Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2024-27285
Affects
yard
| Versions
<0.9.35
M
Exposure of Data Element to Wrong Session
CVE-2024-26144
Affects
actionpack
| Versions
>=5.2.0, <6.1.7.7
>=7.0.0, <7.0.8.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2024-26142
Affects
actionpack
| Versions
>=7.1.0, <7.1.3.1
M
Cross-site Scripting (XSS)
CVE-2024-26143
Affects
actionpack
| Versions
>=7.0.0, <7.0.8.1
>=7.1.0, <7.1.3.1
H
Denial of Service (DoS)
CVE-2024-26141
Affects
rack
| Versions
>=1.3.0, <2.2.8.1
>=3.0.0, <3.0.9.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2024-25126
Affects
rack
| Versions
>=0.4.0, <2.2.8.1
>=3.0.0, <3.0.9.1
M
Regular Expression Denial of Service (ReDoS)
CVE-2024-26146
Affects
rack
| Versions
<2.0.9.4
>=2.1.0, <2.1.4.4
>=2.2.0, <2.2.8.1
>=3.0.0, <3.0.9.1
M
Cross-site Scripting (XSS)
CVE-2023-51447
Affects
decidim
| Versions
>=0.27.0, <0.27.5
M
Cross-site Scripting (XSS)
CVE-2023-51447
Affects
decidim-core
| Versions
>=0.27.0, <0.27.5
L
Race Condition
CVE-2023-47634
Affects
decidim
| Versions
>=0.10.0, <0.26.9
>=0.27.0, <0.27.5
M
Server-Side Request Forgery (SSRF)
CVE-2023-47635
Affects
decidim-templates
| Versions
>=0.23.0, <0.27.5
M
Operation on a Resource after Expiration or Release
CVE-2023-48220
Affects
decidim-system
| Versions
>=0.0.1, <0.26.9
>=0.27.0, <0.27.5
M
Operation on a Resource after Expiration or Release
CVE-2023-48220
Affects
decidim-admin
| Versions
>=0.0.1, <0.26.9
>=0.27.0, <0.27.5
M
Operation on a Resource after Expiration or Release
CVE-2023-48220
Affects
devise_invitable
| Versions
>=0.4.0, <2.0.9
H
Cross-site Scripting (XSS)
CVE-2024-25122
Affects
sidekiq-unique-jobs
| Versions
<7.1.33
>=8.0.0, <8.0.7
M
Use After Free
CVE-2024-25062
Affects
nokogiri
| Versions
<1.15.6
>=1.16.0, <1.16.2
M
Cross-site Scripting (XSS)
CVE-2024-22411
Affects
avo
| Versions
<3.0.2
M
Cross-site Scripting (XSS)
CVE-2024-22191
Affects
avo
| Versions
<2.47.0
>=3.0.0.beta1, <3.3.0
M
HTTP Request Smuggling
CVE-2024-21647
Affects
puma
| Versions
<5.6.8
>=6.0.0, <6.4.2
H
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2024-0241
Affects
encoded_id
| Versions
<1.0.0.rc3
M
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-21636
Affects
view_component
| Versions
<2.83.0
>=3.0.0, <3.9.0
H
Improper Authentication
CVE-2024-21632
Affects
omniauth-microsoft_graph
| Versions
<2.0.0
H
Improper Verification of Cryptographic Signature
CVE-2023-51774
Affects
json-jwt
| Versions
<1.15.3.1
>=1.16.0, <1.16.6
C
Improper Neutralization of Formula Elements in a CSV File
CVE-2023-51763
Affects
activeadmin
| Versions
<3.2.0
M
Cross-site Scripting (XSS)
CVE-2022-44303
Affects
resque-scheduler
| Versions
<4.10.2
M
Cross-site Scripting (XSS)
CVE-2023-50725
Affects
resque
| Versions
<2.2.1
M
Cross-site Scripting (XSS)
CVE-2023-50727
Affects
resque
| Versions
<2.6.0
M
Cross-site Scripting (XSS)
CVE-2023-50724
Affects
resque
| Versions
<2.1.0
M
Information Exposure
CVE-2023-50448
Affects
activeadmin
| Versions
<2.12.0
M
Insufficient Entropy
CVE-2023-26154
Affects
pubnub
| Versions
<5.3.0