Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Missing Authentication for Critical Function
open-webui[,0.5.13)pip10 Apr 2025
  • M
Insufficient Isolation of System-Dependent Functions
open-webui[,0.4.0)pip10 Apr 2025
  • M
Cross-site Scripting (XSS)
open-webui[0,]pip10 Apr 2025
  • H
Directory Traversal
open-webui[0,]pip10 Apr 2025
  • H
Denial of Service (DoS)
open-webui*npm10 Apr 2025
  • H
Arbitrary File Write via Archive Extraction (Zip Slip)
open-webui[0,]pip10 Apr 2025
  • H
Allocation of Resources Without Limits or Throttling
github.com/bep/imagemeta<0.10.0Go10 Apr 2025
  • H
Allocation of Resources Without Limits or Throttling
github.com/bep/imagemeta<0.11.0Go10 Apr 2025
  • H
Code Injection
github.com/plentico/plenti/cmd<0.7.17Go10 Apr 2025
  • M
Cross-site Scripting (XSS)
open-webui[0,]pip10 Apr 2025
  • M
Expected Behavior Violation
openssh-portable[,10.0p1)Unmanaged (C/C++)10 Apr 2025
  • H
Allocation of Resources Without Limits or Throttling
open-webui[0,]pip10 Apr 2025
  • M
Integer Underflow (Wrap or Wraparound)
xmedcon[0,]Unmanaged (C/C++)10 Apr 2025
  • M
Improper Privilege Management
open-webui[0,]pip10 Apr 2025
  • M
Undefined Behavior for Input to API
open-webui[0,]pip10 Apr 2025
  • H
Incorrect Calculation of Buffer Size
openbsd/src[,7.5.015)[7.6.0,7.6.006)Unmanaged (C/C++)10 Apr 2025
  • L
Cross-site Scripting (XSS)
org.webjars.npm:koa[0,]Maven10 Apr 2025
  • M
Cross-site Scripting (XSS)
org.webjars.npm:react-draft-wysiwyg[0,]Maven10 Apr 2025
  • C
SQL Injection
llama-index-retrievers-duckdb-retriever[,0.4.0)pip10 Apr 2025
  • H
Access of Uninitialized Pointer
rtmpdump[0,]Unmanaged (C/C++)10 Apr 2025
  • H
Access of Uninitialized Pointer
rudloff/rtmpdump-bin>=0.0.0Composer10 Apr 2025
  • H
Access of Uninitialized Pointer
rtmpdump[0,]Unmanaged (C/C++)10 Apr 2025
  • H
Access of Uninitialized Pointer
rudloff/rtmpdump-bin>=0.0.0Composer10 Apr 2025
  • H
Incorrect Synchronization
open-webui[0,]pip10 Apr 2025
  • H
NULL Pointer Dereference
rtmpdump[0,]Unmanaged (C/C++)10 Apr 2025
  • H
NULL Pointer Dereference
rudloff/rtmpdump-bin>=0.0.0Composer10 Apr 2025
  • C
Improper Protection of Alternate Path
yiisoft/yii2>=2.0.50, <2.0.52Composer10 Apr 2025
  • M
Insertion of Sensitive Information into Log File
microsoft.identity.abstractions[7.1.0,9.0.0)NuGet9 Apr 2025
  • M
Improper Privilege Management
chromium[,135.0.7049.52)Unmanaged (C/C++)9 Apr 2025
  • M
User Interface (UI) Misrepresentation of Critical Information
chromium[,135.0.7049.52)Unmanaged (C/C++)9 Apr 2025