Ecosyste.ms: Advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
Security Advisories
Loading...
Critical
Ecosystems: packagist
Packages: shopxo/shopxo
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: almost 2 years ago
GSA_kwCzR0hTQS14eDc3LXc2cDUteHZtas4AAn1j
ShopXO RCE VulnerabilityEcosystems: packagist
Packages: shopxo/shopxo
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: jc-sha3
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWdmajYtcDI0Zy02aHBt
Malicious Package in jc-sha3Ecosystems: npm
Packages: jc-sha3
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: maven
Packages: fr.turri:aXMLRPC
Source: GitHub Advisory Database
Blast Radius: 14.6
Published: over 1 year ago
GSA_kwCzR0hTQS1nNHI4LTI4ZnAtZjI1Nc4AAwwx
aXMLRPC XML External Entity vulnerabilityEcosystems: maven
Packages: fr.turri:aXMLRPC
Source: GitHub Advisory Database
Blast Radius: 14.6
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: juffer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWdxcTQtOTM3Yy0yMjgy
Malicious Package in juffer-xorEcosystems: npm
Packages: juffer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: almost 2 years ago
GSA_kwCzR0hTQS1wamhmLXZweDMtMzNyM84AAklg
SaltStack Salt Unauthenticated Remote Code ExecutionEcosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: almost 2 years ago
Critical
Ecosystems: cargo
Packages: containers
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWN2N3gtNnJjNi1wcTV2
Double free in containersEcosystems: cargo
Packages: containers
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: over 2 years ago
Critical
Ecosystems: packagist
Packages: drupal/drupal, drupal/core, typo3/phar-stream-wrapper
Source: GitHub Advisory Database
Blast Radius: 36.5
Published: over 2 years ago
GSA_kwCzR0hTQS14djd2LXJmNmcteHdyY80WEA
Directory Traversal in typo3/phar-stream-wrapperEcosystems: packagist
Packages: drupal/drupal, drupal/core, typo3/phar-stream-wrapper
Source: GitHub Advisory Database
Blast Radius: 36.5
Published: over 2 years ago
Critical
Ecosystems: packagist
Packages: drupal/drupal, drupal/core
Source: GitHub Advisory Database
Blast Radius: 36.5
Published: about 2 years ago
GSA_kwCzR0hTQS05YzI0LWczMmctMzVyas4AAWPD
Drupal PECL YAML parser unsafe object handlingEcosystems: packagist
Packages: drupal/drupal, drupal/core
Source: GitHub Advisory Database
Blast Radius: 36.5
Published: about 2 years ago
Critical
Ecosystems: cargo
Packages: nanorand
Source: GitHub Advisory Database
Blast Radius: 34.3
Published: over 2 years ago
GSA_kwCzR0hTQS1yNTdyLWo5OGctNTg3Zs0fig
Pointer dereference in nanorandEcosystems: cargo
Packages: nanorand
Source: GitHub Advisory Database
Blast Radius: 34.3
Published: over 2 years ago
Critical
Ecosystems: npm
Packages: ses
Source: GitHub Advisory Database
Blast Radius: 37.5
Published: 9 months ago
GSA_kwCzR0hTQS05YzRoLTNmN2gtMzIycs4AA1Lc
SES's dynamic import and spread operator provides possible path to arbitrary exfiltration and executionEcosystems: npm
Packages: ses
Source: GitHub Advisory Database
Blast Radius: 37.5
Published: 9 months ago
Critical
Ecosystems: pypi
Packages: python-keystoneclient
Source: GitHub Advisory Database
Blast Radius: 34.3
Published: over 2 years ago
GSA_kwCzR0hTQS1jM3hxLWNqOGYtNzgyOc0WdQ
Inadequate Encryption Strength in python-keystoneclientEcosystems: pypi
Packages: python-keystoneclient
Source: GitHub Advisory Database
Blast Radius: 34.3
Published: over 2 years ago
Critical
Ecosystems: maven
Packages: org.odata4j:odata4j-parent, org.odata4j:odata4j-dist, org.odata4j:odata4j-core
Source: GitHub Advisory Database
Blast Radius: 17.6
Published: about 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWY5NmctMjRjZy1mMjR3
SQL Injection in odata4jEcosystems: maven
Packages: org.odata4j:odata4j-parent, org.odata4j:odata4j-dist, org.odata4j:odata4j-core
Source: GitHub Advisory Database
Blast Radius: 17.6
Published: about 3 years ago
Critical
Ecosystems: maven
Packages: org.odata4j:odata4j-parent, org.odata4j:odata4j-dist, org.odata4j:odata4j-core
Source: GitHub Advisory Database
Blast Radius: 17.6
Published: about 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTIzODItcXg1aC1ydnFo
SQL Injection in odata4jEcosystems: maven
Packages: org.odata4j:odata4j-parent, org.odata4j:odata4j-dist, org.odata4j:odata4j-core
Source: GitHub Advisory Database
Blast Radius: 17.6
Published: about 3 years ago
Critical
Ecosystems: rubygems
Packages: jmespath
Source: GitHub Advisory Database
Blast Radius: 44.7
Published: almost 2 years ago
GSA_kwCzR0hTQS01YzVmLTd2ZnEtMzczMs4AArZl
JMESPath for Ruby uses unsafe JSON.load when safe JSON.parse is preferableEcosystems: rubygems
Packages: jmespath
Source: GitHub Advisory Database
Blast Radius: 44.7
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: tenvoy
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTV3MjUtaHhwNS1oOGM5
Improper Verification of Cryptographic SignatureEcosystems: npm
Packages: tenvoy
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 3 years ago
Critical
Ecosystems: npm
Packages: bwffer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTdxZzctNmczZy04dnhn
Malicious Package in bwffer-xorEcosystems: npm
Packages: bwffer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: arr-flatten-unflatten
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXc4ZjMtcHZ4NC00YzNo
Prototype Pollution in arr-flatten-unflattenEcosystems: npm
Packages: arr-flatten-unflatten
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 3 years ago
Critical
Ecosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: about 2 years ago
