Open Source Vulnerabilities
org.springframework.webflow:spring-webflow
Insecure Default Initialization of Resource in Pivotal Spring Web Flow
org.springframework.webflow:spring-webflow
Insecure Default Initialization of Resource in Pivotal Spring Web Flow
salt
SaltStack Salt allows compromised salt-minions to impersonate the salt-master
salt
SaltStack Salt allows compromised salt-minions to impersonate the salt-master
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings vulnerable to Uncontrolled Resource Consumption
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings vulnerable to Uncontrolled Resource Consumption
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings updates user password in insecure manner
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings updates user password in insecure manner
org.apache.mesos:mesos, org.apache.mesos:mesos, org.apache.mesos:mesos
Denial of service in Apache Mesos
org.apache.mesos:mesos/ org.apache.mesos:mesos/ org.apache.mesos:mesos
Denial of service in Apache Mesos
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings responds to insecure HTTP methods
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings responds to insecure HTTP methods
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings vulnerable to parameter manipulation attacks
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings vulnerable to parameter manipulation attacks
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings has Inadequate Encryption Strength
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings has Inadequate Encryption Strength
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings allows flash content to be loaded from untrusted domains
org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings allows flash content to be loaded from untrusted domains
org.jboss.resteasy:resteasy-jaxrs, org.jboss.resteasy:resteasy-jaxrs
Inconsistent Interpretation of HTTP Requests in Red Hat JBoss EAP
org.jboss.resteasy:resteasy-jaxrs/ org.jboss.resteasy:resteasy-jaxrs
Inconsistent Interpretation of HTTP Requests in Red Hat JBoss EAP
moodle/moodle, moodle/moodle, moodle/moodle, moodle/moodle
Moodle Unauthorized searching of arbitrary blogs by typing full url
moodle/moodle/ moodle/moodle/ moodle/moodle/ moodle/moodle
Moodle Unauthorized searching of arbitrary blogs by typing full url
moodle/moodle, moodle/moodle, moodle/moodle
Moodle Improper Privilege Management
moodle/moodle/ moodle/moodle/ moodle/moodle
Moodle Improper Privilege Management
moodle/moodle, moodle/moodle, moodle/moodle, moodle/moodle
Moodle External blog editing takeover
moodle/moodle/ moodle/moodle/ moodle/moodle/ moodle/moodle
Moodle External blog editing takeover
drupal/core, drupal/core, drupal/drupal, drupal/drupal
Drupal access control bypass vulnerability
drupal/core/ drupal/core/ drupal/drupal/ drupal/drupal
Drupal access control bypass vulnerability
drupal/core, drupal/drupal
Drupal Settings Tray access bypass
drupal/core/ drupal/drupal
Drupal Settings Tray access bypass
buddypress/buddypress
BuddyPress Docs plugin Improper Privilege Management
buddypress/buddypress
BuddyPress Docs plugin Improper Privilege Management
drupal/core, drupal/drupal
Drupal access bypass vulnerability
drupal/core/ drupal/drupal
Drupal access bypass vulnerability
drupal/core, drupal/drupal
Drupal access bypass vulnerability
drupal/core/ drupal/drupal
Drupal access bypass vulnerability
drupal/core, drupal/drupal
Drupal Entity access bypass for entities that do not have UUIDs or have protected revisions
drupal/core/ drupal/drupal
Drupal Entity access bypass for entities that do not have UUIDs or have protected revisions
drupal/core, drupal/drupal
Drupal Remote code execution
typo3/cms
TYPO3 Information Disclosure Vulnerability
drupal/core, drupal/drupal
Drupal editor module incorrectly checks access to inline private files
drupal/core/ drupal/drupal
Drupal editor module incorrectly checks access to inline private files
nova-lxd
OpenStack Nova-LXD bypass security restrictions
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Improper Handling of Exceptional Conditions in Apache Tomcat
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Improper Handling of Exceptional Conditions in Apache Tomcat
