Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Information Exposure
CVE-2024-27090
Affects
decidim-conferences
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-assemblies
| Versions
<0.27.6
M
Information Exposure
CVE-2024-27090
Affects
decidim-core
| Versions
<0.27.6
M
Cross-site Scripting (XSS)
CVE-2024-27095
Affects
decidim
| Versions
>=0.28.0, <0.28.1
<0.27.6
M
Cross-site Scripting (XSS)
CVE-2024-27095
Affects
decidim-admin
| Versions
>=0.28.0, <0.28.1
<0.27.6
H
Cross-site Scripting (XSS)
CVE-2024-32469
Affects
decidim-core
| Versions
<0.27.6
>=0.28.0, <0.28.1
H
Cross-site Scripting (XSS)
CVE-2024-32469
Affects
decidim
| Versions
<0.27.6
>=0.28.0, <0.28.1
M
Cross-site Scripting (XSS)
CVE-2024-39308
Affects
rails_admin
| Versions
>=3.0.0, <3.1.3
M
Regular Expression Denial of Service (ReDoS)
CVE-2024-39316
Affects
rack
| Versions
>=3.1.0, <3.1.5
M
Cross-site Scripting (XSS)
CVE-2024-34341
Affects
actiontext
| Versions
>=7.0.0.alpha1, <7.0.8.3
>=7.1.0.beta1, <7.1.3.3
M
Cross-site Scripting (XSS)
CVE-2024-4812
Affects
katello
| Versions
>=0.0.0
M
Improper Input Validation
CVE-2024-28103
Affects
actionpack
| Versions
>=6.1.0, <6.1.7.8
>=7.0.0, <7.0.8.4
>=7.1.0, <7.1.3.4
>=7.2.0.beta1, <7.2.0.beta2
M
Cross-site Scripting (XSS)
CVE-2024-32464
Affects
actiontext
| Versions
>=7.1.0, <7.1.3.4
>=7.2.0.beta1, <7.2.0.beta2
C
Cross-site Scripting
CVE-2024-37031
Affects
activeadmin
| Versions
<3.2.2
>=4.0.0.beta1, <4.0.0.beta7
H
Heap-based Buffer Overflow
CVE-2024-34459
Affects
nokogiri
| Versions
<1.16.5
H
Allocation of Resources Without Limits or Throttling
CVE-2024-35231
Affects
rack-contrib
| Versions
<2.5.0
M
Improper Access Control
CVE-2024-32978
Affects
kaminari
| Versions
>=0.15.0, <0.16.2
M
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2024-35176
Affects
rexml
| Versions
<3.2.7
M
Cross-site Scripting (XSS)
CVE-2024-4859
Affects
solidus
| Versions
>=0.0.0
H
Cross-site Scripting (XSS)
CVE-2024-32970
Affects
phlex
| Versions
<1.9.3
>=1.10.0, <1.10.2
M
Cross-site Scripting (XSS)
CVE-2024-32887
Affects
sidekiq
| Versions
>=7.2.0, <7.2.4
M
Cross-site Scripting (XSS)
CVE-2024-32463
Affects
phlex
| Versions
<1.4.2
>=1.5.0, <1.5.3
>=1.6.0, <1.6.3
>=1.7.0, <1.7.2
>=1.8.0, <1.8.3
>=1.9.0, <1.9.2
>=1.10.0, <1.10.1
M
Cross-site Scripting (XSS)
CVE-2024-29034
Affects
carrierwave
| Versions
<2.2.6
>=3.0.0, <3.0.7
L
Buffer Over-read
CVE-2024-27280
Affects
stringio
| Versions
>=3.0.1, <3.0.1.1
M
Code Injection
CVE-2024-27281
Affects
rdoc
| Versions
<6.3.4.1
>=6.4.0, <6.4.1.1
>=6.5.0, <6.5.1.1
H
Incorrect Default Permissions
CVE-2024-28862
Affects
rotp
| Versions
<6.3.0
H
Exposed Dangerous Method or Function
CVE-2024-28181
Affects
turbo_boost-commands
| Versions
<0.1.3
>=0.2.0, <0.2.2
H
Cross-site Scripting (XSS)
CVE-2024-28199
Affects
phlex
| Versions
<1.0.1
>=1.1.0, <1.1.1
>=1.2.0, <1.2.2
>=1.3.0, <1.3.3
>=1.4.0, <1.4.1
>=1.5.0, <1.5.2
>=1.6.0, <1.6.2
>=1.7.0, <1.7.1
>=1.8.0, <1.8.2
>=1.9.0, <1.9.1
H
Unsafe Reflection
CVE-2024-28121
Affects
stimulus_reflex
| Versions
<3.4.2
>=3.5.0-pre0, <3.5.0-rc4
M
Cross-site Scripting (XSS)
CVE-2024-27285
Affects
yard
| Versions
<0.9.35