Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2024-41673
Affects
decidim-core
| Versions
<0.27.8
M
Cross-site Scripting (XSS)
CVE-2024-41673
Affects
decidim-debates
| Versions
<0.27.8
M
Cross-site Scripting (XSS)
CVE-2024-41673
Affects
decidim
| Versions
<0.27.8
M
HTTP Request Smuggling
CVE-2024-47220
Affects
webrick
| Versions
<1.8.2
H
HTTP Request Smuggling
CVE-2024-45614
Affects
puma
| Versions
<5.6.9
>=6.0.0, <6.4.3
M
Cross-site Scripting (XSS)
Affects
camaleon_cms
| Versions
<2.8.1
H
Path Traversal
Affects
camaleon_cms
| Versions
<2.8.1
H
Path Traversal
CVE-2024-46987
Affects
camaleon_cms
| Versions
<2.8.1
H
Path Traversal
CVE-2024-46986
Affects
camaleon_cms
| Versions
>=2.8.0, <2.8.1
M
Insufficient Entropy
CVE-2024-8796
Affects
devise-two-factor
| Versions
>=2.2.0, <6.0.0
M
Cross-site Scripting (XSS)
CVE-2024-32034
Affects
decidim-admin
| Versions
<0.27.7
>=0.28.0, <0.28.2
M
Cross-site Scripting (XSS)
CVE-2023-46950
Affects
sidekiq-unique-jobs
| Versions
<7.1.33
>=8.0.0, <8.0.7
M
Cross-site Scripting (XSS)
CVE-2024-39910
Affects
decidim-core
| Versions
<0.27.7
M
Cross-site Scripting (XSS)
CVE-2024-39910
Affects
decidim-admin
| Versions
<0.27.7
H
Improper Verification of Cryptographic Signature
CVE-2024-45409
Affects
omniauth-saml
| Versions
<1.10.5
>=2.0.0, <2.1.2
>=2.2.0, <2.2.1
H
Improper Verification of Cryptographic Signature
CVE-2024-45409
Affects
ruby-saml
| Versions
<1.12.3
>=1.13.0, <1.17.0
H
Incorrect Default Permissions
CVE-2024-43791
Affects
request_store
| Versions
>=1.3.2, <1.4.0
H
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2024-43398
Affects
rexml
| Versions
<3.3.6
M
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2024-43380
Affects
fugit
| Versions
<1.11.1
C
Command Injection
CVE-2024-42360
Affects
sequenceserver
| Versions
<3.1.2
M
Expected Behavior Violation
CVE-2024-7246
Affects
grpc
| Versions
<1.58.3
>=1.59.0, <1.59.5
>=1.60.0, <1.60.2
>=1.61.0, <1.61.3
>=1.62.0, <1.62.3
>=1.63.0, <1.63.2
>=1.64.0, <1.64.3
>=1.65.0, <1.65.4
M
Denial of Service (DoS)
CVE-2024-41123
Affects
rexml
| Versions
<3.3.3
M
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2024-41946
Affects
rexml
| Versions
<3.3.3
M
Denial of Service (DoS)
CVE-2024-39908
Affects
rexml
| Versions
<3.3.2
M
Information Exposure
CVE-2024-27090
Affects
decidim-sortitions
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-participatory_processes
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-initiatives
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-debates
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-meetings
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-consultations
| Versions
<0.27.6