Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Incorrect Authorization
org.springframework.security:spring-security-core[6.4.4,6.4.10)[6.5.0,6.5.4)Maven17 Sept 2025
  • H
Incorrect Authorization
org.springframework:spring-core[,6.2.11)Maven17 Sept 2025
  • L
Incorrect Authorization
com.liferay.commerce:com.liferay.commerce.service[,11.0.168)Maven17 Sept 2025
  • L
Incorrect Authorization
com.liferay:com.liferay.comment.web[,6.1.4)Maven17 Sept 2025
  • M
Missing Authorization
com.liferay:com.liferay.organizations.item.selector.web[,4.0.22)Maven17 Sept 2025
  • M
Open Redirect
com.liferay.portal:com.liferay.portal.impl[,93.0.0)Maven17 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.object.web[,1.0.194)Maven17 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.dynamic.data.mapping.form.field.type[,6.0.161)Maven17 Sept 2025
  • H
Timing Attack
com.ongres.scram:scram-common[,3.2)Maven17 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.users.admin.web[0,]Maven17 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.settings.web[,5.0.53)Maven17 Sept 2025
  • H
Deserialization of Untrusted Data
org.apache.fory:fory-core[,0.12.2)Maven17 Sept 2025
  • M
Use of Default Credentials
com.liferay.portal:com.liferay.portal.impl[,97.0.0)Maven17 Sept 2025
  • L
External Control of System or Configuration Setting
com.liferay.portal:com.liferay.portal.kernel[,130.0.1)Maven17 Sept 2025
  • L
External Control of System or Configuration Setting
com.liferay:com.liferay.staging.taglib[,8.0.4)Maven17 Sept 2025
  • M
Improper Validation of Specified Quantity in Input
com.liferay:com.liferay.cookies.impl[,1.0.12)Maven17 Sept 2025
  • H
Improper Encoding or Escaping of Output
org.webjars.npm:element-plus[0,]Maven15 Sept 2025
  • H
Authorization Bypass Through User-Controlled Key
com.liferay:com.liferay.object.service[,1.0.197)Maven15 Sept 2025
  • H
Improper Resource Shutdown or Release
co.fs2:fs2-io_3[,2.5.13)[3.12.0-RC1,3.12.2)[3.13.0-M1,3.13.0-M7)Maven15 Sept 2025
  • H
Improper Resource Shutdown or Release
co.fs2:fs2-io_2.13[,2.5.13)[3.12.0-RC1,3.12.2)[3.13.0-M1,3.13.0-M7)Maven15 Sept 2025
  • H
Improper Resource Shutdown or Release
co.fs2:fs2-io_2.12[,2.5.13)[3.12.0-RC1,3.12.2)[3.13.0-M1,3.13.0-M7)Maven15 Sept 2025
  • M
Missing Authorization
io.jenkins.plugins:opentelemetry[,3.1543.1545.vf5a_4ec123769)Maven14 Sept 2025
  • M
Incorrect Authorization
com.liferay:com.liferay.headless.builder.impl[,1.0.32)Maven14 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.frontend.editor.ckeditor.web[5.0.7,5.0.101)Maven14 Sept 2025
  • M
Cross-site Scripting (XSS)
org.keycloak:keycloak-ui-shared[,26.3.4)Maven12 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.workflow.kaleo.forms.web[5.0.3,5.0.107)Maven12 Sept 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.client.extension.web[,1.0.71)Maven12 Sept 2025
  • M
Timing Attack
com.liferay:com.liferay.portal.workflow.kaleo.runtime.integration.impl[5.0.23,5.0.50)Maven11 Sept 2025
  • M
Timing Attack
com.liferay:com.liferay.portal.vulcan.impl[5.0.7,5.0.127)Maven11 Sept 2025
  • M
Timing Attack
com.liferay:com.liferay.headless.admin.workflow.impl[5.0.4,5.0.83)Maven11 Sept 2025