Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
  • L
Directory TraversalCVE-2026-23907
Affects org.apache.pdfbox:pdfbox-examples | Versions [2.0.24,3.0.7)
Affects org.webjars.npm:h3 | Versions [0,]
Affects io.micronaut:micronaut-json-core | Versions [,3.10.5)[4.0.0-M1,4.10.16)[5.0.0-M1,5.0.0-M14)
  • C
Affects io.unitycatalog:unitycatalog-server | Versions [0,]
Affects org.webjars.npm:socket.io-parser | Versions [0,]
  • H
SQL InjectionCVE-2026-22730
Affects org.springframework.ai:spring-ai-mariadb-store | Versions [1.0.0-M5,1.0.4)[1.1.0-M1,1.1.3)[2.0.0-M1,2.0.0-M3)
  • H
SQL InjectionCVE-2026-22729
Affects org.springframework.ai:spring-ai-vector-store | Versions [1.0.0-M5,1.0.4)[1.1.0-M1,1.1.3)[2.0.0-M1,2.0.0-M3)
Affects io.micronaut:micronaut-http-server | Versions [4.7.0,4.10.17)[5.0.0-M1,5.0.0-M16)
Affects org.webjars.npm:jspdf | Versions [0,]
Affects org.webjars.npm:jspdf | Versions [0,]
  • H
XML Entity ExpansionCVE-2026-33036
Affects org.webjars.npm:fast-xml-parser | Versions [4.0.0-beta.0,]
  • H
Command InjectionCVE-2021-43113
Affects com.itextpdf:itextpdf | Versions [,5.5.13.3)
Affects org.apache.livy:livy-server | Versions [0.7.0-incubating,0.9.0-incubating)
Affects org.webjars.npm:unhead | Versions [0,]
Affects org.webjars.npm:spin.js | Versions [,3.1.0)
Affects org.apache.spark:spark-core_2.13 | Versions [,3.5.7-rc1)[4.0.0-preview1-rc1,4.0.1-rc1)
Affects org.apache.spark:spark-core_2.12 | Versions [,3.5.7-rc1)[4.0.0-preview1-rc1,4.0.1-rc1)
Affects org.webjars.npm:file-type | Versions [21.0.0,]
  • C
Directory TraversalCVE-2025-66249
Affects org.apache.livy:livy-server | Versions [,0.9.0-incubating)
Affects org.webjars.npm:trix | Versions [,2.1.17)
  • M
Affects org.webjars.npm:undici | Versions [0,]
  • H
Uncaught ExceptionCVE-2026-1528
Affects org.webjars.npm:undici | Versions [6.23.0,]
Affects org.webjars.npm:undici | Versions [0,]
  • H
Uncaught ExceptionCVE-2026-2229
Affects org.webjars.npm:undici | Versions [0,]
  • M
CRLF InjectionCVE-2026-1527
Affects org.webjars.npm:undici | Versions [0,]
Affects dev.matrixlab.webp4j:webp4j-core | Versions [,2.1.1)
Affects org.apache.iotdb:node-commons | Versions [1.0.0,1.3.7)[2.0.0,2.0.7)
Affects org.apache.iotdb:iotdb-server | Versions [1.0.0,1.3.7)[2.0.0,2.0.7)
Affects org.cloudfoundry.identity:cloudfoundry-identity-server | Versions [77.30.0,78.8.0)
  • L
Directory TraversalCVE-2026-2741
Affects com.vaadin:flow-build-tools | Versions [25.0.0-rc1,25.0.3)