GSA_kwCzR0hTQS14NTQ5LXI3bTgtZ3Y2M84AAQNo
SaltStack Salt Remote command execution and incorrect access control when using salt-apiEcosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: about 2 years ago
Critical
Ecosystems: npm
Packages: @tomphttp/bare-server-node
Source: GitHub Advisory Database
Blast Radius: 26.2
Published: 2 months ago
GSA_kwCzR0hTQS04NmZjLWY5Z3ItdjUzM84AA5xc
HTTP Handling Vulnerability in the Bare serverEcosystems: npm
Packages: @tomphttp/bare-server-node
Source: GitHub Advisory Database
Blast Radius: 26.2
Published: 2 months ago
Critical
Ecosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: almost 2 years ago
GSA_kwCzR0hTQS0yOWozLTI0NDYtNWo0d84AAmhY
SaltStack Salt Improper Validation of eauth credentials and tokens in salt-netapiEcosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: reqest
Source: GitHub Advisory Database
Blast Radius: 11.8
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhnNXEtcmo2Mi1jNDNn
Malicious Package in reqestEcosystems: npm
Packages: reqest
Source: GitHub Advisory Database
Blast Radius: 11.8
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: bb-builder
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXZtNnYtdzZxMi1tcnJx
Malicious Package in bb-builderEcosystems: npm
Packages: bb-builder
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: go
Packages: github.com/liamg/gitjacker
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: almost 2 years ago
GSA_kwCzR0hTQS00ajV4LWYzOTQteHg3Oc4AArAh
gitjacker arbitrary code executionEcosystems: go
Packages: github.com/liamg/gitjacker
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: almost 2 years ago
Critical
Ecosystems: go
Packages: github.com/gorilla/handlers
Source: GitHub Advisory Database
Blast Radius: 44.0
Published: over 1 year ago
GSA_kwCzR0hTQS1qY3I2LW1tamotcGNod84AAwoZ
gorilla/handlers may allow requester to bypass expected behavior of the Same Origin PolicyEcosystems: go
Packages: github.com/gorilla/handlers
Source: GitHub Advisory Database
Blast Radius: 44.0
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: bugfer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLThnNjQtOWNtMi04Mzhq
Malicious Package in bugfer-xorEcosystems: npm
Packages: bugfer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: bufver-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWNyNHgtdzJ2Ny00bW1m
Malicious Package in bufver-xorEcosystems: npm
Packages: bufver-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: buffmr-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXd2MzktY2dtbS1jcTI5
Malicious Package in buffmr-xorEcosystems: npm
Packages: buffmr-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: packagist
Packages: dolibarr/dolibarr
Source: GitHub Advisory Database
Blast Radius: 7.6
Published: almost 2 years ago
GSA_kwCzR0hTQS12eHI5LXAyeHctbThjZs4AAqpz
Dolibarr remote PHP code executionEcosystems: packagist
Packages: dolibarr/dolibarr
Source: GitHub Advisory Database
Blast Radius: 7.6
Published: almost 2 years ago
Critical
Ecosystems: packagist
Packages: spoonity/tcpdf, la-haute-societe/tcpdf, fooman/tcpdf, tecnickcom/tcpdf
Source: GitHub Advisory Database
Blast Radius: 36.9
Published: over 1 year ago
GSA_kwCzR0hTQS01aHc0LW03ZjMtaGh4OM4AAvLl
TCPDF vulnerable to attackers triggering deserialization of arbitrary dataEcosystems: packagist
Packages: spoonity/tcpdf, la-haute-societe/tcpdf, fooman/tcpdf, tecnickcom/tcpdf
Source: GitHub Advisory Database
Blast Radius: 36.9
Published: over 1 year ago
Critical
Ecosystems: maven
Packages: org.apache.activemq:apollo-project
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 2 years ago
GSA_kwCzR0hTQS13bWh3LWhwd2gtNDRwZ84AATvP
Apache ActiveMQ Apollo XXE VulnerabilityEcosystems: maven
Packages: org.apache.activemq:apollo-project
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 2 years ago
Critical
Ecosystems: npm
Packages: tenvoy
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTdyOTYtOGczeC1nMzZt
Improper Verification of Cryptographic SignatureEcosystems: npm
Packages: tenvoy
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 3 years ago
Critical
Ecosystems: cargo
Packages: slice-deque
Source: GitHub Advisory Database
Blast Radius: 29.5
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhyM2MtNm1tcC02bTM5
Memory corruption slice-dequeEcosystems: cargo
Packages: slice-deque
Source: GitHub Advisory Database
Blast Radius: 29.5
Published: over 2 years ago
Critical
Ecosystems: rubygems
Packages: cgi
Source: GitHub Advisory Database
Blast Radius: 26.4
Published: over 2 years ago
GSA_kwCzR0hTQS01Y3FtLWNyeG0tNnFwds0bSA
Buffer overrun in CGI.escape_htmlEcosystems: rubygems
Packages: cgi
Source: GitHub Advisory Database
Blast Radius: 26.4
Published: over 2 years ago
Critical
Ecosystems: pypi
Packages: rdiffweb
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 1 year ago
GSA_kwCzR0hTQS1tOHI5LXF4eDgtbXJ4cM4AAwnn
rdiffweb Improper Access Control vulnerabilityEcosystems: pypi
Packages: rdiffweb
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: gh-pages
Source: GitHub Advisory Database
Blast Radius: 53.7
Published: over 1 year ago
GSA_kwCzR0hTQS04bW1tLTl2MnEteDNmOc4AAvPk
tschaub gh-pages vulnerable to prototype pollutionEcosystems: npm
Packages: gh-pages
Source: GitHub Advisory Database
Blast Radius: 53.7
Published: over 1 year ago
Critical
Ecosystems: maven
Packages: org.apache.geode:geode-core
Source: GitHub Advisory Database
Blast Radius: 25.1
Published: over 1 year ago
GSA_kwCzR0hTQS1xNHEzLXI0NWYtN2d3Z84AAukq
Apache Geode vulnerable to Deserialization of Untrusted DataEcosystems: maven