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Improper Resource Shutdown or Release in Apache Tomcat
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Improper Resource Shutdown or Release in Apache Tomcat
org.apache.tomcat:tomcat-coyote, org.apache.tomcat:tomcat-coyote, org.apache.tomcat.embed:tomcat-embed-core, org.apache.tomcat.embed:tomcat-embed-core
Expected Behavior Violation in Apache Tomcat
org.apache.tomcat:tomcat-coyote/ org.apache.tomcat:tomcat-coyote/ org.apache.tomcat.embed:tomcat-embed-core/ org.apache.tomcat.embed:tomcat-embed-core
Expected Behavior Violation in Apache Tomcat
org.apache.nifi:nifi, org.apache.nifi:nifi
Improper Authentication In Apache NiFi
org.apache.nifi:nifi/ org.apache.nifi:nifi
Improper Authentication In Apache NiFi
salt, salt, salt
SaltStack Salt arbitrary command execution in Salt-api via ssh_client
salt/ salt/ salt
SaltStack Salt arbitrary command execution in Salt-api via ssh_client
org.springframework.webflow:spring-webflow
Insecure Default Initialization of Resource in Pivotal Spring Web Flow
org.springframework.webflow:spring-webflow
Insecure Default Initialization of Resource in Pivotal Spring Web Flow
mysql-connector-python
MySQL Connectors Privilege Escalation
mysql-connector-python
MySQL Connectors Privilege Escalation
mysql:mysql-connector-java
Exposure of Sensitive Information to an Unauthorized Actor in Oracle MySQL Connectors Java
mysql:mysql-connector-java
Exposure of Sensitive Information to an Unauthorized Actor in Oracle MySQL Connectors Java
mysql:mysql-connector-java
Exposure of Sensitive Information to an Unauthorized Actor in Oracle MySQL Connectors Java
mysql:mysql-connector-java
Exposure of Sensitive Information to an Unauthorized Actor in Oracle MySQL Connectors Java
mysql:mysql-connector-java
Improper Access Control in MySQL Connectors Java
mysql:mysql-connector-java
Improper Access Control in MySQL Connectors Java
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin Improper Privilege Management
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin Improper Privilege Management
nova, nova
OpenStack Nova Denial of service attack on the compute host
nova/ nova
OpenStack Nova Denial of service attack on the compute host
nova
OpenStack Nova DoS by rebuilding the same instance with a new image multiple times
nova
OpenStack Nova DoS by rebuilding the same instance with a new image multiple times
librenms/librenms
LibreNMS Arbitrary File Read
symfony/security-csrf, symfony/security-csrf, symfony/security-csrf, symfony/security-csrf, symfony/security, symfony/security, symfony/security, symfony/security, symfony/symfony, symfony/symfony, symfony/symfony, symfony/symfony
Symfony CSRF Vulnerability
symfony/security-csrf/ symfony/security-csrf/ symfony/security-csrf/ symfony/security-csrf/ symfony/security/ symfony/security/ symfony/security/ symfony/security/ symfony/symfony/ symfony/symfony/ symfony/symfony/ symfony/symfony
Symfony CSRF Vulnerability
pyanyapi
Unsafe pyyaml load usage in PyAnyAPI
nova, nova, nova
OpenStack Nova Filter Scheduler Bypass
borgbackup
Borg Improper Access Control vulnerability
nilsteampassnet/teampass
TeamPass Improper Privilege Management
nilsteampassnet/teampass
TeamPass Improper Privilege Management
nilsteampassnet/teampass
TeamPass Improper Privilege Management
nilsteampassnet/teampass
TeamPass Improper Privilege Management
nilsteampassnet/teampass
TeamPass Improper Privilege Management
nilsteampassnet/teampass
TeamPass Improper Privilege Management
genix/cms
GeniXCMS arbitrary PHP code execution
bzr
Bazaar allows remote attackers to execute arbitrary commands via a bzr+ssh URL with initial dash character in hostname
bzr
Bazaar allows remote attackers to execute arbitrary commands via a bzr+ssh URL with initial dash character in hostname
org.onosproject:onos-base
ONOS vulnerable to denial of service due to unrestricted NettyMessagingManager payload
org.onosproject:onos-base
ONOS vulnerable to denial of service due to unrestricted NettyMessagingManager payload
com.nimbusds:nimbus-jose-jwt
Nimbus JOSE+JWT vulnerable to padding oracle attack
com.nimbusds:nimbus-jose-jwt
Nimbus JOSE+JWT vulnerable to padding oracle attack
simplesamlphp/simplesamlphp
SimpleSAMLphp Invalid token creation and validation
simplesamlphp/simplesamlphp
SimpleSAMLphp Invalid token creation and validation
