An open API service providing security vulnerability metadata for many open source software ecosystems.

Browse Security Advisories

Critical
8 days ago

nova-tiptap has Unauthenticated Arbitrary File Upload Vulnerability GSA_kwCzR0hTQS05NmMyLWg2NjctOWZ4cM4ABKWD

packagist manogi/nova-tiptap, marshmallow/nova-tiptap
Critical
about 2 months ago

Magneto contains stored XSS vulnerability GSA_kwCzR0hTQS1qOTM0LXZqaDUtdmY5cs4ABI39

packagist magento/community-edition
Critical
6 months ago

Improper Authorization vulnerability in Magento and Adobe Commerce GSA_kwCzR0hTQS1mcHBxLWYybTYteHY1Y84ABEWV

packagist magento/project-community-edition, magento/community-edition
Critical
6 months ago

Multiple rtmpdump vulnerabilities GSA_kwCzR0hTQS12cnB2LXZ3OTItMzI4Z84ABEL4

packagist rudloff/rtmpdump-bin
Critical
7 months ago

TeamPass privileges issue GSA_kwCzR0hTQS05d21jLTk4OGgtMm12Ms4ABC08

packagist nilsteampassnet/teampass
Critical
about 1 year ago

Zend-JSON vulnerable to XXE/XEE attacks GSA_kwCzR0hTQS04eDJ2LXBjZzctOTRmNM4AA80C

packagist zendframework/zend-json
Critical
about 1 year ago

ZendFramework vulnerable to XXE/XEE attacks GSA_kwCzR0hTQS1mNGZqLXE2bTQtY2M1Ms4AA8zq

packagist zendframework/zend-xmlrpc
Critical
about 1 year ago

Zendframework vulnerable to XXE/XEE attacks GSA_kwCzR0hTQS1xYzd3LTQ1NjctODR3ds4AA8zh

packagist zendframework/zendframework
Critical
about 1 year ago

SimpleSAMLphp signature validation bypass GSA_kwCzR0hTQS1manIyLXIybXAtNDg0cM4AA8jC

packagist simplesamlphp/simplesamlphp
Critical
about 1 year ago

Dolibarr vulnerable to SQL Injection GSA_kwCzR0hTQS1xOHg3LWpjM2gtcDh4Y84AA8iU

packagist dolibarr/dolibarr
Critical
about 1 year ago

Dolibarr vulnerable to SQL Injection GSA_kwCzR0hTQS1jM2g5LXEzangtdzdmY84AA8iT

packagist dolibarr/dolibarr
Critical
about 1 year ago

Magento RCE,XSS and other vulnerabilities GSA_kwCzR0hTQS04ajdjLTY4MngtcjlmMs4AA8I2

packagist magento/community-edition
Critical
about 1 year ago

ADOdb SQL injection vulnerability GSA_kwCzR0hTQS1oNjNjLXh2cGYtMjY0as4AA8GG

packagist adodb/adodb-php
Critical
over 1 year ago

Zend Framework SQL injection vulnerability GSA_kwCzR0hTQS1xaDl3LXI3ZzUtcTkzOc4AA7QZ

packagist zendframework/zendframework, zendframework/zend-db, zendframework/zendframework1
Critical
over 1 year ago

Drupal Core Remote Code Execution Vulnerability GSA_kwCzR0hTQS0yOTd4LWo5cG0teGpnZ84AA7QY

