Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo
cocoapods
Composer
Go
hex
Maven
npm
NuGet
pip
pub
RubyGems
Swift
Unmanaged (C/C++)
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
VULNERABILITY
AFFECTS
TYPE
PUBLISHED
H
Path Traversal
org.springframework:spring-webmvc
[,6.1.13)
Maven
13 Sept 2024
M
Use of a Key Past its Expiration Date
org.keycloak:keycloak-admin-ui
[0,26.0.0)
Maven
12 Sept 2024
M
Information Exposure
fish.payara.server.core.admingui:console-common
[,6.2024.9)
Maven
12 Sept 2024
M
URL Redirection to Untrusted Site ('Open Redirect')
fish.payara.server.internal.admin:rest-service
[0,]
Maven
12 Sept 2024
M
Open Redirect
org.glassfish.main.web:web-core
[5.1.0,7.0.10]
Maven
11 Sept 2024
M
Incorrect Implementation of Authentication Algorithm
org.eclipse.edc:data-plane-public-api
[0.5.0,0.9.0)
Maven
11 Sept 2024
M
Incorrect Implementation of Authentication Algorithm
org.eclipse.edc:transfer-data-plane
[0.5.0,0.9.0)
Maven
11 Sept 2024
M
Cross-site Scripting
org.webjars.npm:express
[,4.20.0)
[5.0.0-alpha.1,5.0.0)
Maven
11 Sept 2024
L
Cross-site Scripting
org.webjars.npm:serve-static
[0,]
Maven
11 Sept 2024
M
Exposure of Private Personal Information to an Unauthorized Actor
org.xwiki.platform:xwiki-platform-rest-server
[,15.10.9)
[16.0.0-rc-1,16.3.0-rc-1)
Maven
11 Sept 2024
H
Improper Handling of Extra Values
org.keycloak:keycloak-core
[0,24.0.0)
Maven
11 Sept 2024
L
Cross-site Scripting
org.webjars.npm:send
[0,]
Maven
11 Sept 2024
H
Asymmetric Resource Consumption (Amplification)
org.webjars.npm:body-parser
[0,]
Maven
11 Sept 2024
H
Session Fixation
org.keycloak:keycloak-saml-wildfly-elytron-adapter
[,25.0.5)
Maven
10 Sept 2024
M
Open Redirect
org.keycloak:keycloak-services
[,25.0.0)
Maven
10 Sept 2024
M
Regular Expression Denial of Service (ReDoS)
org.webjars.npm:path-to-regexp
[,6.3.0)
Maven
10 Sept 2024
H
Improper Validation of Certificate with Host Mismatch
io.kroxylicious:kroxylicious-runtime
[,0.8.0)
Maven
9 Sept 2024
H
XML External Entity (XXE) Injection
org.hl7.fhir.publisher:org.hl7.fhir.publisher.core
[,1.6.21)
Maven
8 Sept 2024
H
XML External Entity (XXE) Injection
ca.uhn.hapi.fhir:org.hl7.fhir.dstu2016may
[,6.3.21)
Maven
8 Sept 2024
H
XML External Entity (XXE) Injection
ca.uhn.hapi.fhir:org.hl7.fhir.dstu3
[,6.3.21)
Maven
8 Sept 2024
H
XML External Entity (XXE) Injection
ca.uhn.hapi.fhir:org.hl7.fhir.r4
[,6.3.21)
Maven
8 Sept 2024
H
XML External Entity (XXE) Injection
ca.uhn.hapi.fhir:org.hl7.fhir.r4b
[,6.3.21)
Maven
8 Sept 2024
H
XML External Entity (XXE) Injection
ca.uhn.hapi.fhir:org.hl7.fhir.r5
[,6.3.21)
Maven
8 Sept 2024
H
XML External Entity (XXE) Injection
ca.uhn.hapi.fhir:org.hl7.fhir.utilities
[,6.3.21)
Maven
8 Sept 2024
H
Improper Control of Generation of Code ('Code Injection')
net.mingsoft:ms-mcms
[0,]
Maven
6 Sept 2024
M
Allocation of Resources Without Limits or Throttling
io.vertx:vertx-grpc-client
[4.3.0,4.5.10)
Maven
5 Sept 2024
M
Allocation of Resources Without Limits or Throttling
io.vertx:vertx-grpc-server
[4.3.0,4.5.10)
Maven
5 Sept 2024
M
Cross-site Scripting (XSS)
org.webjars.npm:prosemirror-model
[,1.24.1)
Maven
4 Sept 2024
H
Prototype Pollution
org.webjars.npm:chartist
[0,]
Maven
4 Sept 2024
M
Improper Enforcement of a Single, Unique Action
org.keycloak:keycloak-services
[,24.0.3)
Maven
4 Sept 2024