Open Source Vulnerabilities

    Dashboard / Open Source Vulnerabilities

    CVE-2022-1108
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-1107
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-0636
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-0354
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-0192
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3972
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3971
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3970
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3898
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3897
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3849
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3722
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-3721
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    GHSA-9wrv-g75h-8ccc
    Fix available
    Packages

    shopware/platform, shopware/core

    Summary

    Improper Access Control in Shopware

    Published
    22 Apr 2022
    GHSA-7gm7-8q8v-9gf2
    Fix available
    Packages

    shopware/platform, shopware/core

    Summary

    Server-Side Request Forgery (SSRF) in Shopware

    Published
    22 Apr 2022
    GHSA-g5rr-p69h-7v3g
    Fix available
    Packages

    pocketmine/pocketmine-mp

    Summary

    Insufficient type validation in pocketmine/pocketmine-mp

    Published
    22 Apr 2022
    GHSA-xg75-q3q5-cqmv
    Fix available
    Packages

    github.com/swaggo/http-swagger

    Summary

    Denial of Service in http-swagger

    Published
    22 Apr 2022
    GHSA-xcjx-m2pj-8g79
    Fix available
    Packages

    pypdf2

    Summary

    Manipulated inline images can cause Infinite Loop in PyPDF2

    Published
    22 Apr 2022
    GHSA-f9wg-5f46-cjmw
    Fix available
    Packages

    next-auth, next-auth

    Summary

    NextAuth.js default redirect callback vulnerable to open redirects

    Published
    22 Apr 2022
    GHSA-3r7g-wrpr-j5g4
    Fix available
    Packages

    django-mfa3

    Summary

    Improper Authentication in django-mfa3

    Published
    22 Apr 2022
    GHSA-4hj2-r2pm-3hc6
    Fix available
    Packages

    github.com/cri-o/cri-o

    Summary

    Incorrect Default Permissions in CRI-O

    Published
    22 Apr 2022
    GHSA-frxg-hf44-q765
    Fix available
    Packages

    DisCatSharp

    Summary

    Exposure of Sensitive Information to an Unauthorized Actor in DisCatSharp

    Published
    22 Apr 2022
    GHSA-4pm3-f52j-8ggh
    Fix available
    Packages

    org.geoserver:gs-main, org.geoserver:gs-main

    Summary

    Improper Input Validation in GeoServer

    Published
    22 Apr 2022
    GHSA-cf4q-4cqr-7g7w
    Fix available
    Packages

    xml2rfc

    Summary

    SVG with embedded scripts can lead to cross-site scripting attacks in xml2rfc

    Published
    22 Apr 2022
    GHSA-j2x6-9323-fp7h
    Fix available
    Packages

    vyper

    Summary

    Integer bounds error in Vyper

    Published
    22 Apr 2022
    GHSA-8xc6-g8xw-h2c4
    Fix available
    Packages

    Yarp.ReverseProxy, Yarp.ReverseProxy

    Summary

    YARP Denial of Service Vulnerability

    Published
    22 Apr 2022
    GHSA-j35p-q24r-5367
    Fix available
    Packages

    ckb

    Summary

    Dep Group Remote Memory Exhaustion (Denial of Service) in ckb

    Published
    22 Apr 2022
    GHSA-3227-r97m-8j95
    Fix available
    Packages

    afire

    Summary

    Relative Path Traversal in afire serve_static

    Published
    22 Apr 2022
    GHSA-x7cr-6qr6-2hh6
    Fix available
    Packages

    composer/composer, composer/composer, composer/composer

    Summary

    Missing input validation can lead to command execution in composer

    Published
    22 Apr 2022
    CVE-2022-27342
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-27340
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    GHSA-6rw3-3whw-jvjj
    Fix available
    Packages

    github.com/git-lfs/git-lfs/v3, github.com/git-lfs/git-lfs

    Summary

    Git LFS can execute a binary from the current directory on Windows

    Published
    22 Apr 2022
    CVE-2022-27341
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-1440
    Fix available
    Packages

    Summary

    Command Injection vulnerability in [email protected] in yarkeev/git-interface

    Published
    22 Apr 2022
    CVE-2021-38946
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-38905
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-38904
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-38903
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-38886
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-29824
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2021-20464
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    MGASA-2022-0148
    Fix available
    Packages

    openscad

    Summary

    Updated openscad packages fix security vulnerability

    Published
    22 Apr 2022
    MGASA-2022-0147
    Fix available
    Packages

    git

    Summary

    Updated git packages fix security vulnerability

    Published
    22 Apr 2022
    CVE-2022-1439
    Fix available
    Packages

    Summary

    Reflected XSS on demo.microweber.org/demo/module/ in microweber/microweber

    Published
    22 Apr 2022
    CVE-2022-29589
    Fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-29583
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    CVE-2022-29582
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022
    Packages

    linux, linux, linux

    Summary

    Published
    22 Apr 2022
    AZL-9582
    Fix available
    Packages

    kernel

    Summary

    CVE-2022-29582 affecting package kernel for versions less than 5.15.37.1-2

    Published
    22 Apr 2022
    CVE-2020-14123
    No fix available
    Packages

    Summary

    Published
    22 Apr 2022