packagist drupal/drupal, drupal/core

Filter by Severity

Filter by Ecosystem

Filter by Package

magento/community-edition 38 dolibarr/dolibarr 25 moodle/moodle 16 magento/project-community-edition 15 topthink/framework 14 drupal/core 14 magento/core 11 drupal/drupal 10 phpmyadmin/phpmyadmin 10 funadmin/funadmin 9 froxlor/froxlor 8 symfony/symfony 8 zendframework/zendframework1 8 shopware/platform 8 studio-42/elfinder 7 nilsteampassnet/teampass 6 typo3/cms 6 thorsten/phpmyfaq 6 ezsystems/ezpublish-kernel 6 craftcms/cms 6 mautic/core 6 zendframework/zendframework 6 prestashop/prestashop 5 librenms/librenms 5 shopware/core 5 centreon/centreon 5 dompdf/dompdf 5 showdoc/showdoc 4 simplesamlphp/simplesamlphp 4 tribalsystems/zenario 4 feehi/cms 4 baserproject/basercms 4 contao/core-bundle 4 adodb/adodb-php 4 nukeviet/nukeviet 4 shopware/shopware 4 contao/contao 4 silverstripe/framework 3 alextselegidis/easyappointments 3 ibexa/core 3 codiad/codiad 3 symfony/security-core 3 francoisjacquet/rosariosis 3 codeigniter/framework 3 symfony/security 3 impresscms/impresscms 3 facade/ignition 3 wwbn/avideo 3 elefant/cms 3 codeigniter4/framework 3 smarty/smarty 3 phpmailer/phpmailer 3 pimcore/pimcore 3 ezsystems/ezplatform-kernel 3 vufind/vufind 2 cockpit-hq/cockpit 2 tcg/voyager 2 zoujingli/thinkadmin 2 islandora/crayfish 2 pyrocms/pyrocms 2 knplabs/knp-snappy 2 typo3/phar-stream-wrapper 2 genix/cms 2 billz/raspap-webgui 2 pagekit/pagekit 2 qcubed/qcubed 2 openmage/magento-lts 2 badaso/core 2 intelliants/subrion 2 yiisoft/yii2 2 auth0/symfony 2 nystudio107/craft-seomatic 2 auth0/auth0-php 2 swiftmailer/swiftmailer 2 verot/class.upload.php 2 auth0/login 2 ezsystems/ezplatform-admin-ui 2 facturascripts/facturascripts 2 torrentpier/torrentpier 2 firebase/php-jwt 2 shopxo/shopxo 2 topthink/think 2 laravel/framework 2 admidio/admidio 2 flarum/core 2 mediawiki/core 2 contao/core 2 getgrav/grav 2 zendframework/zend-db 2 auth0/wordpress 2 ibexa/admin-ui 2 cachethq/cachet 1 in2code/lux 1 rmccue/requests 1 islandora/islandora 1 anchorcms/anchor-cms 1 jasig/phpcas 1 open-web-analytics/open-web-analytics 1 zendframework/zend-mail 1 kelvinmo/simplexrd 1 