Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Cross-site Request Forgery (CSRF)
io.jenkins.plugins:atlassian-bitbucket-server-integration[2.1.0,4.1.4)Maven23 Jan 2025
  • M
Improper Authorization
org.jenkins-ci.plugins:gitlab-plugin[,1.9.7)Maven23 Jan 2025
  • M
Authentication Bypass Using an Alternate Path or Channel
org.keycloak:keycloak-ldap-federation[0,26.1.0)Maven23 Jan 2025
  • M
Cross-site Scripting (XSS)
org.apache.ranger:security-admin-web[,2.5.0)Maven22 Jan 2025
  • H
Server-side Request Forgery (SSRF)
org.apache.ranger:security-admin-web[,2.5.0)Maven22 Jan 2025
  • H
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)
org.apache.ambari:ambari-agent[0,]Maven22 Jan 2025
  • H
XML External Entity (XXE) Injection
org.apache.ambari.contrib.views:wfmanager[0,]Maven22 Jan 2025
  • H
Arbitrary Command Injection
org.apache.ambari:ambari-server[0,]Maven22 Jan 2025
  • H
Denial of Service (DoS)
org.apache.cxf:cxf-core[,3.5.10)[3.6.0,3.6.5)[4.0.0,4.0.6)Maven22 Jan 2025
  • H
Insecure Randomness
org.webjars.npm:undici[0,]Maven22 Jan 2025
  • H
Allocation of Resources Without Limits or Throttling
org.elasticsearch.plugin:x-pack[,7.17.21)[8.0.0,8.13.3)Maven21 Jan 2025
  • M
Origin Validation Error
org.webjars.npm:vite[,6.3.5)Maven21 Jan 2025
  • M
Improper Encoding or Escaping of Output
org.webjars.bowergithub.katex:katex[0,]Maven20 Jan 2025
  • M
Improper Encoding or Escaping of Output
org.webjars.npm:katex[,0.16.21)Maven20 Jan 2025
  • M
Cross-site Scripting (XSS)
org.apache.jspwiki:jspwiki-markdown[0,]Maven20 Jan 2025
  • M
Cross-site Scripting (XSS)
org.apache.jspwiki:jspwiki-main[0,]Maven20 Jan 2025
  • H
Improper Neutralization of Special Elements in Data Query Logic
org.webjars.npm:mongoose[0,]Maven17 Jan 2025
  • H
External Control of Assumed-Immutable Web Parameter
org.webjars.npm:electron[0,]Maven17 Jan 2025
  • H
Out-of-bounds Read
org.webjars.npm:electron[0,]Maven17 Jan 2025
  • C
Out-of-bounds Write
org.webjars.npm:electron[0,]Maven17 Jan 2025
  • H
Cross-site Scripting (XSS)
org.jboss.hal:hal-console[,3.6.21)[3.7.0,3.7.7)Maven15 Jan 2025
  • M
Files or Directories Accessible to External Parties
org.apache.linkis:linkis-metadata-query-service-jdbc[1.5.0,1.7.0)Maven15 Jan 2025
  • M
Files or Directories Accessible to External Parties
org.apache.linkis:linkis-common[1.5.0,1.7.0)Maven15 Jan 2025
  • H
Missing Authorization
org.xwiki.platform:xwiki-platform-netflux-api[13.9-rc-1,15.10.12)[16.0.0-rc-1,16.4.1)[16.5.0-rc-1,16.6.0-rc-1)Maven15 Jan 2025
  • H
Missing Authorization
org.xwiki.platform:xwiki-platform-realtime-webjar[13.9-rc-1,15.10.12)[16.0.0-rc-1,16.4.1)[16.5.0-rc-1,16.6.0-rc-1)Maven15 Jan 2025
  • M
Exposure of Sensitive Information Through Environmental Variables
org.keycloak:keycloak-services[,26.0.8)Maven14 Jan 2025
  • M
Exposure of Sensitive Information Through Environmental Variables
org.keycloak:keycloak-saml-core[,26.0.8)Maven14 Jan 2025
  • M
Exposure of Sensitive Information Through Environmental Variables
org.keycloak:keycloak-model-jpa[,26.0.8)Maven14 Jan 2025
  • M
Exposure of Sensitive Information Through Environmental Variables
org.keycloak:keycloak-core[,26.0.8)Maven14 Jan 2025
  • M
Exposure of Sensitive Information Through Environmental Variables
org.keycloak:keycloak-common[,26.0.8)Maven14 Jan 2025