Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Deserialization of Untrusted Data
CVE-2025-10768
Affects
ai.h2o:h2o-core
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2025-6544
Affects
ai.h2o:h2o-core
| Versions
[0,3.46.0.8)
M
Cross-site Request Forgery (CSRF)
CVE-2025-43809
Affects
com.liferay.portal:portal-service
| Versions
[,6.1.0)
M
Cross-site Request Forgery (CSRF)
CVE-2025-43809
Affects
com.liferay.portal:portal-impl
| Versions
[,6.1.0)
M
Incorrect Permission Assignment for Critical Resource
CVE-2025-43808
Affects
com.liferay.commerce:com.liferay.commerce.product.type.virtual.service
| Versions
[,4.0.46)
M
Authorization Bypass Through User-Controlled Key
CVE-2025-43782
Affects
com.liferay:com.liferay.portal.workflow.kaleo.service
| Versions
[,6.0.82)
M
Authorization Bypass Through User-Controlled Key
CVE-2025-43782
Affects
com.liferay:com.liferay.portal.workflow.kaleo.runtime.integration.impl
| Versions
[,5.0.48)
C
Incorrect Default Permissions
CVE-2024-43166
Affects
org.apache.dolphinscheduler:dolphinscheduler
| Versions
[,3.3.1)
M
Log Injection
CVE-2025-59476
Affects
io.jenkins.lib:support-log-formatter
| Versions
[,1.3.1)
M
Cross-site Scripting (XSS)
CVE-2025-43804
Affects
com.liferay:com.liferay.portal.search.web
| Versions
[,6.0.124)
M
Unchecked Input for Loop Condition
CVE-2025-43801
Affects
com.liferay.portal:com.liferay.portal.impl
| Versions
[,96.0.0)
M
Missing Authorization
CVE-2025-59474
Affects
org.jenkins-ci.main:jenkins-core
| Versions
[,2.516.3)
[2.517,2.528)
M
Missing Authorization
CVE-2025-59475
Affects
org.jenkins-ci.main:jenkins-core
| Versions
[,2.516.3)
[2.517,2.528)
C
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2025-59340
Affects
com.hubspot.jinjava:jinjava
| Versions
[,2.8.1)
C
Command Injection
CVE-2024-43115
Affects
org.apache.dolphinscheduler:dolphinscheduler-alert-script
| Versions
[,3.3.1)
M
Missing Critical Step in Authentication
CVE-2025-43798
Affects
com.liferay:com.liferay.multi.factor.authentication.timebased.otp.web
| Versions
[,2.0.25)
H
Incorrect Authorization
CVE-2025-41248
Affects
org.springframework.security:spring-security-core
| Versions
[6.4.4,6.4.10)
[6.5.0,6.5.4)
H
Incorrect Authorization
CVE-2025-41249
Affects
org.springframework:spring-core
| Versions
[,6.2.11)
L
Incorrect Authorization
CVE-2025-43789
Affects
com.liferay.commerce:com.liferay.commerce.service
| Versions
[,11.0.168)
L
Incorrect Authorization
CVE-2025-43789
Affects
com.liferay:com.liferay.comment.web
| Versions
[,6.1.4)
M
Missing Authorization
CVE-2025-43788
Affects
com.liferay:com.liferay.organizations.item.selector.web
| Versions
[,4.0.22)
M
Open Redirect
CVE-2025-43795
Affects
com.liferay.portal:com.liferay.portal.impl
| Versions
[,93.0.0)
M
Cross-site Scripting (XSS)
CVE-2025-43800
Affects
com.liferay:com.liferay.object.web
| Versions
[,1.0.194)
M
Cross-site Scripting (XSS)
CVE-2025-43791
Affects
com.liferay:com.liferay.dynamic.data.mapping.form.field.type
| Versions
[,6.0.161)
H
Timing Attack
CVE-2025-59432
Affects
com.ongres.scram:scram-common
| Versions
[,3.2)
M
Cross-site Scripting (XSS)
CVE-2025-43787
Affects
com.liferay:com.liferay.users.admin.web
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2025-43794
Affects
com.liferay:com.liferay.portal.settings.web
| Versions
[,5.0.53)
H
Deserialization of Untrusted Data
CVE-2025-59328
Affects
org.apache.fory:fory-core
| Versions
[,0.12.2)
M
Use of Default Credentials
CVE-2025-43799
Affects
com.liferay.portal:com.liferay.portal.impl
| Versions
[,97.0.0)
L
External Control of System or Configuration Setting
CVE-2025-43792
Affects
com.liferay.portal:com.liferay.portal.kernel
| Versions
[,130.0.1)