ttskch/pagination-service-provider 1 david-garcia/phpwhois 1 orchid/platform 1 symfony/proxy-manager-bridge 1 league/flysystem 1 binarytorch/larecipe 1 marshmallow/nova-tiptap 1 webbuilders-group/silverstripe-kapost-bridge 1 doctrine/dbal 1 illuminate/cookie 1 titon/framework 1 october/october 1 codeception/codeception 1 gleez/cms 1 symfony/serializer 1 propel/propel1 1 concrete5/core 1 symfony/var-exporter 1 symfony/http-foundation 1 sjbr/sr-freecap 1 DotNetCasClient 1 org.jasig.cas:cas-client 1 dbrisinajumi/d2files 1 cakephp/database 1 litespeed.js 1 serluck/phpwhois 1 impresspages/impresspages 1 plotly/plotly.js 1 appwrite/server-ce 1 mdanter/ecc 1 liftkit/database 1 friendsoftypo3/mediace 1 noumo/easyii 1 elijaa/phpmemcacheadmin 1 derhansen/fe_change_pwd 1 truckersmp/phpwhois 1 modx/revolution 1 bacula-web/bacula-web 1 yeswiki/yeswiki 1 spoon/library 1 phpwhois/phpwhois 1 ibexa/graphql 1 symfony/cache 1 cakephp/cakephp 1 ezsystems/ezpublish-legacy 1 kimai/kimai 1 topthink/thinkphp 1 pear/archive_tar 1 la-haute-societe/tcpdf 1 verbb/knock-knock 1 typo3/cms-core 1 phpunit/phpunit 1 zendframework/zend-xmlrpc 1 fluidtypo3/vhs 1 manogi/nova-tiptap 1 sylius/resource-bundle 1 usmanhalalit/pixie 1 zendesk/zendesk_api_client_php 1 rudloff/rtmpdump-bin 1 barrelstrength/sprout-base-email 1 webklex/php-imap 1 livewire/livewire 1 brightlocal/phpwhois 1 matyhtf/framework 1 webpa/webpa 1 doctrine/orm 1 bcit-ci/codeigniter 1 contao/listing-bundle 1 fenom/fenom 1 symfony/dependency-injection 1 bcosca/fatfree 1 silverstripe/restfulserver 1 silverstripe/cms 1 yiisoft/yii2-redis 1 contao/managed-edition 1 tecnickcom/tcpdf 1 roundcube/roundcubemail 1 pixelfed/pixelfed 1 bedita/bedita 1 apache-solr-for-typo3/solr 1 phpoffice/common 1 wp-cli/wp-cli 1 tinymighty/wiki-seo 1 lavalite/cms 1 cesnet/simplesamlphp-module-proxystatistics 1 simple-updates/phpwhois 1 filament/infolists 1 silverstripe/registry 1 latte/latte 1 namshi/jose 1 plotly.js 1 arc/web 1 barrelstrength/sprout-forms 1 rankmath/seo-by-rank-math 1 vanilla/safecurl 1 joomla/input 1 yiisoft/yii2-dev 1 terminal42/contao-tablelookupwizard 1 webklex/laravel-imap 1 xpressengine/xpressengine 1

