Open Source Vulnerabilities

    Dashboard / Open Source Vulnerabilities

    CVE-2018-25075
    Fix available
    Packages

    Summary

    Published
    15 Jan 2023
    CVE-2016-15019
    Fix available
    Packages

    Summary

    Published
    15 Jan 2023
    CVE-2016-15018
    Fix available
    Packages

    Summary

    Published
    15 Jan 2023
    Packages

    apptainer

    Summary

    Security update for apptainer

    Published
    15 Jan 2023
    Packages

    SDL2

    Summary

    Security update for SDL2

    Published
    15 Jan 2023
    CVE-2022-4889
    Fix available
    Packages

    Summary

    visegripped Stracker api.php getHistory sql injection

    Published
    15 Jan 2023
    CVE-2023-23595
    No fix available
    Packages

    Summary

    Published
    15 Jan 2023
    CVE-2023-23590
    No fix available
    Packages

    Summary

    Published
    15 Jan 2023
    UBUNTU-CVE-2023-0302
    No fix available
    Packages

    radare2, radare2, radare2, radare2, radare2, radare2

    Summary

    Published
    15 Jan 2023
    DLA-3270-1
    Fix available
    Packages

    net-snmp

    Summary

    net-snmp - security update

    Published
    15 Jan 2023
    DLA-3271-1
    Fix available
    Packages

    node-minimatch

    Summary

    node-minimatch - security update

    Published
    15 Jan 2023
    CVE-2023-0314
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Reflected in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0313
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0312
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0311
    Fix available
    Packages

    Summary

    Improper Authentication in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0310
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0309
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0308
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0307
    Fix available
    Packages

    Summary

    Weak Password Requirements in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0306
    Fix available
    Packages

    Summary

    Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq

    Published
    15 Jan 2023
    CVE-2023-0302
    Fix available
    Packages

    Summary

    Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in radareorg/radare2

    Published
    15 Jan 2023
    CVE-2017-20167
    No fix available
    Packages

    Summary

    Published
    14 Jan 2023
    GHSA-rc42-jghf-vr8f
    Fix available
    Packages

    publify_core

    Summary

    Integer overflow in publify_core

    Published
    14 Jan 2023
    GHSA-79wq-g4v9-gfj4
    Fix available
    Packages

    publify_core

    Summary

    Publify Core does not strip metadata from images

    Published
    14 Jan 2023
    GHSA-q3rm-f527-ghxj
    Fix available
    Packages

    publify_core

    Summary

    Publify Improper Input Validation vulnerability

    Published
    14 Jan 2023
    OSV-2023-6
    Fix available
    Packages

    libplist

    Summary

    Heap-buffer-overflow in parse_skip_ws

    Published
    14 Jan 2023
    GHSA-7cxr-h8wm-fg4c
    Fix available
    Packages

    org.apache.shiro:shiro-root

    Summary

    Apache Shiro Interpretation Conflict vulnerability

    Published
    14 Jan 2023
    CVE-2022-45353
    No fix available
    Packages

    Summary

    Published
    14 Jan 2023
    CVE-2022-38467
    No fix available
    Packages

    Summary

    Published
    14 Jan 2023
    DEBIAN-CVE-2023-22602
    No fix available
    Packages

    shiro, shiro

    Summary

    Published
    14 Jan 2023
    UBUNTU-CVE-2023-22602
    No fix available
    Packages

    shiro, shiro, shiro, shiro, shiro, shiro

    Summary

    Published
    14 Jan 2023
    CVE-2023-22602
    Fix available
    Packages

    ,

    Summary

    Apache Shiro before 1.11.0, when used with Spring Boot 2.6+, may allow authentication bypass through a specially crafted HTTP request

    Published
    14 Jan 2023
    GHSA-7mc4-jp4f-v2j2
    Fix available
    Packages

    grumpydictator/firefly-iii

    Summary

    Improper Authorization in grumpydictator/firefly-iii

    Published
    14 Jan 2023
    GHSA-pf38-5p22-x6h6
    Fix available
    Packages

    pyload-ng

    Summary

    Code Injection in pyload-ng

    Published
    14 Jan 2023
    Packages

    netdata

    Summary

    Published
    14 Jan 2023
    Packages

    netdata, netdata

    Summary

    Published
    14 Jan 2023
    Packages

    tor, tor, tor

    Summary

    Published
    14 Jan 2023
    Packages

    netdata

    Summary

    Published
    14 Jan 2023
    UBUNTU-CVE-2023-23589
    No fix available
    Packages

    tor, tor, tor, tor, tor

    Summary

    Published
    14 Jan 2023
    UBUNTU-CVE-2023-22496
    No fix available
    Packages

    netdata, netdata, netdata, netdata, netdata

    Summary

    Published
    14 Jan 2023
    CVE-2023-22497
    Fix available
    Packages

    Summary

    Netdata is vulnerable to improper authentication

    Published
    14 Jan 2023
    CVE-2023-22496
    Fix available
    Packages

    Summary

    Netdata vulnerable to command injection

    Published
    14 Jan 2023
    CVE-2023-22495
    Fix available
    Packages

    Summary

    Izanami is vulnerable to Authorization Bypass

    Published
    14 Jan 2023
    CVE-2022-41956
    Fix available
    Packages

    Summary

    Autolab is vulnerable to file disclosure via remote handin feature

    Published
    14 Jan 2023
    CVE-2023-22471
    Fix available
    Packages

    Summary

    Nextcloud Deck vulnerable to authorization bypass

    Published
    14 Jan 2023
    CVE-2023-22470
    Fix available
    Packages

    Summary

    Nextcloud Deck vulnerable to uncontrolled resource consumption

    Published
    14 Jan 2023
    GHSA-fxg5-wq6x-vr4w
    Fix available
    Packages

    golang.org/x/net

    Summary

    golang.org/x/net/http2/h2c vulnerable to request smuggling attack

    Published
    14 Jan 2023
    CVE-2022-23532
    Fix available
    Packages

    Summary

    neo4j-apoc-procedures is vulnerable to path traversal

    Published
    14 Jan 2023
    CVE-2023-22478
    Fix available
    Packages

    Summary

    KubePi is vulnerable to missing authorization

    Published
    14 Jan 2023
    CVE-2022-41955
    Fix available
    Packages

    Summary

    Autolab is vulnerable to remote code execution (RCE) via MOSS functionality

    Published
    14 Jan 2023