Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
610877
AlmaLinux
4582
Alpaquita
8727
Alpine
4048
Android
3261
BellSoft Hardened Containers
417
Bitnami
6883
Chainguard
5531
CleanStart
713
CRAN
14
crates.io
2196
Debian
54046
Echo
3142
GHC
3
GIT
81457
GitHub Actions
49
Go
6481
Hackage
30
Hex
57
Julia
427
Linux
15361
Mageia
5863
Maven
6293
MinimOS
24655
npm
217016
NuGet
1624
opam
11
openEuler
6292
openSUSE
12396
OSS-Fuzz
3818
Packagist
5998
Pub
11
PyPI
18562
Red Hat
19118
Rocky Linux
2896
Root
11820
RubyGems
1925
SUSE
20136
SwiftURL
50
Ubuntu
51452
VSCode
18
Wolfi
3498
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-3p24-9x7v-7789
Maven/gov.nsa.emissary:emissary
Emissary has an OS Command Injection via Unvalidated IN_FILE_ENDING / OUT_FILE_ENDING in Executrix
1 hour ago
Fix available
Severity - 8.8 (High)
GHSA-w35j-pv5h-q9q9
Maven/org.apache.logging.log4j:log4j-layout-template-json
Apache Log4j's JsonTemplateLayout produces invalid JSON output when log events contain non-finite floating-point values
2 days ago
Fix available
Severity - 6.3 (Medium)
GHSA-3pxv-7cmr-fjr4
Maven/org.apache.logging.log4j:log4j-core
Apache Log4j Core's XmlLayout fails to sanitize characters
2 days ago
Fix available
Severity - 6.9 (Medium)
GHSA-5568-6qcg-g7fx
Maven/org.apache.activemq:activemq-all
Maven/org.apache.activemq:activemq-broker
Maven/org.apache.activemq:activemq-client
Maven/org.apache.activemq:apache-activemq
Apache ActiveMQ: Denial of Service via Out of Memory vulnerability
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-hwqh-2684-54fc
Maven/org.springframework.cloud:spring-cloud-gateway
Spring Cloud Gateway's SSL bundle configuration silently bypassed
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-24j9-x2wg-9qv6
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat: CLIENT_CERT authentication does not fail as expected
3 days ago
Fix available
Severity - 6.5 (Medium)
GHSA-69r9-qgr7-g2wj
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat Missing Encryption of Sensitive Data vulnerability
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-rv64-5gf8-9qq8
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat has an Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogValve
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-x4m4-345f-5h5g
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat vulnerable to Insertion of Sensitive Information into Log File
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-563x-q5rq-57qp
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat has an HTTP Request/Response Smuggling vulnerability
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-69cc-cv78-qc8g
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat: Configured cipher preference order not preserved
3 days ago
Fix available
Severity - 7.5 (High)
GHSA-8mc5-53m5-3qj2
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat has an Improper Input Validation vulnerability
3 days ago
Fix available
Severity - 6.9 (Medium)
GHSA-95jq-rwvf-vjx4
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat: CLIENT_CERT authentication does not fail as expected
3 days ago
Fix available
Severity - 9.1 (Critical)
GHSA-9m3c-qcxr-9x87
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat has an Open Redirect vulnerability
3 days ago
Fix available
Severity - 6.9 (Medium)
GHSA-h468-7pvh-8vr8
Maven/org.apache.tomcat.embed:tomcat-embed-core
Maven/org.apache.tomcat:tomcat
Maven/org.apache.tomcat:tomcat-catalina
Apache Tomcat: Padding Oracle vulnerability in EncryptInterceptor
3 days ago
Fix available
Severity - 8.7 (High)
GHSA-gcvm-c75m-h4p4
Maven/org.apache.openmeetings:openmeetings-parent
Apache OpenMeetings Uses GET Request Method With Sensitive Query Strings
3 days ago
Fix available
Severity - 8.7 (High)
Load more...
Maven - OSV