Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Resources Downloaded over Insecure Protocol
CVE-2022-45442
Affects
sinatra
| Versions
<2.2.3
>=3.0.0, <3.0.4
H
Improper Input Validation
CVE-2021-33621
Affects
cgi
| Versions
<0.1.0.2
>=0.2.1, <0.2.2
>=0.3.3, <0.3.5
L
Improper Neutralization
CVE-2022-4064
Affects
dalli
| Versions
<3.2.3
C
Integer Overflow or Wraparound
CVE-2022-37454
Affects
sha3
| Versions
<1.0.5
L
Information Exposure
CVE-2022-39379
Affects
fluentd
| Versions
>=1.13.2, <1.15.3
H
NULL Pointer Dereference
Affects
nokogiri
| Versions
<1.13.9
M
Denial of Service (DoS)
Affects
sqlite3
| Versions
>=1.5.0, <1.5.1
H
Privilege Escalation
CVE-2022-42717
Affects
vagrant
| Versions
>=0.0.0, <2.4.4
M
Denial of Service (DoS)
CVE-2022-39281
Affects
fat_free_crm
| Versions
<0.20.1
M
Denial of Service (DoS)
CVE-2022-3171
Affects
google-protobuf
| Versions
<3.16.3
>=3.17.0.rc.1, <3.19.6
>=3.20.0.rc.1, <3.20.3
>=3.21.0.rc.1, <3.21.7
M
Heap-based Buffer Overflow
CVE-2016-2338
Affects
psych
| Versions
<2.0.17
M
Open Redirect
Affects
actionpack
| Versions
>=7.0.3, <7.0.4
M
Improper Input Validation
Affects
personnummer
| Versions
<3.0.1
H
Arbitrary Code Execution
CVE-2022-39224
Affects
arr-pm
| Versions
<0.0.12
M
Information Exposure
Affects
pageflow
| Versions
<14.5.2
>=15.0.0, <15.7.1
H
Authorization Bypass Through User-Controlled Key
Affects
pageflow
| Versions
<14.5.2
>=15.0.0, <15.7.1
C
Command Injection
CVE-2022-25765
Affects
pdfkit
| Versions
<0.8.7.2
L
Insecure Permissions
CVE-2022-31072
Affects
octokit
| Versions
>=4.23.0, <4.25.0
H
Improper Authentication
CVE-2020-36599
Affects
omniauth
| Versions
<1.9.2
H
SQL Injection
CVE-2022-35956
Affects
update_by_case
| Versions
<0.1.3
H
Directory Traversal
CVE-2022-31163
Affects
tzinfo
| Versions
<0.3.61
>=1.0.0, <1.2.10
M
Information Exposure
CVE-2022-2394
Affects
bolt
| Versions
<3.24.0
M
Cross-site Scripting (XSS)
CVE-2020-35305
Affects
gollum
| Versions
>=5.0.0, <5.1.2
C
Remote Code Execution (RCE)
CVE-2022-32224
Affects
activerecord
| Versions
<5.2.8.1
>=6.0.0, <6.0.5.1
>=6.1.0, <6.1.6.1
>=7.0.0, <7.0.3.1
M
HTTP Request Smuggling
CVE-2022-32214
Affects
llhttp
| Versions
>=0.0.0
M
HTTP Request Smuggling
CVE-2022-32215
Affects
llhttp
| Versions
>=0.0.0
M
HTTP Request Smuggling
CVE-2022-32213
Affects
llhttp
| Versions
>=0.0.0
H
Deserialization of Untrusted Data
CVE-2022-31115
Affects
opensearch-ruby
| Versions
<2.0.2
M
Access Restriction Bypass
CVE-2021-3779
Affects
ruby-mysql
| Versions
<2.10.0
M
Cross-site Scripting (XSS)
CVE-2022-32209
Affects
rails-html-sanitizer
| Versions
<1.4.3