Filter by Repository

https://github.com/Dolibarr/dolibarr 15 https://github.com/magento/magento2 10 https://github.com/funadmin/funadmin 9 https://github.com/top-think/framework 9 https://github.com/Studio-42/elFinder 7 https://github.com/symfony/symfony 7 https://github.com/shopware/platform 6 https://github.com/dompdf/dompdf 6 https://github.com/thorsten/phpmyfaq 6 https://github.com/PrestaShop/PrestaShop 5 https://github.com/froxlor/froxlor 5 https://github.com/moodle/moodle 5 https://github.com/auth0/auth0-PHP 5 https://github.com/craftcms/cms 5 https://github.com/liufee/cms 4 https://github.com/star7th/showdoc 4 https://github.com/mautic/mautic 4 https://github.com/contao/contao 4 https://github.com/ezsystems/ezpublish-kernel 4 https://github.com/nilsteampassnet/TeamPass 4 https://github.com/phpmyadmin/phpmyadmin 4 https://github.com/ADOdb/ADOdb 4 https://github.com/simplesamlphp/simplesamlphp 3 https://github.com/smarty-php/smarty 3 https://github.com/nukeviet/nukeviet 3 https://github.com/shopware/shopware 3 https://github.com/octobercms/october 3 https://github.com/codeigniter4/CodeIgniter4 3 https://github.com/ImpressCMS/impresscms 3 https://github.com/shopware5/shopware 3 https://github.com/centreon/centreon-archived 3 https://github.com/neorazorx/facturascripts 3 https://github.com/baserproject/basercms 3 https://github.com/pimcore/pimcore 3 https://github.com/ezsystems/ezplatform-kernel 3 https://github.com/PHPMailer/PHPMailer 3 https://github.com/ibexa/core 3 https://github.com/librenms/librenms 3 https://github.com/TribalSystems/Zenario 3 https://github.com/facade/ignition 3 https://github.com/jbroadway/elefant 3 https://github.com/zoujingli/ThinkAdmin 2 https://github.com/semplon/GeniXCMS 2 https://github.com/firebase/php-jwt 2 https://github.com/RaspAP/raspap-webgui 2 https://github.com/OpenMage/magento-lts 2 https://github.com/qcubed/qcubed 2 https://github.com/drupal/core 2 https://github.com/Froxlor/Froxlor 2 https://github.com/nystudio107/craft-seomatic 2 https://github.com/ezsystems/ezplatform-admin-ui 2 https://github.com/nilsteampassnet/teampass 2 https://github.com/silverstripe/silverstripe-framework 2 https://gitlab.com/francoisjacquet/rosariosis 2 https://github.com/ibexa/admin-ui 2 https://github.com/joomla/joomla-cms 2 https://github.com/vufind-org/vufind 2 https://github.com/WWBN/AVideo 2 https://github.com/KnpLabs/snappy 2 https://github.com/uasoft-indonesia/badaso 2 https://github.com/Islandora/Crayfish 2 https://github.com/TYPO3/phar-stream-wrapper 2 https://github.com/alextselegidis/easyappointments 2 https://github.com/intelliants/subrion 2 https://github.com/torrentpier/torrentpier 2 https://github.com/top-think/thinkphp 2 https://github.com/centreon/centreon 2 https://github.com/zendframework/zendframework 2 https://github.com/Admidio/admidio 2 https://github.com/getgrav/grav 2 https://github.com/cockpit-hq/cockpit 2 https://github.com/Codiad/Codiad 2 https://github.com/swiftmailer/swiftmailer 2 https://github.com/forkcms/library 1 https://github.com/ibexa/solr 1 https://github.com/ibexa/graphql 1 https://github.com/impresspages/ImpressPages 1 https://github.com/francoisjacquet/rosariosis 1 https://github.com/himiklab/yii2-jqgrid-widget 1 https://github.com/Highfivery/zero-spam-for-wordpress 1 https://github.com/FriendsOfTYPO3/mediace 1 https://github.com/hieuminhnv/Zenario-CMS-9.0-last-version 1 https://github.com/hhxsv5/laravel-s 1 https://github.com/h4ckdepy/vuls 1 https://github.com/gongfuxiang/shopxo 1 https://github.com/froxlor/Froxlor 1 https://github.com/gleez/cms 1 https://github.com/getk2/k2 1 https://github.com/fru1ts/CVE-2024-44902 1 https://github.com/catfan/Medoo 1 https://github.com/cakephp/cakephp 1 https://github.com/cachethq/cachet 1 https://github.com/bihor/fp_newsletter 1 https://github.com/bedita/bedita 1 https://github.com/bcosca/fatfree-core 1 https://github.com/bcit-ci/CodeIgniter 1 https://github.com/barrelstrength/craft-sprout-forms 1 https://github.com/bacula-web/bacula-web 1 https://github.com/azuracast/azuracast 1 https://github.com/auth0/wordpress 1 https://github.com/auth0/symfony 1 https://github.com/auth0/laravel-auth0 1 