Packages: org.apache.geode:geode-core
Source: GitHub Advisory Database
Blast Radius: 25.1
Published: over 1 year ago
Critical
Ecosystems: maven
Packages: org.apache.camel:camel-ldap
Source: GitHub Advisory Database
Blast Radius: 22.5
Published: over 1 year ago
GSA_kwCzR0hTQS13NjZqLXhjN3ItbTJqds4AAwJR
camel-ldap component allows LDAP Injection when using the filter optionEcosystems: maven
Packages: org.apache.camel:camel-ldap
Source: GitHub Advisory Database
Blast Radius: 22.5
Published: over 1 year ago
Critical
Ecosystems: go
Packages: github.com/git-lfs/git-lfs, github.com/git-lfs/git-lfs/v3
Source: GitHub Advisory Database
Blast Radius: 13.9
Published: about 2 years ago
GSA_kwCzR0hTQS02cnczLTN3aHctanZqas0_mw
Git LFS can execute a binary from the current directory on WindowsEcosystems: go
Packages: github.com/git-lfs/git-lfs, github.com/git-lfs/git-lfs/v3
Source: GitHub Advisory Database
Blast Radius: 13.9
Published: about 2 years ago
Critical
Ecosystems: packagist
Packages: topthink/framework
Source: GitHub Advisory Database
Blast Radius: 34.4
Published: about 2 years ago
GSA_kwCzR0hTQS1qN2c4LTNxcWctOGN2bc4AAUrm
ThinkPHP SQLi VulnerabilityEcosystems: packagist
Packages: topthink/framework
Source: GitHub Advisory Database
Blast Radius: 34.4
Published: about 2 years ago
Critical
Ecosystems: maven
Packages: org.apache.nifi:nifi
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 2 years ago
GSA_kwCzR0hTQS0yOXBoLWZqZjMtYzVjbc4AAXbk
Apache NiFi XSS issue in context path handlingEcosystems: maven
Packages: org.apache.nifi:nifi
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 2 years ago
Critical
Ecosystems: npm
Packages: tree-kill
Source: GitHub Advisory Database
Blast Radius: 59.1
Published: almost 2 years ago
GSA_kwCzR0hTQS1qN2ZxLXA5cTctNXdmds4AAjAY
Treekill Enables OS Command InjectionEcosystems: npm
Packages: tree-kill
Source: GitHub Advisory Database
Blast Radius: 59.1
Published: almost 2 years ago
Critical
Ecosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: almost 2 years ago
GSA_kwCzR0hTQS1naGMyLWh4M3ctanFtcM4AAnsb
SaltStack Salt command injection in the Salt-API when using the Salt-SSH clientEcosystems: pypi
Packages: salt
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: buffer-xos
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWgyajMtZ2c4dy00ODU4
Malicious Package in buffer-xosEcosystems: npm
Packages: buffer-xos
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: buffer-xo2
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWY3Mmgtd2Y1Ny03eHdo
Malicious Package in buffer-xo2Ecosystems: npm
Packages: buffer-xo2
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: linux-cmdline
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
GSA_kwCzR0hTQS0yYzI5LXdjNjUtNGN4Oc4AAlq3
linux-cmdline is vulnerable to Prototype Pollution via the constructorEcosystems: npm
Packages: linux-cmdline
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Critical
Ecosystems: cargo
Packages: grep-cli, ripgrep
Source: GitHub Advisory Database
Blast Radius: 22.4
Published: almost 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWc0eGctZnhtZy12Y2c1
OS command injection in ripgrepEcosystems: cargo
Packages: grep-cli, ripgrep
Source: GitHub Advisory Database
Blast Radius: 22.4
Published: almost 3 years ago
Critical
Ecosystems: npm
Packages: mogobd
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWpjaGctZzk0ci02NHFn
Malicious Package in mogobdEcosystems: npm
Packages: mogobd
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: packagist
Packages: knplabs/knp-snappy
Source: GitHub Advisory Database
Blast Radius: 32.6
Published: about 1 year ago
GSA_kwCzR0hTQS1ncTZ3LXE2d2gtamdnY84AAyLG
PHAR deserialization allowing remote code executionEcosystems: packagist
Packages: knplabs/knp-snappy
Source: GitHub Advisory Database
Blast Radius: 32.6
Published: about 1 year ago
Critical
Ecosystems: npm
Packages: steal
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: over 1 year ago
GSA_kwCzR0hTQS04ZjhnLTlqNzMtN3A4Ms4AAu0C
steal vulnerable to Prototype Pollution via optionName variableEcosystems: npm
Packages: steal
Source: GitHub Advisory Database
Blast Radius: 25.8
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: node-rules
Source: GitHub Advisory Database
Blast Radius: 16.2
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWY3OGYtMzUzbS1jZjRq
Code Injection in node-rulesEcosystems: npm
Packages: node-rules
Source: GitHub Advisory Database
Blast Radius: 16.2
Published: over 2 years ago
Critical
Ecosystems: npm
Packages: safe-obj
Source: GitHub Advisory Database
Blast Radius: 15.6
Published: almost 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdwZ2gtaG12NC1yM3Y1
Prototype pollution in safe-objEcosystems: npm
Packages: safe-obj
Source: GitHub Advisory Database
Blast Radius: 15.6
Published: almost 3 years ago
Critical
Ecosystems: maven
Packages: org.apache.karaf:apache-karaf
Source: GitHub Advisory Database
Blast Radius: 30.4
Published: over 1 year ago
GSA_kwCzR0hTQS1jMnA0LThtdnYtcndtds4AAwel
Apache Karaf vulnerable to potential code injectionEcosystems: maven
Packages: org.apache.karaf:apache-karaf
Source: GitHub Advisory Database
Blast Radius: 30.4
Published: over 1 year ago
Critical
Ecosystems: packagist
Packages: elefant/cms
Source: GitHub Advisory Database
Blast Radius: 5.9
Published: about 2 years ago
GSA_kwCzR0hTQS14MncyLXFndjYtOHhybc39cw
Elefant CMS PHP Code Execution VulnerabilityEcosystems: packagist
Packages: elefant/cms
Source: GitHub Advisory Database
Blast Radius: 5.9
Published: about 2 years ago
Critical
Ecosystems: packagist
