Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2023-49090
Affects
carrierwave
| Versions
<2.2.5
>=3.0.0, <3.0.5
M
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2023-5349
Affects
rmagick
| Versions
<5.3.0
M
Missing Cryptographic Step
CVE-2023-5363
Affects
openssl
| Versions
>=3.0.0, <3.2.0
M
XML External Entity (XXE) Injection
CVE-2023-46035
Affects
svg_optimizer
| Versions
>=0.2.6, <0.3.0
M
Improper Privilege Management
CVE-2023-5214
Affects
bolt
| Versions
<3.27.4
C
Improper Access Control
CVE-2023-36465
Affects
decidim-templates
| Versions
>=0.23.2, <0.26.8
>=0.27.0, <0.27.4
H
Command Injection
CVE-2023-26153
Affects
geokit-rails
| Versions
<2.5.0
M
Directory Traversal
CVE-2007-6612
Affects
mongrel
| Versions
>=1.0.4, <1.0.5
>=1.1.0, <1.1.3
H
Uncaught Exception
CVE-2023-4785
Affects
grpc
| Versions
>=1.23.0, <1.53.2
>=1.54.0, <1.54.3
>=1.55.0, <1.55.3
>=1.56.0, <1.56.2
M
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2023-26141
Affects
sidekiq
| Versions
<6.5.10
>=7.0.0, <7.1.3
C
Malicious Package
Affects
gunther
| Versions
>=0.0.0
H
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2013-2095
Affects
openshift-origin-controller
| Versions
>=0.0.0
M
Information Exposure
CVE-2023-38037
Affects
railties
| Versions
>=5.2.0, <6.1.7.5
>=7.0.0, <7.0.7.1
M
Information Exposure
CVE-2023-38037
Affects
activesupport
| Versions
>=5.2.0, <6.1.7.5
>=7.0.0, <7.0.7.1
H
HTTP Request Smuggling
CVE-2023-40175
Affects
puma
| Versions
<5.6.7
>=6.0.0, <6.3.1
H
Excessive Iteration
CVE-2023-33953
Affects
grpc
| Versions
<1.53.2
>=1.54.0, <1.54.3
>=1.55.0, <1.55.2
>=1.56.0, <1.56.2
M
HTTP Request Smuggling
CVE-2023-38697
Affects
protocol-http1
| Versions
<0.15.1
M
Cross-site Scripting (XSS)
CVE-2018-18307
Affects
alchemy_cms
| Versions
>=0.0.0
M
Information Exposure
CVE-2016-10362
Affects
logstash-core
| Versions
<5.0.1
M
Information Exposure
CVE-2016-1000221
Affects
logstash-core
| Versions
<2.3.4
M
Regular Expression Denial of Service (ReDoS)
CVE-2023-36617
Affects
uri
| Versions
<0.10.3
>=0.11.0, <0.11.2
>=0.12.0, <0.12.2
H
Directory Traversal
CVE-2023-38337
Affects
rswag
| Versions
<2.10.1
H
Insecure Defaults
Affects
ransack
| Versions
<4.0.0
M
Denial of Service (DoS)
CVE-2023-37463
Affects
commonmarker
| Versions
<0.23.10
H
Cross-site Scripting (XSS)
CVE-2023-34089
Affects
decidim-core
| Versions
>=0.14.0, <0.26.6
>=0.27.0, <0.27.3
H
Cross-site Scripting (XSS)
CVE-2023-34089
Affects
decidim
| Versions
>=0.14.0, <0.26.6
>=0.27.0, <0.27.3
H
Information Exposure
CVE-2023-34090
Affects
decidim-meetings
| Versions
>=0.27.0, <0.27.3
H
Information Exposure
CVE-2023-34090
Affects
decidim
| Versions
>=0.27.0, <0.27.3
H
Cross-site Scripting (XSS)
CVE-2023-32693
Affects
decidim
| Versions
>=0.25.0, <0.26.6
>=0.27.0, <0.27.3
H
Cross-site Scripting (XSS)
CVE-2023-32693
Affects
decidim-core
| Versions
>=0.25.0, <0.26.6
>=0.27.0, <0.27.3