Open Source Vulnerabilities
info.magnolia:magnolia-core
Cross-Site Request Forgery in Magnolia CMS
info.magnolia:magnolia-core
Cross-Site Request Forgery in Magnolia CMS
info.magnolia:magnolia-core
Arbitrary code execution in Magnolia CMS
info.magnolia:magnolia-core
Arbitrary code execution in Magnolia CMS
info.magnolia:magnolia-core
Deserialization of Untrusted Data in Magnolia CMS
info.magnolia:magnolia-core
Deserialization of Untrusted Data in Magnolia CMS
mellium.im/xmpp
Duplicate Advisory: TLS certificate validation error in mellium.im/xmpp
mellium.im/xmpp
Duplicate Advisory: TLS certificate validation error in mellium.im/xmpp
libarchive
Heap-use-after-free in archive_read_format_rar_read_data
libarchive
Heap-use-after-free in archive_read_format_rar_read_data
debian-edu-config
debian-edu-config - security update
github.com/fleetdm/fleet/v4
SAML authentication vulnerability due to stdlib XML parsing
github.com/fleetdm/fleet/v4
SAML authentication vulnerability due to stdlib XML parsing
github.com/russellhaering/gosaml2
Authentication Bypass in github.com/russellhaering/gosaml2
github.com/russellhaering/gosaml2
Authentication Bypass in github.com/russellhaering/gosaml2
github.com/nats-io/jwt
Nil dereference in NATS JWT, DoS of nats-server
github.com/nats-io/jwt
Nil dereference in NATS JWT, DoS of nats-server
github.com/nats-io/jwt
Incorrect handling of credential expiry by /nats-io/nats-server
github.com/nats-io/jwt
Incorrect handling of credential expiry by /nats-io/nats-server
github.com/cli/cli
GitHub CLI can execute a git binary from the current directory
github.com/cli/cli
GitHub CLI can execute a git binary from the current directory
github.com/ntbosscher/gobase
gobase subject to Incorrect routing of some HTTP requests when using httpauth due to a race condition
github.com/ntbosscher/gobase
gobase subject to Incorrect routing of some HTTP requests when using httpauth due to a race condition
github.com/git-lfs/git-lfs
Git LFS can execute a Git binary from the current directory
github.com/git-lfs/git-lfs
Git LFS can execute a Git binary from the current directory
github.com/personnummer/go
personnummer/go vulnerable to Improper Input Validation
github.com/personnummer/go
personnummer/go vulnerable to Improper Input Validation
github.com/containerd/containerd
containerd v1.2.x can be coerced into leaking credentials during image pull
github.com/containerd/containerd
containerd v1.2.x can be coerced into leaking credentials during image pull
github.com/aws/aws-sdk-go
CBC padding oracle issue in AWS S3 Crypto SDK for golang in github.com/aws/aws-sdk-go
github.com/aws/aws-sdk-go
CBC padding oracle issue in AWS S3 Crypto SDK for golang in github.com/aws/aws-sdk-go
github.com/aws/aws-sdk-go
CBC padding oracle issue in AWS S3 Crypto SDK for golang
github.com/aws/aws-sdk-go
CBC padding oracle issue in AWS S3 Crypto SDK for golang
github.com/aws/aws-sdk-go
Duplicate Advisory: Unencrypted md5 plaintext hash in metadata in AWS S3 Crypto SDK for golang
github.com/aws/aws-sdk-go
Duplicate Advisory: Unencrypted md5 plaintext hash in metadata in AWS S3 Crypto SDK for golang
github.com/aws/aws-sdk-go
In-band key negotiation issue in AWS S3 Crypto SDK for golang
github.com/aws/aws-sdk-go
In-band key negotiation issue in AWS S3 Crypto SDK for golang
github.com/traefik/traefik, github.com/traefik/traefik/v2, github.com/containous/traefik, github.com/containous/traefik/v2, github.com/traefik/traefik/v2, github.com/containous/traefik/v2, github.com/traefik/traefik/api, github.com/traefik/traefik/v2/pkg/api, github.com/traefik/traefik/v2/pkg/api, github.com/containous/traefik/api, github.com/containous/traefik/v2/pkg/api, github.com/containous/traefik/v2/pkg/api
Traefik vulnerable to Open Redirect via handling of X-Forwarded-Prefix header
github.com/traefik/traefik/ github.com/traefik/traefik/v2/ github.com/containous/traefik/ github.com/containous/traefik/v2/ github.com/traefik/traefik/v2/ github.com/containous/traefik/v2/ github.com/traefik/traefik/api/ github.com/traefik/traefik/v2/pkg/api/ github.com/traefik/traefik/v2/pkg/api/ github.com/containous/traefik/api/ github.com/containous/traefik/v2/pkg/api/ github.com/containous/traefik/v2/pkg/api
Traefik vulnerable to Open Redirect via handling of X-Forwarded-Prefix header
github.com/google/go-tpm
TPM 1.2 key authorization values vulnerable to TPM transport eavesdropper in go-tpm
github.com/google/go-tpm
TPM 1.2 key authorization values vulnerable to TPM transport eavesdropper in go-tpm
github.com/goharbor/harbor, github.com/goharbor/harbor
Unauthenticated users can exploit an enumeration vulnerability in Harbor (CVE-2019-19030)
github.com/goharbor/harbor/ github.com/goharbor/harbor
Unauthenticated users can exploit an enumeration vulnerability in Harbor (CVE-2019-19030)
github.com/goharbor/harbor
Harbor is vulnerable to a limited Server-Side Request Forgery (SSRF) (CVE-2020-13788)
github.com/goharbor/harbor
Harbor is vulnerable to a limited Server-Side Request Forgery (SSRF) (CVE-2020-13788)
Information Exposure when using Puma with Rails
puma, puma
Puma used with Rails may lead to Information Exposure
puma/ puma
Puma used with Rails may lead to Information Exposure
