Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo
cocoapods
Composer
Go
hex
Maven
npm
NuGet
pip
pub
RubyGems
Swift
Unmanaged (C/C++)
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
VULNERABILITY
AFFECTS
TYPE
PUBLISHED
L
Insufficient Verification of Data Authenticity
org.wildfly:wildfly-elytron-oidc-client-subsystem
[0,]
Maven
11 Dec 2024
M
Use of Cache Containing Sensitive Information
io.ktor:ktor-client-core-jvm
[,2.3.13)
[3.0.0-beta-1,3.0.0-rc-2)
Maven
9 Dec 2024
C
Malicious Package
io.github.xz-java:xz-java
[0,]
Maven
9 Dec 2024
L
Improper Input Validation
dev.sigstore:sigstore-java
[,1.2.0)
Maven
6 Dec 2024
H
Uncontrolled Resource Consumption
org.kohsuke.stapler:json-lib
[,2.4-jenkins-8)
Maven
5 Dec 2024
H
Denial of Service (DoS)
io.github.davidepianca98:kmqtt-common
[,1.0.0)
Maven
5 Dec 2024
H
Deserialization of Untrusted Data
org.apache.hive:hive-standalone-metastore-server
[4.0.0-alpha-1,4.0.0-alpha-2)
Maven
5 Dec 2024
H
Deserialization of Untrusted Data
org.apache.hive:hive-exec
[4.0.0-alpha-1,4.0.0-alpha-2)
Maven
5 Dec 2024
H
Improper Authentication
org.apache.ozone:ozone-s3gateway
[14.0,1.4.1)
Maven
3 Dec 2024
H
Out-of-bounds Read
io.antmedia:ant-media-server
[,2.9.0)
Maven
3 Dec 2024
H
Improper Authentication
org.asynchttpclient:async-http-client
[3.0.0,3.0.1)
Maven
3 Dec 2024
H
Improper Neutralization of Special Elements in Data Query Logic
org.webjars.npm:mongoose
[0,]
Maven
3 Dec 2024
M
Cross-site Scripting (XSS)
org.webjars.bower:axios
[0,]
Maven
2 Dec 2024
M
Cross-site Scripting (XSS)
org.webjars.bowergithub.axios:axios
[0,]
Maven
2 Dec 2024
M
Cross-site Scripting (XSS)
org.webjars.npm:axios
[,1.7.8)
Maven
2 Dec 2024
M
Cross-site Scripting (XSS)
org.webjars.npm:vue-i18n
[0,]
Maven
1 Dec 2024
H
XML External Entity (XXE) Injection
org.verapdf.apps:gui
[0,]
Maven
1 Dec 2024
H
Prototype Pollution
org.webjars.bowergithub.kazupon:vue-i18n
[10.0.0,10.0.5)
[9.7.0,9.14.2)
Maven
28 Nov 2024
H
Prototype Pollution
org.webjars.npm:vue-i18n
[10.0.0,10.0.5)
[9.7.0,9.14.2)
Maven
28 Nov 2024
H
Cross-site Request Forgery (CSRF)
org.seleniumhq.selenium:selenium-grid
[,4.0.0-alpha-7)
Maven
27 Nov 2024
H
Cross-site Request Forgery (CSRF)
org.seleniumhq.selenium:selenium-server
[0,]
Maven
27 Nov 2024
M
Improper Preservation of Permissions
io.lakefs:sdk
[,1.33.0)
Maven
27 Nov 2024
M
Insufficient Verification of Data Authenticity
dev.sigstore:sigstore-java
[,1.1.0)
Maven
27 Nov 2024
H
Template Injection
org.datagear:datagear-web
[,4.7.0)
Maven
25 Nov 2024
H
Use of Hard-coded Credentials
org.keycloak:keycloak-quarkus-server
[,26.0.6)
Maven
22 Nov 2024
M
External Control of File Name or Path
org.keycloak:keycloak-services
[,26.0.6)
Maven
22 Nov 2024
H
Regular Expression Denial of Service (ReDoS)
org.keycloak:keycloak-services
[,26.0.6)
Maven
22 Nov 2024
M
HTTP Request Smuggling
org.keycloak:keycloak-services
[,26.0.6)
Maven
22 Nov 2024
M
HTTP Request Smuggling
org.keycloak:keycloak-quarkus-server
[,26.0.6)
Maven
22 Nov 2024
M
HTTP Request Smuggling
org.keycloak:keycloak-common
[,26.0.6)
Maven
22 Nov 2024