Open Source Vulnerabilities
org.cloudfoundry.identity:cloudfoundry-identity-server
Cloud Foundry Runtime Insufficient Session Expiration vulnerability
org.cloudfoundry.identity:cloudfoundry-identity-server
Cloud Foundry Runtime Insufficient Session Expiration vulnerability
org.cloudfoundry.identity:cloudfoundry-identity-server
Cloud Foundry Runtime Cross-Site Request Forgery vulnerability
org.cloudfoundry.identity:cloudfoundry-identity-server
Cloud Foundry Runtime Cross-Site Request Forgery vulnerability
pi/pi
Pi Cross-site Scripting vulnerability
org.rundeck:rundeck
Rundeck Community Edition vulnerable to Cross-site Scripting
org.rundeck:rundeck
Rundeck Community Edition vulnerable to Cross-site Scripting
Google.Protobuf, com.google.protobuf:protobuf-parent, github.com/protocolbuffers/protobuf, google/protobuf, protobuf
protobuf susceptible to buffer overflow
Google.Protobuf/ com.google.protobuf:protobuf-parent/ github.com/protocolbuffers/protobuf/ google/protobuf/ protobuf
protobuf susceptible to buffer overflow
studio-42/elfinder
Directory Traversal in Studio 42 elFinder
studio-42/elfinder
Directory Traversal in Studio 42 elFinder
studio-42/elfinder
elFinder Server Side Request Forgery (SSRF)
studio-42/elfinder
elFinder Server Side Request Forgery (SSRF)
studio-42/elfinder
elFinder Path Traversal vulnerability
studio-42/elfinder
Sensitive Data Exposure in elFinder
puppet
Puppet Improper Access Control
postgresql:pljava-public
PostgreSQL PL/Java Improper Privilege Management
postgresql:pljava-public
PostgreSQL PL/Java Improper Privilege Management
python-docx
Improper Restriction of XML External Entity Reference in python-docx
python-docx
Improper Restriction of XML External Entity Reference in python-docx
ansible, ansible
Ansible Insertion of Sensitive Information into Log File vulnerability
ansible/ ansible
Ansible Insertion of Sensitive Information into Log File vulnerability
org.apache.zookeeper:zookeeper, org.apache.zookeeper:zookeeper
Missing Authorization in Apache ZooKeeper
org.apache.zookeeper:zookeeper/ org.apache.zookeeper:zookeeper
Missing Authorization in Apache ZooKeeper
org.apache.santuario:xmlsec, org.apache.santuario:xmlsec
Inefficient Algorithmic Complexity in Apache Santuario XML Security
org.apache.santuario:xmlsec/ org.apache.santuario:xmlsec
Inefficient Algorithmic Complexity in Apache Santuario XML Security
org.apache.santuario:xmlsec
Improper Input Validation in Apache Santuario XML Security
org.apache.santuario:xmlsec
Improper Input Validation in Apache Santuario XML Security
org.apache.santuario:xmlsec
Improper Input Validation in Apache Santuario XML Security
org.apache.santuario:xmlsec
Improper Input Validation in Apache Santuario XML Security
org.mindrot:jbcrypt
Integer Overflow or Wraparound in JBCrypt
org.mindrot:jbcrypt
Integer Overflow or Wraparound in JBCrypt
symfony/http-foundation, symfony/http-foundation, symfony/http-foundation, symfony/http-foundation, symfony/http-foundation, symfony/http-foundation, symfony/symfony, symfony/symfony, symfony/symfony, symfony/symfony, symfony/symfony, symfony/symfony
Symfony HTTP Foundation web cache poisoning
symfony/http-foundation/ symfony/http-foundation/ symfony/http-foundation/ symfony/http-foundation/ symfony/http-foundation/ symfony/http-foundation/ symfony/symfony/ symfony/symfony/ symfony/symfony/ symfony/symfony/ symfony/symfony/ symfony/symfony
Symfony HTTP Foundation web cache poisoning
moodle/moodle
Moodle Authenticated Spelling Binary Remote Code Execution
moodle/moodle
Moodle Authenticated Spelling Binary Remote Code Execution
xalan:xalan
Improper Authorization in Apache Xalan-Java
org.codehaus.castor:castor, castor:castor
Improper Restriction of XML External Entity Reference in Castor
org.codehaus.castor:castor/ castor:castor
Improper Restriction of XML External Entity Reference in Castor
camaleon_cms
Camaleon CMS vulnerable to Stored Cross-site Scripting
camaleon_cms
Camaleon CMS vulnerable to Stored Cross-site Scripting
mantisbt/mantisbt, mantisbt/mantisbt
MantisBT XSS allows unsanitized input via admin/install.php
mantisbt/mantisbt/ mantisbt/mantisbt
MantisBT XSS allows unsanitized input via admin/install.php
smarty/smarty
Smarty Path Traversal Vulnerability
moodle/moodle, moodle/moodle, moodle/moodle
Moodle Logged in users could view all calendar events
moodle/moodle/ moodle/moodle/ moodle/moodle
Moodle Logged in users could view all calendar events
org.jenkins-ci.main:jenkins-core, org.jenkins-ci.main:jenkins-core
Improper Authorization in Jenkins Core
