Open Source Vulnerabilities
apache-poi
Security exception in java.base/java.util.Arrays.copyOf
apache-poi
Security exception in java.base/java.util.Arrays.copyOf
icu
Stack-buffer-overflow in icu_75::PluralRuleParser::parse
paddlepaddle
Code Injection in paddlepaddle
cosmwasm
`cosmwasm` is unmaintained
org.folio:mod-data-export-spring, org.folio:mod-data-export-spring
Duplicate Advisory: Hard-coded credentials in org.folio:mod-data-export-spring
org.folio:mod-data-export-spring/ org.folio:mod-data-export-spring
Duplicate Advisory: Hard-coded credentials in org.folio:mod-data-export-spring
org.owasp:dependency-check-ant, org.owasp:dependency-check-cli, org.owasp:dependency-check-maven
Insertion of Sensitive Information into Log File in OWASP DependencyCheck
org.owasp:dependency-check-ant/ org.owasp:dependency-check-cli/ org.owasp:dependency-check-maven
Insertion of Sensitive Information into Log File in OWASP DependencyCheck
tech.pegasys.discovery:discovery
Duplicate Advisory: Discovery uses the same AES/GCM Nonce throughout the session
tech.pegasys.discovery:discovery
Duplicate Advisory: Discovery uses the same AES/GCM Nonce throughout the session
jackson-dataformats-binary
Security exception in java.base/java.util.Arrays.copyOf
jackson-dataformats-binary
Security exception in java.base/java.util.Arrays.copyOf
erlang
Updated erlang packages fix a security vulnerability (Terrapin Attack)
erlang
Updated erlang packages fix a security vulnerability (Terrapin Attack)
Client configured with permissive trust policies susceptible to rollback attack in Notary Project
Client configured with permissive trust policies susceptible to rollback attack in Notary Project
github.com/notaryproject/notation
Go package github.com/notaryproject/notation configured with permissive trust policies potentially susceptible to rollback attack from compromised registry
github.com/notaryproject/notation
Go package github.com/notaryproject/notation configured with permissive trust policies potentially susceptible to rollback attack from compromised registry
@keep-network/tbtc-v2
SPV Merkle proof malleability allows the maintainer to prove invalid transactions
@keep-network/tbtc-v2
SPV Merkle proof malleability allows the maintainer to prove invalid transactions
vite, vite, vite, vite
Vite dev server option `server.fs.deny` can be bypassed when hosted on case-insensitive filesystem
vite/ vite/ vite/ vite
Vite dev server option `server.fs.deny` can be bypassed when hosted on case-insensitive filesystem
org.folio:mod-remote-storage, org.folio:mod-remote-storage
Duplicate Advisory: Hard-coded credentials in org.folio:mod-remote-storage
org.folio:mod-remote-storage/ org.folio:mod-remote-storage
Duplicate Advisory: Hard-coded credentials in org.folio:mod-remote-storage
de.tum.in.ase:artemis-java-test-sandbox
Duplicate Advisory: Sandbox escape in Artemis Java Test Sandbox
de.tum.in.ase:artemis-java-test-sandbox
Duplicate Advisory: Sandbox escape in Artemis Java Test Sandbox
com.upokecenter:cbor
Duplicate Advisory: Inefficient Algorithmic Complexity in com.upokecenter:cbor
com.upokecenter:cbor
Duplicate Advisory: Inefficient Algorithmic Complexity in com.upokecenter:cbor
com.enonic.xp:lib-auth
Duplicate Advisory: Session fixation in Enonic XP
com.enonic.xp:lib-auth
Duplicate Advisory: Session fixation in Enonic XP
com.clickhouse:clickhouse-r2dbc, com.clickhouse:clickhouse-jdbc, com.clickhouse:clickhouse-client
Duplicate Advisory: Exposure of sensitive information in ClickHouse
com.clickhouse:clickhouse-r2dbc/ com.clickhouse:clickhouse-jdbc/ com.clickhouse:clickhouse-client
Duplicate Advisory: Exposure of sensitive information in ClickHouse
de.tum.in.ase:artemis-java-test-sandbox
Duplicate Advisory: Sandbox escape in Artemis Java Test Sandbox
de.tum.in.ase:artemis-java-test-sandbox
Duplicate Advisory: Sandbox escape in Artemis Java Test Sandbox
de.ipb-halle:molecularfaces
Duplicate Advisory: JavaScript execution via malicious molfiles (XSS)
de.ipb-halle:molecularfaces
Duplicate Advisory: JavaScript execution via malicious molfiles (XSS)
com.amazonaws:aws-encryption-sdk-java, com.amazonaws:aws-encryption-sdk-java
Duplicate Advisory: Improper Verification of Cryptographic Signature in aws-encryption-sdk-java
com.amazonaws:aws-encryption-sdk-java/ com.amazonaws:aws-encryption-sdk-java
Duplicate Advisory: Improper Verification of Cryptographic Signature in aws-encryption-sdk-java
de.tum.in.ase:artemis-java-test-sandbox
Duplicate Advisory: Sandbox escape in Artemis Java Test Sandbox
de.tum.in.ase:artemis-java-test-sandbox
Duplicate Advisory: Sandbox escape in Artemis Java Test Sandbox
pillow
Arbitrary Code Execution in Pillow
FOLIO mod-data-export-spring Hard-Coded Credentials
