Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Server-side Request Forgery (SSRF)
org.apache.kylin:kylin-query-server[,5.0.3)Maven3 Oct 2025
  • M
Server-side Request Forgery (SSRF)
org.apache.kylin:kylin-ops-server[,5.0.3)Maven3 Oct 2025
  • M
Server-side Request Forgery (SSRF)
org.apache.kylin:kylin-core-metadata[4.0.0,5.0.3)Maven3 Oct 2025
  • M
Server-side Request Forgery (SSRF)
org.apache.kylin:kylin-core-common[4.0.0,5.0.3)Maven3 Oct 2025
  • M
Server-side Request Forgery (SSRF)
org.apache.kylin:kylin-common-server[,5.0.3)Maven3 Oct 2025
  • M
Server-side Request Forgery (SSRF)
org.apache.kylin:kylin-common-service[,5.0.3)Maven3 Oct 2025
  • H
Improper Resource Shutdown or Release
co.fs2:fs2-io_2.11[0.9.0-M1,]Maven2 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.portal.security.audit.web[5.0.1,5.0.33)Maven1 Oct 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.portal.security.audit.storage.service[6.0.4,6.0.41)Maven1 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.calendar.web[5.0.45,5.0.87)Maven1 Oct 2025
  • M
Directory Traversal
com.liferay.portal:com.liferay.portal.impl[,96.0.0)Maven1 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.journal.web[5.0.34,5.0.161)Maven1 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.calendar.web[5.0.45,5.0.88)Maven1 Oct 2025
  • M
External Initialization of Trusted Variables or Data Stores
ch.qos.logback:logback-core[,1.5.19)Maven1 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.item.selector.web[7.0.35,7.0.52)Maven1 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.product.navigation.control.menu.web[6.0.80,6.0.83)Maven1 Oct 2025
  • H
XML Injection
io.minio:minio[7.0.0,8.6.0)Maven30 Sept 2025
  • M
Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
cn.hutool:hutool-extra[,5.8.40)Maven29 Sept 2025
  • H
Improper Input Validation
org.apache.iotdb:iotdb-core[1.3.3,2.0.5)Maven28 Sept 2025
  • M
Cross-site Scripting (XSS)
org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.rest.api.publisher.v1.common[,9.31.117)Maven26 Sept 2025
  • M
Cross-site Scripting (XSS)
org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.api[,9.31.117)Maven26 Sept 2025
  • C
Deserialization of Untrusted Data
org.apache.iotdb:iotdb-confignode[1.0.0,2.0.5)Maven26 Sept 2025
  • M
Missing Release of Memory after Effective Lifetime
com.liferay:com.liferay.portal.vulcan.impl[,5.0.115)Maven26 Sept 2025
  • M
User Interface (UI) Misrepresentation of Critical Information
org.wso2.identity.apps:identity-apps-core[,2.4.4)Maven26 Sept 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay.commerce:com.liferay.commerce.service[,11.0.164)Maven26 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.batch.engine.api[,24.1.0)Maven26 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.headless.batch.engine.impl[,4.0.52)Maven26 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.batch.engine.service[,4.0.102)Maven26 Sept 2025
  • M
Improper Handling of Insufficient Permissions or Privileges
org.apache.zookeeper:zookeeper[3.9.0, 3.9.4)Maven26 Sept 2025
  • M
Insufficient Session Expiration
com.liferay:com.liferay.saml.impl[,5.0.51)Maven25 Sept 2025