Packages: zendframework/zend-mail
Source: GitHub Advisory Database
Blast Radius: 33.7
Published: about 2 years ago
GSA_kwCzR0hTQS1yOW13LWd3eDktdjNoNc4AAVU6
zend-mail remote code execution via Sendmail adapterEcosystems: packagist
Packages: zendframework/zend-mail
Source: GitHub Advisory Database
Blast Radius: 33.7
Published: about 2 years ago
Critical
Ecosystems: go
Packages: github.com/heroiclabs/nakama/v3
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
GSA_kwCzR0hTQS04cjk0LTRoM2MtOTM5Zs4AAtHO
Improper Restriction of Excessive Authentication AttemptsEcosystems: go
Packages: github.com/heroiclabs/nakama/v3
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: almost 2 years ago
Critical
Ecosystems: cargo
Packages: mopa
Source: GitHub Advisory Database
Blast Radius: 27.3
Published: over 2 years ago
GSA_kwCzR0hTQS0yZ3hqLXFycDItNTNqds0flA
Incorrect reliance on Trait memory layout in mopaEcosystems: cargo
Packages: mopa
Source: GitHub Advisory Database
Blast Radius: 27.3
Published: over 2 years ago
Critical
Ecosystems: go
Packages: github.com/open-falcon/falcon-plus
Source: GitHub Advisory Database
Blast Radius: 3.0
Published: about 2 years ago
GSA_kwCzR0hTQS03Nmo0LWdnZ3EtN3JnOc02HQ
SQLinjection in falcon-plusEcosystems: go
Packages: github.com/open-falcon/falcon-plus
Source: GitHub Advisory Database
Blast Radius: 3.0
Published: about 2 years ago
Critical
Ecosystems: npm
Packages: jr-sha3
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTY3bXAtcGN2OS12dnE2
Malicious Package in jr-sha3Ecosystems: npm
Packages: jr-sha3
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: rrgod
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTI3N3AteHdwcC0zamY3
Malicious Package in rrgodEcosystems: npm
Packages: rrgod
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: json-serializer
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTd4ZnEteGg2di00bXJt
Malicious Package in json-serializerEcosystems: npm
Packages: json-serializer
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: cargo
Packages: xcb
Source: GitHub Advisory Database
Blast Radius: 32.6
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTMyODgtY3dndy1jaDg2
Unchecked Return Value in xcbEcosystems: cargo
Packages: xcb
Source: GitHub Advisory Database
Blast Radius: 32.6
Published: over 2 years ago
Critical
Ecosystems: maven
Packages: io.vertx:vertx-web
Source: GitHub Advisory Database
Blast Radius: 37.5
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXZqdzctNmdmcS02d2Y1
Path Traversal in Eclipse VertEcosystems: maven
Packages: io.vertx:vertx-web
Source: GitHub Advisory Database
Blast Radius: 37.5
Published: over 2 years ago
Critical
Ecosystems: maven
Packages: org.apache.hadoop:hadoop-yarn-server-nodemanager
Source: GitHub Advisory Database
Blast Radius: 32.4
Published: about 2 years ago
GSA_kwCzR0hTQS04OTVtLXd3NTUtNTl2d84AAZNT
Exposure of Sensitive Information to an Unauthorized Actor in Apache HadoopEcosystems: maven
Packages: org.apache.hadoop:hadoop-yarn-server-nodemanager
Source: GitHub Advisory Database
Blast Radius: 32.4
Published: about 2 years ago
Critical
Ecosystems: cargo
Packages: xcb
Source: GitHub Advisory Database
Blast Radius: 32.6
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW1wNnItZmd3Mi1yeGZ4
Arbitrary return types in xcbEcosystems: cargo
Packages: xcb
Source: GitHub Advisory Database
Blast Radius: 32.6
Published: over 2 years ago
Critical
Ecosystems: packagist
Packages: topthink/framework
Source: GitHub Advisory Database
Blast Radius: 34.4
Published: over 1 year ago
GSA_kwCzR0hTQS1xampqLTdnN2gtNTR2M84AAu09
ThinkPHP deserialization vulnerabilityEcosystems: packagist
Packages: topthink/framework
Source: GitHub Advisory Database
Blast Radius: 34.4
Published: over 1 year ago
Critical
Ecosystems: maven
Packages: org.apache.shiro:shiro-core
Source: GitHub Advisory Database
Blast Radius: 41.9
Published: almost 2 years ago
GSA_kwCzR0hTQS00Y2Y1LXhtaHAtM3hqN84AAtCe
Improper Authorization in Apache ShiroEcosystems: maven
Packages: org.apache.shiro:shiro-core
Source: GitHub Advisory Database
Blast Radius: 41.9
Published: almost 2 years ago
Critical
Ecosystems: pypi
Packages: jsonpickle
Source: GitHub Advisory Database
Blast Radius: 38.9
Published: almost 2 years ago
GSA_kwCzR0hTQS1qNjZxLXFtcmMtODlyeM4AAm7X
jsonpickle unsafe deserializationEcosystems: pypi
Packages: jsonpickle
Source: GitHub Advisory Database
Blast Radius: 38.9
Published: almost 2 years ago
Critical
Ecosystems: packagist
Packages: phpoffice/common
Source: GitHub Advisory Database
Blast Radius: 29.4
Published: about 2 years ago
GSA_kwCzR0hTQS0yODUzLWhmMmctOTg0M84AAWTf
PHPOffice Common Improper Restriction of XML External Entity ReferenceEcosystems: packagist
Packages: phpoffice/common
Source: GitHub Advisory Database
Blast Radius: 29.4
Published: about 2 years ago
Critical
Ecosystems: npm
Packages: minimist
Source: GitHub Advisory Database
Blast Radius: 61.8
Published: about 2 years ago
GSA_kwCzR0hTQS14dmNoLTVndjQtOTg0aM0z6A
Prototype Pollution in minimistEcosystems: npm
Packages: minimist
Source: GitHub Advisory Database
Blast Radius: 61.8
Published: about 2 years ago
Critical
Ecosystems: maven
Packages: org.apache.jena:jena-sdb
Source: GitHub Advisory Database
Blast Radius: 18.1
Published: over 1 year ago
GSA_kwCzR0hTQS1nMnF3LTZ2cnItdjZwcc4AAv2u
Apache Jena vulnerable to Deserialization of Untrusted DataEcosystems: maven
Packages: org.apache.jena:jena-sdb
Source: GitHub Advisory Database
Blast Radius: 18.1
Published: over 1 year ago
Critical
Ecosystems: packagist
Packages: zoujingli/thinkadmin
