Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Cross-site Scripting (XSS)
org.xwiki.rendering:xwiki-rendering-syntax-xhtml[5.4.5, 14.10)Maven20 Jul 2025
  • M
Use of Password Hash With Insufficient Computational Effort
com.xuxueli:xxl-job[0,]Maven20 Jul 2025
  • H
Directory Traversal
org.dspace:dspace-api[,7.6.4)[8.0,8.2)[9.0,9.1)Maven20 Jul 2025
  • C
Predictable Value Range from Previous Values
org.webjars.bowergithub.form-data:form-data[0,]Maven20 Jul 2025
  • C
Predictable Value Range from Previous Values
org.webjars.npm:form-data[,4.0.4)Maven20 Jul 2025
  • M
Open Redirect
com.xuxueli:xxl-sso[0,]Maven18 Jul 2025
  • C
Deserialization of Untrusted Data
org.apache.seata:seata-parent[2.0.0,2.3.0)Maven18 Jul 2025
  • H
Uncaught Exception
org.webjars.npm:multer[1.4.4-lts.1,]Maven18 Jul 2025
  • M
Improper Handling of Unexpected Data Type
org.webjars.bowergithub.jshttp:on-headers[0,]Maven18 Jul 2025
  • M
Improper Handling of Unexpected Data Type
org.webjars.npm:on-headers[0,]Maven18 Jul 2025
  • M
Cross-site Scripting (XSS)
org.webjars.bowergithub.kazupon:vue-i18n[,9.14.5)[10.0.0-alpha.1,10.0.8)[11.0.0-beta.0,11.1.10)Maven17 Jul 2025
  • M
Cross-site Scripting (XSS)
org.webjars.npm:vue-i18n[,9.14.5)[10.0.0-alpha.1,10.0.8)[11.0.0-beta.0,11.1.10)Maven17 Jul 2025
  • L
Exposure of Sensitive System Information to an Unauthorized Control Sphere
io.projectreactor.netty:reactor-netty-http[0,1.2.8)[1.3.0-M1, 1.3.0-M5)Maven17 Jul 2025
  • C
SQL Injection
com.liferay:com.liferay.friendly.url.service[,4.0.3)Maven17 Jul 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.frontend.taglib.clay[,7.1.10)Maven17 Jul 2025
  • H
Allocation of Resources Without Limits or Throttling
org.apache.cxf:cxf-core[,3.5.11)[3.6.0,3.6.6)[4.0.0,4.0.7)[4.1.0,4.1.1)Maven17 Jul 2025
  • H
XML External Entity (XXE) Injection
org.dspace:dspace-api[,7.6.4)[8.0,8.2)[9.0,9.1)Maven17 Jul 2025
  • M
Improper Validation of Specified Type of Input
org.jenkins-ci.tools:git-parameter[,444.vca_b_84d3703c2)Maven16 Jul 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.document.library.web[3.0.0, 3.0.104)[4.0.0, 4.0.94)[5.0.0, 5.0.53)Maven15 Jul 2025
  • H
XML External Entity (XXE) Injection
org.apache.jackrabbit:jackrabbit-spi-commons[2.20.0,2.20.17)[2.22.0,2.22.1)[2.23.0-beta,2.23.2-beta)Maven15 Jul 2025
  • H
XML External Entity (XXE) Injection
org.apache.jackrabbit:jackrabbit-core[2.20.0,2.20.17)[2.22.0,2.22.1)[2.23.0-beta,2.23.2-beta)Maven15 Jul 2025
  • H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
org.apache.zeppelin:zeppelin-interpreter-parent[0.10.1 ,0.12.0)Maven15 Jul 2025
  • H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
org.apache.zeppelin:zeppelin-zengine[0.10.1 ,0.12.0)Maven15 Jul 2025
  • H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
org.apache.zeppelin:zeppelin-server[0.10.1 ,0.12.0)Maven15 Jul 2025
  • H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
org.apache.zeppelin:zengine-plugins-parent[0.10.1 ,0.12.0)Maven15 Jul 2025
  • H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
org.apache.zeppelin:zeppelin-interpreter[0.10.1 ,0.12.0)Maven15 Jul 2025
  • H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
org.apache.zeppelin:zeppelin[0.10.1 ,0.12.0)Maven15 Jul 2025
  • C
Incorrect Authorization
org.xwiki.rendering:xwiki-rendering-transformation-macro[4.2-milestone-1,13.10.11)[14.0,14.4.7)[14.5,14.10)Maven15 Jul 2025
  • M
Insufficiently Protected Credentials
com.apica:apicaloadtest[0,]Maven13 Jul 2025
  • M
Insufficiently Protected Credentials
com.apica:apicaloadtest[0,]Maven13 Jul 2025