Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
HTTP Request Smuggling
CVE-2020-7659
Affects
reel
| Versions
>=0.0.0
H
Man-in-the-Middle (MitM)
CVE-2020-13482
Affects
em-http-request
| Versions
<1.1.6
M
HTTP Request Smuggling
CVE-2020-11076
Affects
puma
| Versions
<3.12.5
>=4.0.0, <4.3.4
M
HTTP Request Smuggling
CVE-2020-11077
Affects
puma
| Versions
<3.12.6
>=4.0.0, <4.3.5
H
Man-in-the-Middle (MitM)
CVE-2020-13163
Affects
em-imap
| Versions
>=0.0.0
M
Information Exposure
CVE-2020-8164
Affects
actionpack
| Versions
<5.2.4.3
>=6.0.0, <6.0.3.1
M
Cross-site Request Forgery (CSRF)
CVE-2020-8167
Affects
actionview
| Versions
<5.2.4.3
>=6.0.0, <6.0.3.1
M
Cross-site Request Forgery (CSRF)
CVE-2020-8166
Affects
actionpack
| Versions
<5.2.4.3
>=6.0.0, <6.0.3.1
H
Deserialization of Untrusted Data
CVE-2020-8165
Affects
activesupport
| Versions
<5.2.4.3
>=6.0.0, <6.0.3.1
M
Improper Validation
CVE-2020-8162
Affects
activestorage
| Versions
<5.2.4.3
>=6.0.0, <6.0.3.1
C
Remote Code Execution (RCE)
CVE-2020-8163
Affects
actionview
| Versions
<4.2.11.3
>=5.0.0, <5.0.1
H
Directory Traversal
CVE-2020-8161
Affects
rack
| Versions
<2.1.3
H
Authentication Bypass
CVE-2020-11052
Affects
sorcery
| Versions
<0.15.0
H
Arbitrary File Write
CVE-2020-8159
Affects
actionpack-page_caching
| Versions
<1.2.1
M
Information Exposure
CVE-2020-8151
Affects
activeresource
| Versions
<5.1.1
M
Information Disclosure
CVE-2020-10187
Affects
doorkeeper
| Versions
>=5.0.0, <5.0.3
>=5.1.0, <5.1.1
>=5.2.0, <5.2.5
>=5.3.0, <5.3.2
H
Denial of Service (DoS)
CVE-2015-4411
Affects
bson
| Versions
<3.0.4
L
Man-in-the-Middle (MitM)
CVE-2020-9488
Affects
slyphon-log4j
| Versions
>=0.0.0
L
Man-in-the-Middle (MitM)
CVE-2020-9488
Affects
log4j-jars
| Versions
<2.15.0
H
Prototype Pollution
CVE-2020-8203
Affects
lodash-rails
| Versions
<4.17.21
H
Improper Access Control
CVE-2020-11020
Affects
faye
| Versions
<1.0.4
>=1.1.0, <1.1.3
>=1.2.0, <1.2.5
H
Cross-Site Request Forgery (CSRF)
Affects
faye
| Versions
<1.1.0
H
Malicious Package
Affects
abstract-importer
| Versions
>=0.0.0
H
Malicious Package
Affects
acts-as_better_tree
| Versions
>=0.0.0
H
Malicious Package
Affects
ae-validates-timeliness
| Versions
>=0.0.0
H
Malicious Package
Affects
arethusa-plugin_generator
| Versions
>=0.0.0
H
Malicious Package
Affects
access-policy-rails
| Versions
>=0.0.0
H
Malicious Package
Affects
http-statsd
| Versions
>=0.0.0
H
Malicious Package
Affects
dark-sky_weather
| Versions
>=0.0.0
H
Malicious Package
Affects
secondhand_spider
| Versions
>=0.0.0