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: almost 2 years ago
GSA_kwCzR0hTQS00dnAyLW1qNG0tNjltNM4AAnMZ
ThinkAdmin insecure unserialize vulnerabilityEcosystems: packagist
Packages: zoujingli/thinkadmin
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: curljs
Source: GitHub Advisory Database
Blast Radius: 6.8
Published: almost 2 years ago
GSA_kwCzR0hTQS1jcWZjLTk0NTItcjM2as4AAtxy
curljs Command Injection vulnerabilityEcosystems: npm
Packages: curljs
Source: GitHub Advisory Database
Blast Radius: 6.8
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: nodebb
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 1 year ago
GSA_kwCzR0hTQS1wNGNjLXc1OTctNmNwbc4AAui1
Cryptographically weak PRNG in `utils.generateUUID`Ecosystems: npm
Packages: nodebb
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: require-port
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJydm0tZ3FxOC1xMnd4
Malicious Package in require-portEcosystems: npm
Packages: require-port
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: maven
Packages: com.jflyfox:jflyfox_jfinal
Source: GitHub Advisory Database
Blast Radius: 3.0
Published: over 1 year ago
GSA_kwCzR0hTQS01cmY0LWYyNGMtaHB2aM4AAuZt
SQL injection in jflyfox jfinalEcosystems: maven
Packages: com.jflyfox:jflyfox_jfinal
Source: GitHub Advisory Database
Blast Radius: 3.0
Published: over 1 year ago
Critical
Ecosystems: cargo
Packages: telemetry
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhwY3gtM3B3OC1nM2oy
Free of uninitialized memory in telemetryEcosystems: cargo
Packages: telemetry
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 2 years ago
Critical
Ecosystems: npm
Packages: buffer-xkr
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJ3NTMtcTh4Ny1jY3g4
Malicious Package in buffer-xkrEcosystems: npm
Packages: buffer-xkr
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: buffdr-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTg1NDktcDY4aC1tOW1j
Malicious Package in buffdr-xorEcosystems: npm
Packages: buffdr-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: buffar-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWY2NGctd2h4Zi13OGYy
Malicious Package in buffar-xorEcosystems: npm
Packages: buffar-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: packagist
Packages: tribalsystems/zenario
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 2 years ago
GSA_kwCzR0hTQS1yZ2czLTN3aDctdzkzNc0ypw
Unrestricted Upload of File with Dangerous Type in Zenario CMSEcosystems: packagist
Packages: tribalsystems/zenario
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 2 years ago
Critical
Ecosystems: pypi
Packages: apache-airflow-providers-google
Source: GitHub Advisory Database
Blast Radius: 25.2
Published: about 1 year ago
GSA_kwCzR0hTQS04ZzIzLTJxNXAtODg2Ns4AAxzQ
Apache Airflow Google Provider Improper Input Validation vulnerabilityEcosystems: pypi
Packages: apache-airflow-providers-google
Source: GitHub Advisory Database
Blast Radius: 25.2
Published: about 1 year ago
Critical
Ecosystems: go
Packages: github.com/hashicorp/nomad
Source: GitHub Advisory Database
Blast Radius: 22.7
Published: almost 2 years ago
GSA_kwCzR0hTQS01MjZ4LXJtN2otdjM4Oc4AArXl
Privilege escalation in Hashicorp NomadEcosystems: go
Packages: github.com/hashicorp/nomad
Source: GitHub Advisory Database
Blast Radius: 22.7
Published: almost 2 years ago
High
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: over 2 years ago
GSA_kwCzR0hTQS1wNDloLWhqdm0tamczaM0W2w
PCX P mode buffer overflow in PillowEcosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: over 2 years ago
Critical
Ecosystems: cargo
Packages: crossbeam-deque
Source: GitHub Advisory Database
Blast Radius: 44.3
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBxcXAteG1oai13Z2N3
crossbeam-deque Data Race before v0.7.4 and v0.8.1Ecosystems: cargo
Packages: crossbeam-deque
Source: GitHub Advisory Database
Blast Radius: 44.3
Published: over 2 years ago
Critical
Ecosystems: cargo
Packages: http
Source: GitHub Advisory Database
Blast Radius: 45.4
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTZyaHgtaHF4bS04cDM2
Double free in httpEcosystems: cargo
Packages: http
Source: GitHub Advisory Database
Blast Radius: 45.4
Published: over 2 years ago
Critical
Ecosystems: npm
Packages: vagrant.js
Source: GitHub Advisory Database
Blast Radius: 3.0
Published: over 1 year ago
GSA_kwCzR0hTQS01NGp3LWpxcjktNmNqOc4AAxM2
Command injection in vagrant.jsEcosystems: npm
Packages: vagrant.js
Source: GitHub Advisory Database
Blast Radius: 3.0
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: react-datepicker-plus
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTR3Y3gtYzljNC04OXAy
Malicious Package in react-datepicker-plusEcosystems: npm
Packages: react-datepicker-plus
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: maven
Packages: com.itextpdf:itextpdf, com.itextpdf:itext7-core
Source: GitHub Advisory Database
Blast Radius: 38.2
Published: over 2 years ago
GSA_kwCzR0hTQS1ndjg3LXE2NmgtNDI3N80ckg
Command injection in itext7-coreEcosystems: maven
Packages: com.itextpdf:itextpdf, com.itextpdf:itext7-core
Source: GitHub Advisory Database
Blast Radius: 38.2
Published: over 2 years ago
Critical
Ecosystems: npm
Packages: bubfer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXZtNjctbWg5Ni05NW1x
Malicious Package in bubfer-xorEcosystems: npm
Packages: bubfer-xor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: npm
Packages: closure-compiler-stream
Source: GitHub Advisory Database
Blast Radius: 13.7
Published: about 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW02NDctNXdmOS0zanAz