org.jenkins-ci.main:jenkins-core/ org.jenkins-ci.main:jenkins-core
Improper Authorization in Jenkins Core
org.jenkins-ci.main:jenkins-core
Improper Authorization in Jenkins Core
org.jenkins-ci.main:jenkins-core
Improper Authorization in Jenkins Core
phpmyadmin/phpmyadmin
phpMyAdmin Improper Authentication
moodle/moodle, moodle/moodle, moodle/moodle, moodle/moodle
Moodle XSS Vulnerability
moodle/moodle/ moodle/moodle/ moodle/moodle/ moodle/moodle
Moodle XSS Vulnerability
moodle/moodle, moodle/moodle, moodle/moodle, moodle/moodle
Moodle XSS Vulnerability
moodle/moodle/ moodle/moodle/ moodle/moodle/ moodle/moodle
Moodle XSS Vulnerability
org.apache.mesos:mesos, org.apache.mesos:mesos, org.apache.mesos:mesos, org.apache.mesos:mesos
Docker image code execution with Apache Mesos
org.apache.mesos:mesos/ org.apache.mesos:mesos/ org.apache.mesos:mesos/ org.apache.mesos:mesos
Docker image code execution with Apache Mesos
org.slf4j:slf4j-ext, org.slf4j:slf4j-ext
Improper Access Control in SLF4J
org.slf4j:slf4j-ext/ org.slf4j:slf4j-ext
Improper Access Control in SLF4J
in2code/femanager
TYPO3 femanager extension allows remote frontend users to modify or delete records of other frontend users
in2code/femanager
TYPO3 femanager extension allows remote frontend users to modify or delete records of other frontend users
org.opensaml:opensaml
Exposure of Sensitive Information to an Unauthorized Actor in OpenSAML
org.opensaml:opensaml
Exposure of Sensitive Information to an Unauthorized Actor in OpenSAML
org.jgroups:jgroups, org.jgroups:jgroups
Improper Input Validation in JGroups
org.jgroups:jgroups/ org.jgroups:jgroups
Improper Input Validation in JGroups
gogentooss/samlbase
Wizkunde SAMLBase SAML Bypass
org.springframework.data:spring-data-rest-core, org.springframework.data:spring-data-rest-core
Remote code execution in PATCH requests in Spring Data REST
org.springframework.data:spring-data-rest-core/ org.springframework.data:spring-data-rest-core
Remote code execution in PATCH requests in Spring Data REST
org.springframework:spring-webmvc, org.springframework:spring-webmvc
Improper Restriction of XML External Entity Reference in Spring Framework
org.springframework:spring-webmvc/ org.springframework:spring-webmvc
Improper Restriction of XML External Entity Reference in Spring Framework
org.springframework:spring-web
Cross-Site Request Forgery in Spring Framework
org.springframework:spring-web
Cross-Site Request Forgery in Spring Framework
org.springframework:spring-webmvc, org.springframework:spring-webmvc, org.springframework:spring-webmvc
Improper Limitation of a Pathname to a Restricted Directory in Spring Framework
org.springframework:spring-webmvc/ org.springframework:spring-webmvc/ org.springframework:spring-webmvc
Improper Limitation of a Pathname to a Restricted Directory in Spring Framework
nokogiri
Nokogiri gem, via libxml, is affected by DoS vulnerabilities
nokogiri
Nokogiri gem, via libxml, is affected by DoS vulnerabilities
org.springframework:spring-webmvc, org.springframework:spring-webmvc
Cross-Site Request Forgery in Spring Framework
org.springframework:spring-webmvc/ org.springframework:spring-webmvc
Cross-Site Request Forgery in Spring Framework
org.springframework:spring-oxm
Cross-Site Request Forgery in Spring Framework
org.springframework:spring-oxm
Cross-Site Request Forgery in Spring Framework
org.springframework:spring-oxm
Missing XML Validation in Spring Framework
org.springframework:spring-oxm
Missing XML Validation in Spring Framework
org.jenkins-ci.main:jenkins-core, org.jenkins-ci.main:jenkins-core
Cross-site Scripting in Jenkins
org.jenkins-ci.main:jenkins-core/ org.jenkins-ci.main:jenkins-core
Cross-site Scripting in Jenkins
github.com/rancher/rancher
Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
github.com/rancher/rancher
Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
github.com/rancher/rancher, github.com/rancher/rancher, github.com/rancher/rancher, github.com/rancher/rancher
Rancher Access Control Vulnerability
github.com/rancher/rancher/ github.com/rancher/rancher/ github.com/rancher/rancher/ github.com/rancher/rancher
Rancher Access Control Vulnerability
org.apache.derby:derby
Improper Access Control in Apache Derby
org.apache.derby:derby
Improper Access Control in Apache Derby
org.apache.kafka:kafka, org.apache.kafka:kafka, org.apache.kafka:kafka
Improper Control of Generation of Code in Apache Kafka
org.apache.kafka:kafka/ org.apache.kafka:kafka/ org.apache.kafka:kafka
Improper Control of Generation of Code in Apache Kafka
