Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Improper Input Validation
org.apache.iotdb:iotdb-core[1.3.3,2.0.5)Maven28 Sept 2025
  • M
Cross-site Scripting (XSS)
org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.rest.api.publisher.v1.common[,9.31.117)Maven26 Sept 2025
  • M
Cross-site Scripting (XSS)
org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.api[,9.31.117)Maven26 Sept 2025
  • C
Deserialization of Untrusted Data
org.apache.iotdb:iotdb-confignode[1.0.0,2.0.5)Maven26 Sept 2025
  • M
Missing Release of Memory after Effective Lifetime
com.liferay:com.liferay.portal.vulcan.impl[,5.0.115)Maven26 Sept 2025
  • M
User Interface (UI) Misrepresentation of Critical Information
org.wso2.identity.apps:identity-apps-core[,2.4.4)Maven26 Sept 2025
  • M
Authorization Bypass Through User-Controlled Key
com.liferay.commerce:com.liferay.commerce.service[,11.0.164)Maven26 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.batch.engine.api[,24.1.0)Maven26 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.headless.batch.engine.impl[,4.0.52)Maven26 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.batch.engine.service[,4.0.102)Maven26 Sept 2025
  • M
Improper Handling of Insufficient Permissions or Privileges
org.apache.zookeeper:zookeeper[3.9.0, 3.9.4)Maven26 Sept 2025
  • M
Insufficient Session Expiration
com.liferay:com.liferay.saml.impl[,5.0.51)Maven25 Sept 2025
  • M
Symlink Following
org.webjars.npm:tar-fs[0,]Maven25 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.tools.service.builder[,1.0.471)Maven24 Sept 2025
  • M
SQL Injection
com.ruoyi:ruoyi-generator[0,]Maven24 Sept 2025
  • H
Denial of Service (DoS)
com.liferay:com.liferay.portal.vulcan.api[8.0.2,40.2.0)Maven24 Sept 2025
  • H
Denial of Service (DoS)
com.liferay:com.liferay.portal.vulcan.impl[5.0.7,5.0.105)Maven24 Sept 2025
  • M
Improper Authorization
com.ruoyi:ruoyi-admin[0,]Maven24 Sept 2025
  • H
Incorrect Authorization
edu.internet2.middleware.grouper:grouper[5.17.1,5.20.5)Maven24 Sept 2025
  • M
Insertion of Sensitive Information Into Sent Data
com.liferay:com.liferay.portal.security.audit.event.generators.user.management[,5.0.13)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_sjs1_2.12[,0.23.31)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_2.12[,0.23.31)[1.0.0-M2,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_native0.4_2.12[,0.23.31)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_native0.4_3[,0.23.31)[1.0.0-M37,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_sjs1_3[,0.23.31)[1.0.0-M24,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_native0.4_2.13[,0.23.31)[1.0.0-M24,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_sjs1_2.13[,0.23.31)[1.0.0-M24,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_3[,0.23.31)[1.0.0-M22,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-core_2.13[,0.23.31)[1.0.0-M37,1.0.0-M45)Maven24 Sept 2025
  • M
HTTP Request Smuggling
org.http4s:http4s-ember-server_sjs1_2.12[,0.23.31)Maven24 Sept 2025