OS Command Injection in closure-compiler-streamEcosystems: npm
Packages: closure-compiler-stream
Source: GitHub Advisory Database
Blast Radius: 13.7
Published: about 3 years ago
Critical
Ecosystems: maven
Packages: org.apache.ddlutils:ddlutils
Source: GitHub Advisory Database
Blast Radius: 22.1
Published: over 2 years ago
GSA_kwCzR0hTQS05Mzc4LWY0djctamdtNM0WFw
Deserialization of Untrusted Data in org.apache.ddlutils:ddlutilsEcosystems: maven
Packages: org.apache.ddlutils:ddlutils
Source: GitHub Advisory Database
Blast Radius: 22.1
Published: over 2 years ago
Critical
Ecosystems: pypi
Packages: apache-airflow
Source: GitHub Advisory Database
Blast Radius: 31.3
Published: over 1 year ago
GSA_kwCzR0hTQS03d3FmLWgzNnctNDdtY84AAwAE
OS Command Injection in Apache AirflowEcosystems: pypi
Packages: apache-airflow
Source: GitHub Advisory Database
Blast Radius: 31.3
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: buffer-yor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWcyYzQtNG02NC12eG0z
Malicious Package in buffer-yorEcosystems: npm
Packages: buffer-yor
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 3 years ago
Critical
Ecosystems: pypi
Packages: llama-index
Source: GitHub Advisory Database
Blast Radius: 31.0
Published: 9 months ago
GSA_kwCzR0hTQS0yeHhjLTczZnYtMzZmN84AA1UC
llama-index vulnerable to arbitrary code executionEcosystems: pypi
Packages: llama-index
Source: GitHub Advisory Database
Blast Radius: 31.0
Published: 9 months ago
Critical
Ecosystems: maven
Packages: org.apache.opennlp:opennlp-tools
Source: GitHub Advisory Database
Blast Radius: 30.6
Published: about 2 years ago
GSA_kwCzR0hTQS1oMjJ4LWhtOGctcnhwZ84AAYT8
Improper Restriction of XML External Entity Reference in Apache OpenNLPEcosystems: maven
Packages: org.apache.opennlp:opennlp-tools
Source: GitHub Advisory Database
Blast Radius: 30.6
Published: about 2 years ago
Critical
Ecosystems: maven
Packages: org.apache.flume.flume-ng-sources:flume-jms-source
Source: GitHub Advisory Database
Blast Radius: 20.5
Published: over 1 year ago
GSA_kwCzR0hTQS1oOW1oLW1ncHYtZ3Ftds4AAuXO
Remote code execution in Apache FlumeEcosystems: maven
Packages: org.apache.flume.flume-ng-sources:flume-jms-source
Source: GitHub Advisory Database
Blast Radius: 20.5
Published: over 1 year ago
Critical
Ecosystems: npm
Packages: browserify-shim
Source: GitHub Advisory Database
Blast Radius: 40.4
Published: over 1 year ago
GSA_kwCzR0hTQS1yNzM3LTM0N20td3FjN84AAvlu
thlorenz browserify-shim vulnerable to prototype pollutionEcosystems: npm
Packages: browserify-shim
Source: GitHub Advisory Database
Blast Radius: 40.4
Published: over 1 year ago
Critical
Ecosystems: maven
Packages: org.richfaces:richfaces-core
Source: GitHub Advisory Database
Blast Radius: 14.0
Published: about 2 years ago
GSA_kwCzR0hTQS00ajM4LXdqaGYtODg0cs384Q
Arbitrary code execution in RichfacesEcosystems: maven
Packages: org.richfaces:richfaces-core
Source: GitHub Advisory Database
Blast Radius: 14.0
Published: about 2 years ago
Critical
Ecosystems: npm
Packages: browserify-shim
Source: GitHub Advisory Database
Blast Radius: 40.4
Published: over 1 year ago
GSA_kwCzR0hTQS1jZmdyLTc1angtaDg4Z84AAvmz
thlorenz browserify-shim vulnerable to prototype pollutionEcosystems: npm
Packages: browserify-shim
Source: GitHub Advisory Database
Blast Radius: 40.4
Published: over 1 year ago
Critical
Ecosystems: packagist
Packages: drupal/core, drupal/drupal
Source: GitHub Advisory Database
Blast Radius: 36.5
Published: over 2 years ago
GSA_kwCzR0hTQS04Y3c1LXJ2OTgtNWM0Ns0g-A
Arbitrary PHP code execution in DrupalEcosystems: packagist
Packages: drupal/core, drupal/drupal
Source: GitHub Advisory Database
Blast Radius: 36.5
Published: over 2 years ago
Statistics
Advisories: 18,774
Packages: 8,381
Repositories: 5,080
Ecosystems: 12
Packages: 8,381
Repositories: 5,080
Ecosystems: 12
Filter by Severity
Filter by Ecosystem
Filter by Package
tensorflow
432
tensorflow-cpu
387
tensorflow-gpu
384
moodle/moodle
323
Microsoft.ChakraCore
247
magento/community-edition
203
org.jenkins-ci.main:jenkins-core
189
org.apache.tomcat:tomcat
134
pimcore/pimcore
116
dolibarr/dolibarr
107
typo3/cms
102
phpmyadmin/phpmyadmin
92
microweber/microweber
91
drupal/core
90
django
80
apache-airflow
78
typo3/cms-core
77
drupal/drupal
75
thorsten/phpmyfaq
70
com.fasterxml.jackson.core:jackson-databind
69
ansible
63
github.com/usememos/memos
59
actionpack
57
org.apache.struts:struts2-core
55
librenms/librenms
54
symfony/symfony
53
salt
53
Plone
52
concrete5/concrete5
52
apache-superset
49
shopware/platform
48
org.keycloak:keycloak-core
47
nova
45
com.liferay.portal:release.portal.bom
45
github.com/grafana/grafana
44
baserproject/basercms
43
nokogiri
43
plone
43
rdiffweb
42
Pillow
41
intelliants/subrion
40
showdoc/showdoc
40
craftcms/cms
40
vyper
38
github.com/mattermost/mattermost/server/v8
38
github.com/mattermost/mattermost-server/v6
37
nilsteampassnet/teampass
37
froxlor/froxlor
37
org.apache.tomcat.embed:tomcat-embed-core
36
shopware/core
36
com.jfinal:jfinal
36
com.thoughtworks.xstream:xstream
36
matrix-synapse
35
net.mingsoft:ms-mcms
35
moin
34
github.com/answerdev/answer
34
org.xwiki.platform:xwiki-platform-oldcore
34
mlflow
33
org.elasticsearch:elasticsearch
32
org.jenkins-ci.plugins:script-security
32
snipe/snipe-it
32
silverstripe/framework
32
k8s.io/kubernetes
32
keystone
30
opencv-contrib-python
30
opencv-python
30
mautic/core
30
Django
30
github.com/argoproj/argo-cd
29
getgrav/grav
29
parse-server
29
github.com/rancher/rancher
28
github.com/hashicorp/vault
28
centreon/centreon
27
