Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Uncontrolled Search Path Element
CVE-2025-10939
Affects
org.keycloak:keycloak-quarkus-server
| Versions
[,26.4.0)
H
Relative Path Traversal
CVE-2025-55752
Affects
org.apache.tomcat:tomcat-catalina
| Versions
[,9.0.109)
[10.1.0-M1,10.1.45)
[11.0.0-M1,11.0.11)
H
Relative Path Traversal
CVE-2025-55752
Affects
org.apache.tomcat.embed:tomcat-embed-core
| Versions
[,9.0.109)
[10.1.0-M1,10.1.45)
[11.0.0-M1,11.0.11)
M
Improper Resource Shutdown or Release
CVE-2025-61795
Affects
org.apache.tomcat.embed:tomcat-embed-core
| Versions
[,9.0.110)
[10.0.0-M1,10.1.47)
[11.0.0-M1,11.0.12)
M
Improper Output Neutralization for Logs
CVE-2025-55754
Affects
org.apache.tomcat:tomcat-juli
| Versions
[9.0.0.40, 9.0.109)
[10.1.0-M1, 10.1.45)
[11.0.0-M1, 11.0.11)
M
Improper Resource Shutdown or Release
CVE-2025-61795
Affects
org.apache.tomcat:catalina
| Versions
[0,]
M
Improper Resource Shutdown or Release
CVE-2025-61795
Affects
org.apache.tomcat:tomcat-catalina
| Versions
[,9.0.110)
[10.0.0-M1,10.1.47)
[11.0.0-M1,11.0.12)
M
Allocation of Resources Without Limits or Throttling
CVE-2025-62254
Affects
com.liferay.portal:com.liferay.portal.impl
| Versions
[,97.0.0)
M
Allocation of Resources Without Limits or Throttling
CVE-2025-12194
Affects
org.bouncycastle:bcprov-lts8on
| Versions
[2.73.0, 2.73.8)
M
Allocation of Resources Without Limits or Throttling
CVE-2025-12194
Affects
org.bouncycastle:bc-fips-debug
| Versions
[2.1.1, 2.1.2)
M
Allocation of Resources Without Limits or Throttling
CVE-2025-12194
Affects
org.bouncycastle:bc-fips
| Versions
[2.1.1, 2.1.2)
M
Cross-site Scripting (XSS)
CVE-2025-60837
Affects
net.mingsoft:ms-mcms
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2025-62248
Affects
com.liferay:com.liferay.dynamic.data.mapping.web
| Versions
[0,]
H
XML External Entity (XXE) Injection
CVE-2025-53066
Affects
org.graalvm.sdk:graal-sdk
| Versions
[,17.0.17)
[21.0.0,21.0.9)
L
Cross-site Scripting (XSS)
CVE-2025-62255
Affects
com.liferay:com.liferay.knowledge.base.web
| Versions
[,5.0.109)
M
Missing Authorization
CVE-2025-62256
Affects
com.liferay:com.liferay.portal.vulcan.impl
| Versions
[,5.0.110)
M
Missing Authorization
CVE-2025-62256
Affects
com.liferay:com.liferay.portal.security.auth.verifier
| Versions
[,6.0.26)
M
Insufficient Session Expiration
CVE-2025-12110
Affects
org.keycloak:keycloak-services
| Versions
[,26.3.0)
M
Arbitrary File Upload
CVE-2021-33990
Affects
com.liferay.portal:portal-web
| Versions
[,6.2.1)
M
Arbitrary File Upload
CVE-2021-33990
Affects
com.liferay.portal:portal-service
| Versions
[,6.2.5)
L
Missing Authorization
CVE-2025-62247
Affects
com.liferay:com.liferay.search.experiences.service
| Versions
[0,]
L
Predictable Seed in Pseudo-Random Number Generator (PRNG)
CVE-2025-62710
Affects
org.sakaiproject.scheduler:scheduler-component-shared
| Versions
[0,]
L
Predictable Seed in Pseudo-Random Number Generator (PRNG)
CVE-2025-62710
Affects
org.sakaiproject.kernel:sakai-kernel-impl
| Versions
[0,]
H
Files or Directories Accessible to External Parties
CVE-2025-11965
Affects
io.vertx:vertx-web
| Versions
[,4.5.22)
[5.0.0.CR1,5.0.5)
L
Cross-site Scripting (XSS)
CVE-2025-11966
Affects
io.vertx:vertx-web
| Versions
[,4.5.22)
[5.0.0.CR1,5.0.5)
H
Improper Verification of Cryptographic Signature
CVE-2025-53057
Affects
org.graalvm.sdk:graal-sdk
| Versions
[,17.0.17)
[21.0.0,21.0.9)
M
Improper Input Validation
CVE-2025-61748
Affects
org.graalvm.sdk:graal-sdk
| Versions
[,21.0.9)
M
Origin Validation Error
CVE-2025-62250
Affects
com.liferay:com.liferay.portal.cluster.multiple
| Versions
[,5.0.35)
M
Cross-site Scripting (XSS)
CVE-2025-62249
Affects
com.liferay.portal:com.liferay.portal.impl
| Versions
[0,]
H
Improper Isolation or Compartmentalization
CVE-2025-57738
Affects
org.apache.syncope.fit:syncope-fit-build-tools
| Versions
[,3.0.14)
[4.0.0,4.0.2)