Open Source Vulnerabilities
tkvideoplayer
tkvideo has a memory issue in playing videos
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Improper Neutralization of Input During Web Page Generation in Apache Tomcat
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Improper Neutralization of Input During Web Page Generation in Apache Tomcat
libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2
libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2/ libxml2
libxslt
CVE-2022-29824 affecting package libxslt for versions less than 1.1.34-7
libxslt
CVE-2022-29824 affecting package libxslt for versions less than 1.1.34-7
libxml2
CVE-2022-29824 affecting package libxml2 for versions less than 2.9.14-1
libxml2
CVE-2022-29824 affecting package libxml2 for versions less than 2.9.14-1
libxml2, libxml2, libxml2, libxml2, libxml2
zope
Zope DocumentTemplate package allows unauthenticated write
zope
Zope DocumentTemplate package allows unauthenticated write
s-cart/core, s-cart/s-cart
SCart is vulnerable to cross-site scripting (XSS)
s-cart/core/ s-cart/s-cart
SCart is vulnerable to cross-site scripting (XSS)
libxmljs
Denial of service vulnerability exists in libxmljs
libxmljs
Denial of service vulnerability exists in libxmljs
git-pull-or-clone
OS Command Injection in git-pull-or-clone
git-pull-or-clone
OS Command Injection in git-pull-or-clone
dexie, dexie
Prototype Pollution in Dexie
jailed
Privilege Issues in jailed
csv-safe
CSV-Safe improperly filters special characters potentially leading to CSV injection
csv-safe
CSV-Safe improperly filters special characters potentially leading to CSV injection
luyadev/yii-helpers
Improper neutralization of formula elements in yii-helpers
luyadev/yii-helpers
Improper neutralization of formula elements in yii-helpers
Masuit.Tools.Core
Code Injection in Masuit.Tools.Core
dset, org.webjars.npm:dset
Prototype Pollution in dset
materialize-css
materialize-css vulnerable to cross-site Scripting (XSS) due to improper escape of user input
materialize-css
materialize-css vulnerable to cross-site Scripting (XSS) due to improper escape of user input
angular
angular vulnerable to regular expression denial of service (ReDoS)
angular
angular vulnerable to regular expression denial of service (ReDoS)
github.com/hoppscotch/proxyscotch
ProxyScotch is vulnerable to a server-side Request Forgery (SSRF)
github.com/hoppscotch/proxyscotch
ProxyScotch is vulnerable to a server-side Request Forgery (SSRF)
com.google.code.gson:gson
Deserialization of Untrusted Data in Gson
com.google.code.gson:gson
Deserialization of Untrusted Data in Gson
com.bstek.ureport:ureport2-console
Deserialization of Untrusted Data in com.bstek.ureport:ureport2-console
com.bstek.ureport:ureport2-console
Deserialization of Untrusted Data in com.bstek.ureport:ureport2-console
com.alibaba.oneagent:one-java-agent-plugin
Path Traversal in com.alibaba.oneagent:one-java-agent-plugin
com.alibaba.oneagent:one-java-agent-plugin
Path Traversal in com.alibaba.oneagent:one-java-agent-plugin
jsgui-lang-essentials
Prototype Pollution in jsgui-lang-essentials
jsgui-lang-essentials
Prototype Pollution in jsgui-lang-essentials
org.geoserver:gs-main, org.geoserver:gs-main
GeoServer allows SSRF via the option for setting a proxy host
org.geoserver:gs-main/ org.geoserver:gs-main
GeoServer allows SSRF via the option for setting a proxy host
snipe/snipe-it
snipe-IT vulnerable to host header injection
snipe/snipe-it
snipe-IT vulnerable to host header injection
sinatra
sinatra does not validate expanded path matches
shopxo/shopxo
Incorrect Permission Assignment for Critical Resource in ShopXO
shopxo/shopxo
Incorrect Permission Assignment for Critical Resource in ShopXO
openssl, edk2, openssl, openssl, openssl
openssl, openssl, edk2, openssl, openssl, openssl, openssl1.0, openssl, openssl, openssl, openssl, openssl, nodejs, openssl
openssl/ openssl/ edk2/ openssl/ openssl/ openssl/ openssl1.0/ openssl/ openssl/ openssl/ openssl/ openssl/ nodejs/ openssl