io.undertow:undertow-core
27
org.keycloak:keycloak-services
27
shopware/shopware
27
github.com/hashicorp/nomad
26
prestashop/prestashop
26
github.com/hashicorp/consul
26
openssl-src
26
electron
26
rubygems-update
25
org.keycloak:keycloak-parent
25
org.apache.solr:solr-core
25
gogs.io/gogs
24
magento/core
24
pocketmine/pocketmine-mp
23
puppet
23
org.springframework.security:spring-security-core
23
github.com/argoproj/argo-cd/v2
23
remdex/livehelperchat
23
mediawiki/core
23
org.eclipse.jetty:jetty-server
23
ckb
22
grumpydictator/firefly-iii
22
getkirby/cms
22
org.bouncycastle:bcprov-jdk14
22
org.apache.nifi:nifi
22
rack
22
org.apache.openmeetings:openmeetings-parent
21
@openzeppelin/contracts-upgradeable
21
contao/core-bundle
21
activerecord
21
github.com/docker/docker
20
@openzeppelin/contracts
20
org.cloudfoundry.identity:cloudfoundry-identity-server
20
github.com/cilium/cilium
20
github.com/ethereum/go-ethereum
20
tribalsystems/zenario
20
DotNetNuke.Core
19
code.gitea.io/gitea
19
laravel/framework
19
org.springframework:spring-core
19
Microsoft.AspNetCore.App.Runtime.win-x64
18
com.vaadin:vaadin-bom
18
Microsoft.AspNetCore.App.Runtime.win-x86
18
langchain
18
com.liferay.portal:release.dxp.bom
18
forkcms/forkcms
18
glance
18
directus
18
contao/contao
18
helm.sh/helm/v3
18
cockpit-hq/cockpit
18
simplesamlphp/simplesamlphp
18
org.apache.geode:geode-core
17
topthink/framework
17
Microsoft.AspNetCore.App.Runtime.win-arm
17
cobbler
17
genix/cms
17
symfony/security
17
org.xwiki.platform:xwiki-platform-web-templates
17
golang.org/x/net
17
francoisjacquet/rosariosis
17
PaddlePaddle
17
cakephp/cakephp
17
mercurial
17
ezsystems/ezpublish-kernel
17
Microsoft.AspNetCore.App.Runtime.osx-x64
16
org.apache.dubbo:dubbo
16
wasmtime
16
org.apache.activemq:activemq-client
16
rusqlite
16
Microsoft.AspNetCore.App.Runtime.linux-x64
16
Microsoft.AspNetCore.App.Runtime.linux-musl-x64
16
Microsoft.AspNetCore.App.Runtime.linux-arm
16
neutron
16
Microsoft.AspNetCore.App.Runtime.linux-arm64
16
sequelize
16
yetiforce/yetiforce-crm
16
org.bouncycastle:bcprov-jdk15
16
pillow
16
notebook
15
org.apache.jspwiki:jspwiki-main
15
openmage/magento-lts
15
paddlepaddle
15
next
15
github.com/goharbor/harbor
15
Microsoft.AspNetCore.App.Runtime.win-arm64
15
gradio
15
Microsoft.AspNetCore.App.Runtime.linux-musl-arm64
15
cryptography
15
org.apache.struts.xwork:xwork-core
15
org.xwiki.platform:xwiki-platform-web
14
activesupport
14
zendframework/zendframework1
14
ghost
14
ec-cube/ec-cube
14
symfony/security-http
14
smarty/smarty
14
phpmailer/phpmailer
14
tinymce
14
pyload-ng
14
github.com/containerd/containerd
14
publify_core
14
swagger-ui
14
modoboa
14
org.apache.inlong:manager-pojo
14
typo3/cms-backend
14
pyftpdlib
14
codeigniter4/framework
13
github.com/mattermost/mattermost-server
13
lavalite/cms
13
github.com/traefik/traefik/v2
13
joplin
13
elefant/cms
13
october/system
13
strapi
13
bolt/bolt
13
ckeditor4
13
passenger
13
OctoPrint
13
impresscms/impresscms
13
github.com/nats-io/nats-server/v2
13
org.apache.cxf:cxf
13
org.apache.hadoop:hadoop-main
13
actionview
12
deno
12
undici
12
Filter by Repository
https://github.com/tensorflow/tensorflow
432
https://github.com/chakra-core/ChakraCore
214
https://github.com/moodle/moodle
210
https://github.com/xwiki/xwiki-platform
172
https://github.com/jenkinsci/jenkins
148
https://github.com/pimcore/pimcore
111
https://github.com/apache/tomcat
96
https://github.com/django/django
95
https://github.com/apache/airflow
90
https://github.com/microweber/microweber
85
https://github.com/FasterXML/jackson-databind
70
https://github.com/thorsten/phpmyfaq
69
https://github.com/usememos/memos
59
https://github.com/keycloak/keycloak
59
https://github.com/Dolibarr/dolibarr
55
https://github.com/rails/rails
53
https://github.com/ansible/ansible
53
https://github.com/python-pillow/Pillow
52
https://github.com/kubernetes/kubernetes
49
https://github.com/symfony/symfony
47
https://github.com/TYPO3/typo3
46
https://github.com/librenms/librenms
46
https://github.com/apache/struts
46
https://github.com/shopware/platform
43
https://github.com/ikus060/rdiffweb
42
https://github.com/spring-projects/spring-framework
41
https://github.com/grafana/grafana
39
https://github.com/star7th/showdoc
38
https://github.com/vyperlang/vyper
38
https://github.com/phpmyadmin/phpmyadmin
38
https://github.com/plone/Products.CMFPlone
37
https://github.com/argoproj/argo-cd
37
https://github.com/x-stream/xstream
36
https://github.com/openstack/nova
36
https://github.com/concretecms/concretecms
34
https://github.com/answerdev/answer
34
https://github.com/octobercms/october
33
https://github.com/apache/activemq
33
https://github.com/saltstack/salt
32
https://github.com/sparklemotion/nokogiri
32
https://github.com/matrix-org/synapse
32
https://github.com/go-gitea/gitea
31
https://github.com/PaddlePaddle/Paddle
31
https://github.com/magento/magento2
31
https://github.com/parse-community/parse-server
29
https://github.com/craftcms/cms
29
https://github.com/mautic/mautic
28
https://github.com/opencv/opencv
28
https://github.com/CVEProject/cvelist
28
https://github.com/snipe/snipe-it
28
https://github.com/mlflow/mlflow
27
https://github.com/openstack/keystone
27
https://github.com/froxlor/froxlor
26
https://github.com/apache/inlong
26
https://github.com/electron/electron
25
https://github.com/rancher/rancher
25
https://github.com/dotnet/runtime
24
https://github.com/shopware/shopware
24
https://github.com/getgrav/grav
24
https://github.com/TYPO3/TYPO3.CMS
24
https://github.com/pmmp/PocketMine-MP
23
