.0)Maven18 May 2025
  • H
Access Control Bypass
com.liferay:com.liferay.multi.factor.authentication.timebased.otp.web[,2.0.0)Maven18 May 2025
  • M
Insertion of Sensitive Information into Log File
org.apache.iotdb:node-commons[0.10.0,1.3.4)[2.0.1-beta,2.0.2)Maven16 May 2025
  • M
Insertion of Sensitive Information into Log File
org.apache.iotdb:iotdb-server[0.10.0,1.3.4)[2.0.1-beta,2.0.2)Maven16 May 2025
  • M
Insertion of Sensitive Information into Log File
org.apache.iotdb:iotdb-jdbc[0.10.0,1.3.4)[2.0.1-beta,2.0.2)Maven16 May 2025
  • H
Arbitrary Code Injection
org.apache.iotdb:node-commons[1.0.0,1.3.4)Maven16 May 2025
  • H
Arbitrary Code Injection
org.apache.iotdb:iotdb-server[1.0.0,1.3.4)Maven16 May 2025
  • L
Improper Handling of Case Sensitivity
org.springframework:spring-context[6.1.0,6.1.20)[6.2.0,6.2.7)Maven16 May 2025
  • L
Cross-site Scripting (XSS)
org.webjars.bower:bootstrap[3.4.1,4.0.0)Maven16 May 2025
  • L
Cross-site Scripting (XSS)
org.webjars.bowergithub.twbs:bootstrap[3.4.1,4.0.0)Maven16 May 2025
  • L
Cross-site Scripting (XSS)
org.webjars:bootstrap[3.4.1,4.0.0)Maven16 May 2025
  • L
Cross-site Scripting (XSS)
org.webjars.npm:bootstrap[3.4.1,4.0.0)Maven16 May 2025
  • L
Missing Release of Memory after Effective Lifetime
org.webjars.npm:undici[,5.29.0)Maven16 May 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.site.my.sites.web[,5.0.23)Maven15 May 2025
  • C
Access Control Bypass
com.baidu.mapp:brcc-core[0,]Maven14 May 2025
  • M
Cross-site Scripting (XSS)
org.graylog2:graylog2-server[,6.2.0)Maven14 May 2025
  • M
Cross-site Scripting (XSS)
com.liferay.portal:release.portal.bom[,7.3.0)Maven13 May 2025
  • H
Allocation of Resources Without Limits or Throttling
org.eclipse.jetty.http2:jetty-http2-hpack[12.0.0, 12.0.17)Maven13 May 2025
  • H
Allocation of Resources Without Limits or Throttling
org.eclipse.jetty.http2:jetty-http2-common[12.0.0, 12.0.17)Maven13 May 2025
  • M
Insufficient Visual Distinction of Homoglyphs Presented to User
org.webjars.npm:base-x[0,]Maven13 May 2025
  • H
Cross-site Scripting (XSS)
org.graylog2:graylog2-server[,6.0.14)[6.1.0,6.1.10)Maven12 May 2025
  • M
Stack-based Buffer Overflow
org.jsonschema2pojo:jsonschema2pojo-core[0,]Maven12 May 2025
  • M
Allocation of Resources Without Limits or Throttling
commons-configuration:commons-configuration[0,]Maven11 May 2025
  • M
Cross-site Scripting (XSS)
org.webjars.bower:trix[0,]Maven9 May 2025
  • M
Cross-site Scripting (XSS)
org.webjars.bowergithub.basecamp:trix[0,]Maven9 May 2025
  • M
Cross-site Scripting (XSS)
org.webjars.npm:trix[0,]Maven9 May 2025
  • M
Improper Resource Shutdown or Release
org.eclipse.jetty:jetty-server[9.4.0.M0,9.4.57.v20241219)Maven9 May 2025
  • M
Improper Validation of Certificate with Host Mismatch
org.jruby:jruby[9.3.4.0,9.4.12.1)[10.0.0.0,10.0.0.1)Maven8 May 2025
  • M
Memory Allocation with Excessive Size Value
org.apache.activemq:activemq-openwire-legacy[,5.16.8)[5.17.0,5.17.7)[5.18.0,5.18.7)[6.0.0,6.1.6)Maven8 May 2025