Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Denial of Service (DoS)
CVE-2022-44566
Affects
activerecord
| Versions
<6.1.7.1
>=7.0.0, <7.0.4.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2022-44572
Affects
rack
| Versions
>=2.0.0, <2.0.9.2
>=2.1.0.0, <2.1.4.2
>=2.2.0.0, <2.2.6.1
>=3.0.0.0, <3.0.4.1
H
SQL Injection
CVE-2023-22794
Affects
activerecord
| Versions
>=6.0.0, <6.0.6.1
>=6.1.0, <6.1.7.1
>=7.0.0, <7.0.4.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2023-22799
Affects
globalid
| Versions
>=0.2.1, <1.0.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2022-44571
Affects
rack
| Versions
>=2.0.0, <2.0.9.2
>=2.1.0, <2.1.4.2
>=2.2.0, <2.2.6.1
>=3.0.0.0, <3.0.4.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2023-22792
Affects
actionpack
| Versions
>=3.0.0, <6.1.7.1
>=7.0.0, <7.0.4.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2023-22795
Affects
actionpack
| Versions
<6.1.7.1
>=7.0.0, <7.0.4.1
M
Open Redirect
CVE-2023-22797
Affects
actionpack
| Versions
>=7.0.0, <7.0.4.1
M
SQL Injection
CVE-2015-10053
Affects
curupira
| Versions
<0.1.4
M
Denial of Service (DoS)
CVE-2023-0299
Affects
publify_core
| Versions
<9.2.10
H
Integer Overflow or Wraparound
CVE-2022-1812
Affects
publify_core
| Versions
<9.2.10
M
Information Exposure
CVE-2022-2815
Affects
publify_core
| Versions
<9.2.10
H
Remote Code Execution (RCE)
CVE-2022-46648
Affects
git
| Versions
>=1.2.0, <1.13.0
L
Cross-site Scripting (XSS)
CVE-2020-36644
Affects
inline_svg
| Versions
<1.7.2
M
Information Exposure
CVE-2023-22626
Affects
pghero
| Versions
>=0.1.1, <3.1.0
M
External Control of Assumed-Immutable Web Parameter
CVE-2024-22049
Affects
httparty
| Versions
<0.21.0
L
Cross-site Scripting (XSS)
CVE-2017-20159
Affects
keynote
| Versions
<1.0.0
C
Arbitrary Command Injection
CVE-2017-20156
Affects
printer
| Versions
>=0.1.0
L
Cross-site Scripting (XSS)
CVE-2019-25088
Affects
oxidized-web
| Versions
<0.14.0
M
Incorrect Privilege Assignment
CVE-2020-36624
Affects
text_helpers
| Versions
<1.1.0
L
Regular Expression Denial of Service (ReDoS)
CVE-2021-4250
Affects
active_attr
| Versions
<0.15.3
H
Uncontrolled Recursion
CVE-2022-23516
Affects
loofah
| Versions
>=2.2.0, <2.19.1
M
Cross-site Scripting (XSS)
CVE-2022-23519
Affects
rails-html-sanitizer
| Versions
<1.4.4
M
Cross-site Scripting (XSS)
CVE-2022-23518
Affects
rails-html-sanitizer
| Versions
>=1.0.3, <1.4.4
H
Regular Expression Denial of Service (ReDoS)
CVE-2022-23517
Affects
rails-html-sanitizer
| Versions
<1.4.4
H
Regular Expression Denial of Service (ReDoS)
CVE-2022-23514
Affects
loofah
| Versions
<2.19.1
M
Cross-site Scripting (XSS)
CVE-2022-23520
Affects
rails-html-sanitizer
| Versions
<1.4.4
M
Cross-site Scripting (XSS)
CVE-2022-23515
Affects
loofah
| Versions
>=2.1.0, <2.19.1
H
Denial of Service (DoS)
CVE-2022-3510
Affects
google-protobuf
| Versions
>=3.16.0, <3.19.6
>=3.20.0-rc-1, <3.20.3
>=3.21.0-rc-1, <3.21.7
H
Unchecked Return Value
CVE-2022-23476
Affects
nokogiri
| Versions
>=1.13.8, <1.13.10