https://github.com/github/advisory-database
23
https://github.com/livehelperchat/livehelperchat
23
https://github.com/eclipse/jetty.project
23
https://github.com/PrestaShop/PrestaShop
22
https://github.com/baserproject/basercms
22
https://github.com/firefly-iii/firefly-iii
22
https://github.com/nervosnetwork/ckb
22
https://github.com/contao/contao
22
https://github.com/apache/nifi
21
https://github.com/jenkinsci/script-security-plugin
21
https://github.com/strapi/strapi
21
https://github.com/netty/netty
20
https://github.com/jeecgboot/jeecg-boot
20
https://github.com/OpenNMS/opennms
20
https://github.com/cilium/cilium
20
https://github.com/OpenZeppelin/openzeppelin-contracts
20
https://github.com/gogs/gogs
20
https://github.com/nilsteampassnet/teampass
19
https://github.com/hashicorp/consul
19
https://github.com/bcgit/bc-java
19
https://github.com/apache/cxf
19
https://github.com/cloudfoundry/uaa
19
https://github.com/helm/helm
19
https://github.com/intelliants/subrion
19
https://github.com/rubygems/rubygems
18
https://github.com/nilsteampassnet/TeamPass
18
https://github.com/getkirby/kirby
18
https://github.com/vaadin/platform
17
https://github.com/rack/rack
17
https://github.com/liufee/cms
17
https://github.com/directus/directus
17
https://github.com/bytecodealliance/wasmtime
17
https://github.com/rusqlite/rusqlite
16
https://github.com/yetiforcecompany/yetiforcecrm
16
https://github.com/etcd-io/etcd
16
https://github.com/opencast/opencast
16
https://github.com/sequelize/sequelize
16
https://github.com/umbraco/Umbraco-CMS
16
https://github.com/forkcms/forkcms
16
https://github.com/ethereum/go-ethereum
16
https://github.com/hashicorp/vault
16
https://github.com/centreon/centreon
15
https://github.com/simplesamlphp/simplesamlphp
15
https://github.com/laravel/framework
15
https://github.com/puppetlabs/puppet
15
https://github.com/goharbor/harbor
15
https://github.com/geoserver/geoserver
15
https://github.com/OpenMage/magento-lts
15
https://github.com/denoland/deno
15
https://github.com/apache/camel
15
https://github.com/containerd/containerd
14
https://github.com/PHPMailer/PHPMailer
14
https://github.com/mattermost/mattermost
14
https://github.com/pyca/cryptography
14
https://github.com/cockpit-hq/cockpit
14
https://github.com/langchain-ai/langchain
14
https://github.com/moby/moby
14
https://github.com/cobbler/cobbler
14
https://github.com/vantage6/vantage6
14
https://github.com/tinymce/tinymce
14
https://github.com/gradio-app/gradio
14
https://github.com/pyload/pyload
14
https://github.com/quarkusio/quarkus
13
https://github.com/traefik/traefik
13
https://github.com/golang/go
13
https://github.com/hashicorp/nomad
13
https://github.com/swagger-api/swagger-ui
13
https://github.com/silverstripe/silverstripe-framework
13
https://github.com/xuxueli/xxl-job
13
https://github.com/dromara/hutool
13
https://github.com/publify/publify
13
https://github.com/modoboa/modoboa
13
https://github.com/undertow-io/undertow
13
https://github.com/ming-soft/MCMS
13
https://github.com/dompdf/dompdf
13
https://github.com/backstage/backstage
12
https://github.com/apache/dolphinscheduler
12
https://github.com/patriksimek/vm2
12
https://github.com/laurent22/joplin
12
https://github.com/ckeditor/ckeditor4
12
https://github.com/twisted/twisted
12
https://github.com/apache/kylin
12
https://github.com/nodejs/undici
12
https://github.com/TryGhost/Ghost
12
https://github.com/centreon/centreon-archived
12
https://github.com/igniterealtime/Openfire
11
https://github.com/top-think/framework
11
https://github.com/Studio-42/elFinder
11
https://github.com/thorsten/phpMyFAQ
11
https://github.com/dotnet/aspnetcore
11
https://github.com/janeczku/calibre-web
11
https://github.com/cakephp/cakephp
11
https://github.com/openfga/openfga
11
https://github.com/drupal/core
11
https://github.com/onionshare/onionshare
11
https://github.com/puma/puma
11
https://github.com/smarty-php/smarty
11
https://github.com/vaadin/flow
11
https://github.com/1Panel-dev/1Panel
11
https://github.com/aio-libs/aiohttp
11
https://github.com/containers/podman
11
https://github.com/ezsystems/ezpublish-kernel
11
https://github.com/cloudflare/cfrpki
11
https://github.com/nats-io/nats-server
11
https://github.com/zitadel/zitadel
11
https://github.com/opencontainers/runc
11
https://github.com/NodeBB/NodeBB
11
https://github.com/urllib3/urllib3
11
https://github.com/vercel/next.js
11
https://github.com/scrapy/scrapy
11
https://github.com/dolibarr/dolibarr
10
https://github.com/jquery/jquery
10
https://github.com/jenkinsci/git-plugin
10
https://github.com/keystonejs/keystone
10
https://github.com/wagtail/wagtail
10
https://github.com/pimcore/admin-ui-classic-bundle
10
https://github.com/openstack/glance
10
https://github.com/nextauthjs/next-auth
10
https://github.com/Sylius/Sylius
10
https://github.com/codeigniter4/CodeIgniter4
10
https://github.com/dpgaspar/Flask-AppBuilder
10
https://github.com/zopefoundation/Zope
10
https://github.com/greenpau/caddy-security
10
https://github.com/phusion/passenger
10
https://github.com/jupyter/notebook
10
https://github.com/nocodb/nocodb
10
https://github.com/OPCFoundation/UA-.NETStandard
10
https://github.com/WWBN/AVideo
10
https://github.com/Pylons/waitress
9
https://github.com/Graylog2/graylog2-server
9
https://github.com/spring-projects/spring-security
9
https://github.com/neorazorx/facturascripts
9
https://github.com/apache/lucene-solr
9
https://github.com/funadmin/funadmin
9
https://github.com/nautobot/nautobot
9
https://github.com/DSpace/DSpace
9
https://github.com/faucetsdn/ryu
9
https://github.com/semplon/GeniXCMS
9