Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Regular Expression Denial of Service (ReDoS)
org.webjars.npm:fast-xml-parser[,4.4.1)Maven30 Jul 2024
  • L
Improper Privilege Management
org.neo4j:neo4j-enterprise-cyphe[0,]Maven28 Jul 2024
  • H
Denial of Service (DoS)
com.fasterxml.jackson.core:jackson-core[2.0.0-RC1,2.15.0-rc1)Maven26 Jul 2024
  • M
Cross-site Scripting (XSS)
org.apache.qpid:qpid-broker-plugins-management-http[,9.2.1)Maven25 Jul 2024
  • H
Template Injection
org.openidentityplatform.openam:openam-oauth2[,15.0.4)Maven25 Jul 2024
  • L
Remote Code Execution (RCE)
org.springframework.cloud:spring-cloud-skipper-server-core[2.11.0, 2.11.4)Maven25 Jul 2024
  • H
Information Exposure
org.apache.pinot:pinot-core[0.1,1.0.0)Maven25 Jul 2024
  • H
Information Exposure
org.apache.pinot:pinot-broker[0.1,1.0.0)Maven25 Jul 2024
  • H
Information Exposure
org.apache.pinot:pinot-controller[0.1,1.0.0)Maven25 Jul 2024
  • H
XML External Entity (XXE) Injection
org.apache.drill.contrib:drill-format-xml[1.19.0, 1.21.2)Maven24 Jul 2024
  • M
Improper Privilege Management
org.apache.streampark:streampark-flink[0,]Maven23 Jul 2024
  • M
Insufficient Session Expiration
org.apache.streampark:streampark[0,]Maven23 Jul 2024
  • H
Acceptance of Extraneous Untrusted Data With Trusted Data
dnsjava:dnsjava[,3.6.0)Maven23 Jul 2024
  • H
Allocation of Resources Without Limits or Throttling
dnsjava:dnsjava[,3.6.0)Maven23 Jul 2024
  • H
Allocation of Resources Without Limits or Throttling
dnsjava:dnsjava[,3.6.0)Maven23 Jul 2024
  • M
Credential Exposure
org.apache.rocketmq:rocketmq-broker[4.5.2,5.3.0)Maven23 Jul 2024
  • M
Credential Exposure
org.apache.rocketmq:rocketmq-proxy[4.5.2,5.3.0)Maven23 Jul 2024
  • M
HTML Injection
org.apache.syncope.client.idrepo:syncope-client-idrepo-console[,3.0.8)Maven22 Jul 2024
  • M
HTML Injection
org.apache.syncope.client.idrepo:syncope-client-idrepo-common-ui[,3.0.8)Maven22 Jul 2024
  • L
Improper Authorization
org.opensearch.plugin:opensearch-reports-scheduler[,2.14.0.0)Maven22 Jul 2024
  • H
Deserialization of Untrusted Data
ai.h2o:h2o-core[0,]Maven21 Jul 2024
  • C
Improper Input Validation
io.netty.incubator:netty-incubator-codec-bhttp[,0.0.13.Final)Maven19 Jul 2024
  • H
Uncontrolled Resource Consumption
org.apache.cxf:cxf-rt-rs-security-jose[,3.5.9)[3.6.0,3.6.4)[4.0.0,4.0.5)Maven19 Jul 2024
  • H
Improper Release of Memory Before Removing Last Reference ('Memory Leak')
org.apache.cxf:cxf-rt-transports-http[3.6.0,3.6.4)[4.0.0,4.0.5)Maven19 Jul 2024
  • H
Server-side Request Forgery (SSRF)
org.apache.cxf:cxf-rt-rs-service-description[,3.5.9)[3.6.0,3.6.4)[4.0.0,4.0.5)Maven19 Jul 2024
  • M
Improper Authentication
org.keycloak:keycloak-services[,22.0.10)[23.0.0,24.0.3)Maven19 Jul 2024
  • M
Cross-site Scripting (XSS)
org.webjars.npm:bootstrap[4.0.0,5.0.0-beta1)Maven18 Jul 2024
  • M
Cross-site Scripting (XSS)
org.webjars:bootstrap[4.0.0,5.0.0-beta1)Maven18 Jul 2024
  • M
Cross-site Scripting (XSS)
org.webjars.bower:bootstrap[4.0.0,5.0.0-beta1)Maven18 Jul 2024
  • M
Cross-site Scripting (XSS)
org.webjars.bowergithub.twbs:bootstrap[4.0.0,5.0.0-beta1)Maven18 Jul 2024