Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Incorrect Default Permissions
github.com/grafana/tempo-operator/internal/manifests/queryfrontend>=0.0.0Go15 Apr 2025
  • M
Incorrect Default Permissions
github.com/grafana/tempo-operator/internal/controller/tempo>=0.0.0Go15 Apr 2025
  • H
Allocation of Resources Without Limits or Throttling
gradio[0,]pip15 Apr 2025
  • C
Malicious Package
flex-plugins*npm15 Apr 2025
  • C
Malicious Package
flex-key*npm15 Apr 2025
  • M
Incorrect Authorization
github.com/mattermost/mattermost/server/channels/app>=9.11.0-rc1 <9.11.10>=10.0.0-rc1 <10.4.4>=10.5.0-rc1 <10.5.2Go15 Apr 2025
  • M
Incorrect Authorization
github.com/mattermost/mattermost/server/channels/api4>=9.11.0-rc1 <9.11.10>=10.0.0-rc1 <10.4.4>=10.5.0-rc1 <10.5.2Go15 Apr 2025
  • M
Cross-site Scripting (XSS)
@sveltejs/kit>=2.0.0 <2.20.6npm14 Apr 2025
  • M
Out-of-bounds Read
pyo3<0.24.1Cargo14 Apr 2025
  • L
Missing Authorization
goalgorilla/open_social<12.3.11>=12.4.0, <12.4.10Composer14 Apr 2025
  • M
Missing Authorization
goalgorilla/open_social<12.3.11>=12.4.0, <12.4.10Composer14 Apr 2025
  • M
Cross-site Scripting (XSS)
digimix/wp-svg-upload>=0.0.0Composer14 Apr 2025
  • H
Directory Traversal
yeswiki/yeswiki<4.5.2Composer14 Apr 2025
  • M
Cleartext Storage of Sensitive Information
org.ukiuni.monitor-remote-job-plugin:monitor-remote-job[0,]Maven14 Apr 2025
  • M
Cleartext Storage of Sensitive Information
org.jenkins-ci.plugins:vmanager-plugin[,4.0.1)Maven14 Apr 2025
  • M
Missing Encryption of Sensitive Data
org.codefirst.jenkins.asakusasatellite:asakusa-satellite-plugin[0,]Maven14 Apr 2025
  • M
Cleartext Storage of Sensitive Information
org.codefirst.jenkins.asakusasatellite:asakusa-satellite-plugin[0,]Maven14 Apr 2025
  • C
Authentication Bypass by Primary Weakness
kentico.xperience.libraries[,13.0.178)NuGet14 Apr 2025
  • M
Cross-site Request Forgery (CSRF)
io.jenkins.plugins:simple-queue[,1.4.7)Maven14 Apr 2025
  • H
Directory Traversal
kentico.xperience.libraries[,13.0.178)NuGet14 Apr 2025
  • C
Missing Critical Step in Authentication
kentico.xperience.libraries[,13.0.173)NuGet14 Apr 2025
  • M
Cleartext Storage of Sensitive Information
org.jenkins-ci.plugins:stackhammer[0,]Maven14 Apr 2025
  • L
Server-side Request Forgery (SSRF)
mobsf[,4.3.2)pip14 Apr 2025
  • M
Operation on a Resource after Expiration or Release
array-init-cursor<0.2.1Cargo14 Apr 2025
  • M
Relative Path Traversal
org.noear:solon-view-beetl[0,]Maven14 Apr 2025
  • M
Cross-site Scripting (XSS)
kentico.xperience.libraries[,13.0.178)NuGet14 Apr 2025
  • M
Cross-site Scripting (XSS)
concrete5/concrete5>=0.0.0Composer14 Apr 2025
  • H
Denial of Service (DoS)
imaginairy[0,]pip14 Apr 2025
  • M
Server-side Request Forgery (SSRF)
shopxo/shopxo>=0.0.0Composer14 Apr 2025
  • M
Server-side Request Forgery (SSRF)
shopxo/shopxo>=0.0.0Composer14 Apr 2025