Vulnerability Database
Blog
FAQ
Docs
Vulnerabilities
search
All ecosystems
314857
AlmaLinux
3790
Alpine
3741
Android
2907
Bitnami
5664
Chainguard
27722
CRAN
10
crates.io
1730
Debian
46980
GHC
3
GIT
29679
GitHub Actions
28
Go
4348
Hackage
23
Hex
37
Linux
13573
Mageia
5643
Maven
5638
MinimOS
1766
npm
27251
NuGet
1446
openSUSE
10084
OSS-Fuzz
3623
Packagist
4739
Pub
10
PyPI
15991
Red Hat
16413
Rocky Linux
1758
RubyGems
1685
SUSE
16457
SwiftURL
35
Ubuntu
46997
Wolfi
15086
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-ggmv-j932-q89q
Go/github.com/ctfer-io/chall-manager
Chall-Manager's HTTP Gateway is vulnerable to DoS due to missing header timeout
yesterday
Fix available
Severity - 8.7 (High)
GHSA-r7fm-3pqm-ww5w
Go/github.com/ctfer-io/chall-manager
Chall-Manager's scenario decoding process does not check for zip bombs
yesterday
Fix available
Severity - 8.7 (High)
GHSA-3gv2-v3jx-r9fh
Go/github.com/ctfer-io/chall-manager
Chall-Manager is vulnerable to Path Traversal when extracting/decoding a zip archive
yesterday
Fix available
Severity - 8.8 (High)
GHSA-phhq-63jg-fp7r
Go/github.com/edgelesssys/contrast
Contrast vulnerability allows arbitrary host data Injection into container VOLUME mount points
2 days ago
Fix available
Severity - 3.5 (Low)
GHSA-4vc8-wvhw-m5gv
Go/github.com/juju/juju
Juju allows arbitrary executable uploads via authenticated endpoint without authorization
2 days ago
Fix available
Severity - 8.8 (High)
GHSA-r64v-82fh-xc63
Go/github.com/juju/juju
Juju vulnerable to sensitive log retrieval via authenticated endpoint without authorization
2 days ago
Fix available
Severity - 6.5 (Medium)
GHSA-24ch-w38v-xmh8
Go/github.com/juju/juju
Juju zip slip vulnerability via authenticated endpoint
2 days ago
Fix available
Severity - 8.8 (High)
GHSA-p22h-3m2v-cmgh
Go/github.com/cosmos/cosmos-sdk
Cosmos SDK's Integer Overflow vulnerability in its Validator Rewards pool can cause a chain halt
3 days ago
Fix available
Severity - 7.7 (High)
GHSA-557j-xg8c-q2mm
Go/helm.sh/helm/v3
Helm vulnerable to Code Injection through malicious chart.yaml content
3 days ago
Fix available
Severity - 8.5 (High)
GHSA-rj53-j6jw-7f7g
Go/github.com/babylonlabs-io/babylon/v2
Babylon vulnerable to chain halt when a message modifies the validator set at the epoch boundary
3 days ago
Fix available
Severity - 8.9 (High)
GHSA-gj54-gwj9-x2c6
Go/github.com/lf-edge/ekuiper/v2
Go/github.com/lf-edge/ekuiper
eKuiper /config/uploads API arbitrary file writing may lead to RCE
03 Jul
Fix available
Severity - 7.3 (High)
GHSA-fv2p-qj5p-wqq4
Go/github.com/lf-edge/ekuiper/v2
Go/github.com/lf-edge/ekuiper
LF Edge eKuiper vulnerable to File Path Traversal leading to file replacement
03 Jul
Fix available
Severity - 8.5 (High)
GHSA-h34r-jxqm-qgpr
Go/github.com/juju/utils/v4/cert
juju/utils leaks private key in certs
01 Jul
Fix available
Severity - 6.5 (Medium)
GHSA-v8fr-vxmw-6mf6
Go/github.com/mattermost/mattermost-server
Go/github.com/mattermost/mattermost/server/v8
Mattermost Incorrect Authorization vulnerability
30 Jun
Fix available
Severity - 5.4 (Medium)
GHSA-wgvp-jj4w-88hf
Go/github.com/mattermost/mattermost-server
Go/github.com/mattermost/mattermost/server/v8
Mattermost Incorrect Authorization vulnerability
30 Jun
Fix available
Severity - 4.3 (Medium)
GHSA-56j4-446m-qrf6
Go/github.com/babylonlabs-io/babylon/v2
Babylon vulnerable to chain half when transaction has fees different than `ubbn`
30 Jun
Fix available
Severity - 8.7 (High)
Load more...
Go - OSV