https://github.com/Ariadne-CMS/arc-web 1 https://github.com/appwrite/appwrite 1 https://github.com/anchorcms/anchor-cms 1 https://github.com/akeneo/pim-community-dev 1 https://github.com/flarum/framework 1 https://github.com/flarum/core 1 https://github.com/filamentphp/filament 1 https://github.com/fenom-template/fenom 1 https://github.com/ezsystems/repository-forms 1 https://github.com/ezsystems/ezplatform-solr-search-engine 1 https://github.com/dweeves/magmi-git 1 https://github.com/dota-st/Vulnerability 1 https://github.com/dolibarr/dolibarr 1 https://github.com/doctrine/dbal 1 https://github.com/DBRisinajumi/d2files 1 https://github.com/contao/core 1 https://github.com/concretecms/concretecms 1 https://github.com/Codeception/Codeception 1 https://github.com/chriskacerguis/codeigniter-restserver 1 https://github.com/Chocapikk/CVE-2024-31819 1 https://github.com/CESNET/proxystatistics-simplesamlphp-module 1 https://github.com/TYPO3-Solr/ext-solr 1 https://github.com/TYPO3-CMS/core 1 https://github.com/twothink/twothink 1 https://github.com/ttskch/PaginationServiceProvider 1 https://github.com/top-think/think 1 https://github.com/titon/framework 1 https://github.com/tinymighty/wiki-seo 1 https://github.com/thephpleague/flysystem 1 https://github.com/the-control-group/voyager 1 https://github.com/terminal42/contao-tablelookupwizard 1 https://github.com/symfony/serializer 1 https://github.com/Sylius/SyliusResourceBundle 1 https://github.com/Sylius/SyliusGridBundle 1 https://github.com/spaceraccoon/CVE-2020-10665 1 https://github.com/SocialiteProviders/Steam 1 https://github.com/simplysites/CodeIgniter 1 https://github.com/simogeo/Filemanager 1 https://github.com/sebastianbergmann/phpunit 1 https://github.com/saleem-hadad/larecipe 1 https://github.com/zendframework/zend-xmlrpc 1 https://github.com/zendframework/zend-json 1 https://github.com/zendesk/zendesk_api_client_php 1 https://github.com/YOURLS/YOURLS 1 https://github.com/youncyb/dolibarr-rce 1 https://github.com/yiisoft/yii2 1 https://github.com/YesWiki/yeswiki 1 https://github.com/xpressengine/xpressengine 1 https://github.com/wp-cli/wp-cli 1 https://github.com/WordPress/Requests 1 https://github.com/willdurand/BazingaJsTranslationBundle 1 https://github.com/WebPA/WebPA 1 https://github.com/Webklex/php-imap 1 https://github.com/webbuilders-group/silverstripe-kapost-bridge 1 https://github.com/web-auth/webauthn-framework 1 https://github.com/WangYihang/Codiad-Remote-Code-Execute-Exploit 1 https://github.com/verbb/knock-knock 1 https://github.com/vanilla/safecurl 1 https://github.com/usmanhalalit/pixie 1 https://github.com/sabberworm/PHP-CSS-Parser 1 https://github.com/mgallegos/laravel-jqgrid 1 https://github.com/matyhtf/framework 1 https://github.com/marshmallow-packages/nova-tiptap 1 https://github.com/livewire/volt 1 https://github.com/livewire/livewire 1 https://github.com/lishihihi/voyager-issue-report 1 https://github.com/LimeSurvey/LimeSurvey 1 https://github.com/liftkit/database 1 https://github.com/LavaLite/cms 1 https://github.com/laravel/framework 1 https://github.com/laminas/laminas-http 1 https://github.com/kohana/core 1 https://github.com/kimai/kimai 1 https://github.com/kelvinmo/simplexrd 1 https://github.com/jsmitty12/phpWhois 1 https://github.com/jra89/CVE-2019-19634 1 https://github.com/JCCD/Contao-Managed-Edition-1.5-RCE 1 https://github.com/Jasig/phpCAS 1 https://github.com/Islandora/islandora 1 https://github.com/Rudloff/rtmpdump-bin 1 https://github.com/Rudloff/alltube 1 https://github.com/roundcube/roundcubemail 1 https://github.com/pterodactyl/panel 1 https://github.com/propelorm/Propel2 1 https://github.com/propelorm/Propel 1 https://github.com/plotly/plotly.js 1 https://github.com/pixelfed/pixelfed 1 https://github.com/PHPOffice/PHPWord 1 https://github.com/phpmyadmin/composer 1 https://github.com/paragonie/phpecc 1 https://github.com/pagekit/pagekit 1 https://github.com/orchidsoftware/platform 1 https://github.com/Open-Web-Analytics/Open-Web-Analytics 1 https://github.com/nukeviet/module-shops 1 https://github.com/nonfiction/nterchange_backend 1 https://github.com/nette/latte 1 https://github.com/modxcms/revolution 1