Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Cross-site Scripting (XSS)
org.xwiki.platform:xwiki-platform-web-war[16.0.0-rc-1,16.0.0)[15.6-rc-1,15.10.6)[15.0-rc-1,15.5.5)[4.2-milestone-3,14.10.21)Maven1 Aug 2024
  • C
Remote Code Execution (RCE)
org.xwiki.platform:xwiki-platform-web-war[9.2-rc-1,14.10.21)[15.0-rc-1, 15.5.5)[15.6-rc-1, 15.10.2)Maven1 Aug 2024
  • C
Remote Code Execution (RCE)
org.xwiki.platform:xwiki-platform-oldcore[9.2-rc-1,14.10.21)[15.0-rc-1, 15.5.5)[15.6-rc-1, 15.10.2)Maven1 Aug 2024
  • C
Remote Code Execution (RCE)
org.xwiki.platform:xwiki-platform-core[9.2-rc-1,14.10.21)[15.0-rc-1, 15.5.5)[15.6-rc-1, 15.10.2)Maven1 Aug 2024
  • C
Remote Code Execution (RCE)
org.xwiki.platform:xwiki-platform-search-ui[9.2-rc-1,14.10.21)[15.0-rc-1, 15.5.5)[15.6-rc-1, 15.10.2)Maven1 Aug 2024
  • M
Cross-site Scripting (XSS)
org.xwiki.platform:xwiki-platform-web-templates[11.8-rc-1,15.10.8)[16.0.0-rc-1,16.3.0-rc-1)Maven1 Aug 2024
  • M
Missing Authorization
org.xwiki.platform:xwiki-platform-oldcore[13.10.4, 14.10.21)[15.0.0,15.5.5)[15.6-rc-1,15.10.6)Maven1 Aug 2024
  • M
Missing Encryption of Sensitive Data
org.elasticsearch:elasticsearch[,7.17.23)[8.0.0-alpha1,8.13.0)Maven1 Aug 2024
  • M
Cross-site Scripting (XSS)
org.webjars.npm:vue-template-compiler[0,]Maven30 Jul 2024
  • H
Allocation of Resources Without Limits or Throttling
com.graphql-java:graphql-java[,0.0.0-2024-03-22T04-18-12-97743bc)[19.0,19.11)[20.0,20.9)[21.0,21.5)Maven30 Jul 2024
  • C
User Impersonation
org.apache.seatunnel:seatunnel-app[,1.0.1)Maven30 Jul 2024
  • M
Regular Expression Denial of Service (ReDoS)
org.webjars.npm:fast-xml-parser[,4.4.1)Maven30 Jul 2024
  • L
Improper Privilege Management
org.neo4j:neo4j-enterprise-cyphe[0,]Maven28 Jul 2024
  • H
Denial of Service (DoS)
com.fasterxml.jackson.core:jackson-core[2.0.0-RC1,2.15.0-rc1)Maven26 Jul 2024
  • M
Cross-site Scripting (XSS)
org.apache.qpid:qpid-broker-plugins-management-http[,9.2.1)Maven25 Jul 2024
  • H
Template Injection
org.openidentityplatform.openam:openam-oauth2[,15.0.4)Maven25 Jul 2024
  • L
Remote Code Execution (RCE)
org.springframework.cloud:spring-cloud-skipper-server-core[2.11.0, 2.11.4)Maven25 Jul 2024
  • H
Information Exposure
org.apache.pinot:pinot-core[0.1,1.0.0)Maven25 Jul 2024
  • H
Information Exposure
org.apache.pinot:pinot-broker[0.1,1.0.0)Maven25 Jul 2024
  • H
Information Exposure
org.apache.pinot:pinot-controller[0.1,1.0.0)Maven25 Jul 2024
  • H
XML External Entity (XXE) Injection
org.apache.drill.contrib:drill-format-xml[1.19.0, 1.21.2)Maven24 Jul 2024
  • M
Improper Privilege Management
org.apache.streampark:streampark-flink[0,]Maven23 Jul 2024
  • M
Insufficient Session Expiration
org.apache.streampark:streampark[0,]Maven23 Jul 2024
  • H
Acceptance of Extraneous Untrusted Data With Trusted Data
dnsjava:dnsjava[,3.6.0)Maven23 Jul 2024
  • H
Allocation of Resources Without Limits or Throttling
dnsjava:dnsjava[,3.6.0)Maven23 Jul 2024
  • H
Allocation of Resources Without Limits or Throttling
dnsjava:dnsjava[,3.6.0)Maven23 Jul 2024
  • M
Credential Exposure
org.apache.rocketmq:rocketmq-broker[4.5.2,5.3.0)Maven23 Jul 2024
  • M
Credential Exposure
org.apache.rocketmq:rocketmq-proxy[4.5.2,5.3.0)Maven23 Jul 2024
  • M
HTML Injection
org.apache.syncope.client.idrepo:syncope-client-idrepo-console[,3.0.8)Maven22 Jul 2024
  • M
HTML Injection
org.apache.syncope.client.idrepo:syncope-client-idrepo-common-ui[,3.0.8)Maven22 Jul 2024