Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
601285
AlmaLinux
4228
Alpaquita
7713
Alpine
3920
Android
3136
BellSoft Hardened Containers
285
Bitnami
6283
Chainguard
33006
CRAN
12
crates.io
1904
Debian
51493
Echo
2451
GHC
3
GIT
75220
GitHub Actions
37
Go
5195
Hackage
26
Hex
45
Julia
332
Linux
22682
Mageia
5769
Maven
6088
MinimOS
8832
npm
213688
NuGet
1503
openEuler
5599
openSUSE
10308
OSS-Fuzz
3734
Packagist
5530
Pub
10
PyPI
17438
Red Hat
17789
Rocky Linux
2514
RubyGems
1835
SUSE
17048
SwiftURL
42
Ubuntu
49137
VSCode
15
Wolfi
16435
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-j4pr-3wm6-xx2r
RubyGems/uri
URI Credential Leakage Bypass over CVE-2025-27221
52 minutes ago
Fix available
Severity - 2.7 (Low)
CGA-q58f-9vvv-2cmc
Chainguard/logstash-9.0
Chainguard/logstash-9.0-compat
Chainguard/logstash-9.0-env2yaml
Chainguard/logstash-9.0-iamguarded-compat
Chainguard/logstash-9.0-with-output-opensearch
See record for full details
54 minutes ago
Fix available
GHSA-6rw7-vpxm-498p
npm/qs
qs's arrayLimit bypass in its bracket notation allows DoS via memory exhaustion
56 minutes ago
Fix available
Severity - 8.7 (High)
GHSA-2267-xqcf-gw2m
Packagist/facturascripts/facturascripts
FacturaScripts is Vulnerable to Stored Cross-Site Scripting (XSS) via XML File Upload
1 hour ago
No fix available
Severity - 8.6 (High)
GHSA-6mp4-q625-mxjp
Packagist/yourls/yourls
YOURLS is vulnerable to XSS through JSONP and Callback request parameters
2 hours ago
No fix available
Severity - 7.1 (High)
GHSA-xphh-5v4r-r3rx
npm/psitransfer
PsiTransfer has Zip Slip Path Traversal via TAR Archive Download
2 hours ago
Fix available
Severity - 8.1 (High)
GHSA-59pp-r3rg-353g
Packagist/composer/composer
Composer is vulnerable to ANSI sequence injection
4 hours ago
Fix available
Severity - 1.2 (Low)
MAL-2025-192986
npm/nbugs-video
Malicious code in nbugs-video (npm)
4 hours ago
No fix available
MAL-2025-192987
npm/npm-xmt
Malicious code in npm-xmt (npm)
4 hours ago
No fix available
MAL-2025-192984
npm/chai-promised-chains
Malicious code in chai-promised-chains (npm)
4 hours ago
No fix available
MAL-2025-192985
npm/error-fallback
Malicious code in error-fallback (npm)
4 hours ago
No fix available
MAL-2025-192979
npm/@ptest2535/artifactory-demo-ptest
Malicious code in @ptest2535/artifactory-demo-ptest (npm)
4 hours ago
No fix available
MAL-2025-192980
npm/@ptest2535/l_woker_mal
Malicious code in @ptest2535/l_woker_mal (npm)
4 hours ago
No fix available
MAL-2025-192981
npm/@ptest2535/test_package
Malicious code in @ptest2535/test_package (npm)
4 hours ago
No fix available
MAL-2025-192982
npm/@ptest2535/ui-core_mal
Malicious code in @ptest2535/ui-core_mal (npm)
4 hours ago
No fix available
MAL-2025-192988
npm/yellowdiscordlookup
Malicious code in yellowdiscordlookup (npm)
4 hours ago
No fix available
Load more...
Vulnerability Database - OSV