Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Improper Isolation or Compartmentalization
org.apache.syncope.fit:syncope-fit-build-tools[,3.0.14)[4.0.0,4.0.2)Maven21 Oct 2025
  • H
Improper Isolation or Compartmentalization
org.apache.syncope.core:syncope-core-provisioning-java[,3.0.14)[4.0.0,4.0.2)Maven21 Oct 2025
  • H
Improper Isolation or Compartmentalization
org.apache.syncope.core:syncope-core-persistence-api[,3.0.14)[4.0.0,4.0.2)Maven21 Oct 2025
  • H
Improper Isolation or Compartmentalization
org.apache.syncope.core:syncope-core-spring[,3.0.14)[4.0.0,4.0.2)Maven21 Oct 2025
  • M
SQL Injection
net.mingsoft:ms-mcms[,6.0.2)Maven20 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
org.apache.geode:geode-web[,1.15.2)Maven20 Oct 2025
  • C
Improper Certificate Validation
org.opensearch.dataprepper.plugins:kafka-plugins[,2.12.2)Maven19 Oct 2025
  • C
Improper Certificate Validation
org.opensearch.dataprepper.plugins:geoip-processor[,2.12.2)Maven19 Oct 2025
  • C
Improper Certificate Validation
org.opensearch.dataprepper.plugins:opensearch[,2.12.2)Maven19 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
org.springframework:spring-websocket[,6.2.12)Maven17 Oct 2025
  • H
Expression Language Injection
org.springframework.cloud:spring-cloud-gateway-server[,4.2.6)[4.3.0,4.3.2)Maven16 Oct 2025
  • M
CRLF Injection
io.netty:netty-codec-smtp[,4.1.128.Final)[4.2.0.Alpha1,4.2.7.Final)Maven16 Oct 2025
  • M
Incorrect Permission Assignment for Critical Resource
com.liferay:com.liferay.site.navigation.menu.item.asset.vocabulary[,1.0.23)Maven16 Oct 2025
  • M
Directory Traversal
org.zwobble.mammoth:mammoth[,1.11.0)Maven16 Oct 2025
  • M
Cross-site Scripting
org.apache.geode:geode-web-api[,1.15.2)Maven15 Oct 2025
  • C
Improper Verification of Cryptographic Signature
org.apache.spark:spark-network-common_2.13[,3.4.4)[3.5.0,3.5.2)Maven15 Oct 2025
  • C
Improper Verification of Cryptographic Signature
org.apache.spark:spark-network-common_2.12[,3.4.4)[3.5.0,3.5.2)Maven15 Oct 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.change.tracking.web[,2.0.121)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.change.tracking.web[,2.0.120)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.account.api[,18.2.0)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.account.service[,2.0.119)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.account.admin.web[,2.0.115)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay.commerce:com.liferay.commerce.service[,11.0.162)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay.commerce:com.liferay.commerce.shipment.web[,4.0.64)Maven14 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay.portal:com.liferay.portal.impl[,99.0.1)Maven14 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.mentions.web[,6.0.35)Maven14 Oct 2025
  • M
Incorrect Execution-Assigned Permissions
org.apache.streampark:streampark[2.1.4,]Maven13 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
com.liferay:com.liferay.change.tracking.web[2.0.9,2.0.121)Maven13 Oct 2025
  • M
SQL Injection
org.apache.flink:flink-cdc-pipeline-connector-oceanbase[3.0.0,3.5.0)Maven13 Oct 2025
  • M
SQL Injection
org.apache.flink:flink-connector-sqlserver-cdc[3.0.0,3.5.0)Maven13 Oct 2025