Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Static Code Injection
org.xwiki.platform:xwiki-platform-help-ui[,16.6.0-rc-1)Maven13 Dec 2024
  • M
Missing Authorization
org.xwiki.platform:xwiki-platform-scheduler-ui[4.2-rc-1,15.10.9)[16.0.0-rc-1, 16.4.0-rc-1)Maven13 Dec 2024
  • M
Missing Authorization
org.xwiki.platform:xwiki-platform-administration-ui[4.2-rc-1,15.10.9)[16.0.0-rc-1, 16.4.0-rc-1)Maven13 Dec 2024
  • H
Improper Encoding or Escaping of Output
org.xwiki.platform:xwiki-platform-web-templates[11.10.6,13.10.5)[14.0-rc-1,14.3-rc-1)Maven13 Dec 2024
  • C
Incorrect Authorization
org.xwiki.platform:xwiki-platform-repository-server-ui[,15.10.9)[16.0.0-rc-1,16.3.0)Maven13 Dec 2024
  • H
Prototype Pollution
org.webjars.npm:angular-expressions[0,]Maven12 Dec 2024
  • H
HTTP Request Smuggling
io.quarkus.http:quarkus-http-core[,5.3.4)Maven12 Dec 2024
  • H
XML External Entity (XXE) Injection
com.liferay:com.liferay.portal.tools.wsdd.builder[,1.0.14)Maven12 Dec 2024
  • H
Use of Password Hash With Insufficient Computational Effort
com.liferay.portal:portal-impl[0,]Maven12 Dec 2024
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.security.antisamy[,6.0.18)Maven12 Dec 2024
  • C
Remote Code Execution (RCE)
org.apache.struts:struts2-core[,7.0.0)Maven12 Dec 2024
  • M
Use of Cache Containing Sensitive Information
io.ktor:ktor-client-core-jvm[,2.3.13)[3.0.0-beta-1,3.0.0-rc-2)Maven9 Dec 2024
  • C
Malicious Package
io.github.xz-java:xz-java[0,]Maven9 Dec 2024
  • L
Improper Input Validation
dev.sigstore:sigstore-java[,1.2.0)Maven6 Dec 2024
  • M
Regular Expression Denial of Service (ReDoS)
org.webjars.npm:path-to-regexp[0,]Maven6 Dec 2024
  • H
Uncontrolled Resource Consumption
net.sf.json-lib:json-lib[0,]Maven5 Dec 2024
  • H
Uncontrolled Resource Consumption
org.kohsuke.stapler:json-lib[,2.4-jenkins-8)Maven5 Dec 2024
  • H
Denial of Service (DoS)
io.github.davidepianca98:kmqtt-common[,1.0.0)Maven5 Dec 2024
  • H
Deserialization of Untrusted Data
org.apache.hive:hive-standalone-metastore-server[4.0.0-alpha-1,4.0.0-alpha-2)Maven5 Dec 2024
  • H
Deserialization of Untrusted Data
org.apache.hive:hive-exec[4.0.0-alpha-1,4.0.0-alpha-2)Maven5 Dec 2024
  • H
Improper Authentication
org.apache.ozone:ozone-s3gateway[14.0,1.4.1)Maven3 Dec 2024
  • H
Out-of-bounds Read
io.antmedia:ant-media-server[,2.9.0)Maven3 Dec 2024
  • H
Improper Authentication
org.asynchttpclient:async-http-client[2.1.0,2.12.4)[3.0.0.Beta1,3.0.1)Maven3 Dec 2024
  • H
Improper Neutralization of Special Elements in Data Query Logic
org.webjars.npm:mongoose[0,]Maven3 Dec 2024
  • M
Cross-site Scripting (XSS)
org.webjars.npm:vue-i18n[,11.1.2)Maven1 Dec 2024
  • H
Prototype Pollution
org.webjars.bowergithub.kazupon:vue-i18n[9.7.0,9.14.2)[10.0.0,10.0.5)Maven28 Nov 2024
  • H
Prototype Pollution
org.webjars.npm:vue-i18n[9.7.0,9.14.2)[10.0.0,10.0.5)Maven28 Nov 2024
  • H
Cross-site Request Forgery (CSRF)
org.seleniumhq.selenium:selenium-grid[,4.0.0-alpha-7)Maven27 Nov 2024
  • H
Cross-site Request Forgery (CSRF)
org.seleniumhq.selenium:selenium-server[0,]Maven27 Nov 2024
  • M
Improper Preservation of Permissions
io.lakefs:sdk[,1.33.0)Maven27 Nov 2024