An open API service providing security vulnerability metadata for many open source software ecosystems.

Browse Security Advisories

Moderate
almost 7 years ago

Moderate severity vulnerability that affects Microsoft.AspNetCore.Mvc and Microsoft.AspNetCore.Mvc.Core MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWNoNnAtNGpjbS1oOHZo

nuget Microsoft.AspNetCore.Mvc.WebApiCompatShim, Microsoft.AspNetCore.Mvc.ViewFeatures, Microsoft.AspNetCore.Mvc.TagHelpers, Microsoft.AspNetCore.Mvc.Razor, Microsoft.AspNetCore.Mvc.Razor.Host, Microsoft.AspNetCore.Mvc.Localization, Microsoft.AspNetCore.Mvc.Formatters.Xml, Microsoft.AspNetCore.Mvc.Formatters.Json, Microsoft.AspNetCore.Mvc.DataAnnotations, Microsoft.AspNetCore.Mvc.Cors, Microsoft.AspNetCore.Mvc.ApiExplorer, Microsoft.AspNetCore.Mvc.Abstractions, System.Net.WebSockets.Client, System.Net.Security, System.Net.Http.WinHttpHandler, System.Text.Encodings.Web, System.Net.Http, Microsoft.AspNetCore.Mvc.Core, Microsoft.AspNetCore.Mvc
High
almost 7 years ago

ASP.NET Core fails to properly validate web requests MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTZ4aDctNHYydy0zNnE2

nuget System.Net.Http.WinHttpHandler, Microsoft.AspNetCore.Mvc.WebApiCompatShim, Microsoft.AspNetCore.Mvc.ViewFeatures, Microsoft.AspNetCore.Mvc.TagHelpers, Microsoft.AspNetCore.Mvc.Razor, Microsoft.AspNetCore.Mvc.Razor.Host, Microsoft.AspNetCore.Mvc.Localization, Microsoft.AspNetCore.Mvc.Formatters.Xml, Microsoft.AspNetCore.Mvc.Formatters.Json, Microsoft.AspNetCore.Mvc.DataAnnotations, Microsoft.AspNetCore.Mvc.Cors, Microsoft.AspNetCore.Mvc.ApiExplorer, Microsoft.AspNetCore.Mvc.Abstractions, System.Net.WebSockets.Client, System.Net.Security, System.Text.Encodings.Web, System.Net.Http, Microsoft.AspNetCore.Mvc.Core, Microsoft.AspNetCore.Mvc
Moderate
almost 7 years ago

Moderate severity vulnerability that affects Microsoft.AspNetCore.Mvc MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWo4ZjQtMnc0cC1taGpj

nuget Microsoft.AspNetCore.Mvc.WebApiCompatShim, Microsoft.AspNetCore.Mvc.ViewFeatures, Microsoft.AspNetCore.Mvc.TagHelpers, Microsoft.AspNetCore.Mvc.Razor, Microsoft.AspNetCore.Mvc.Razor.Host, Microsoft.AspNetCore.Mvc.Localization, Microsoft.AspNetCore.Mvc.Formatters.Xml, Microsoft.AspNetCore.Mvc.Formatters.Json, Microsoft.AspNetCore.Mvc.DataAnnotations, Microsoft.AspNetCore.Mvc.Cors, Microsoft.AspNetCore.Mvc.ApiExplorer, Microsoft.AspNetCore.Mvc.Abstractions, System.Net.WebSockets.Client, System.Net.Security, System.Net.Http.WinHttpHandler, System.Text.Encodings.Web, System.Net.Http, Microsoft.AspNetCore.Mvc.Core, Microsoft.AspNetCore.Mvc
High
almost 7 years ago

High severity vulnerability that affects Microsoft.AspNetCore.Mvc MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXFocWYtZ2hnaC14Mm00

nuget DisCatSharp, Microsoft.AspNetCore.Mvc.WebApiCompatShim, Microsoft.AspNetCore.Mvc.ViewFeatures, Microsoft.AspNetCore.Mvc.TagHelpers, Microsoft.AspNetCore.Mvc.Razor, Microsoft.AspNetCore.Mvc.Razor.Host, Microsoft.AspNetCore.Mvc.Localization, Microsoft.AspNetCore.Mvc.Formatters.Xml, Microsoft.AspNetCore.Mvc.Formatters.Json, Microsoft.AspNetCore.Mvc.DataAnnotations, Microsoft.AspNetCore.Mvc.Cors, Microsoft.AspNetCore.Mvc.ApiExplorer, Microsoft.AspNetCore.Mvc.Abstractions, System.Net.WebSockets.Client, System.Net.Security, System.Net.Http.WinHttpHandler, System.Text.Encodings.Web, System.Net.Http, Microsoft.AspNetCore.Mvc.Core, Microsoft.AspNetCore.Mvc

Filter by Severity

Filter by Ecosystem

Filter by Package

tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 moodle/moodle 418 magento/community-edition 301 Microsoft.ChakraCore 247 org.jenkins-ci.main:jenkins-core 239 typo3/cms 190 org.apache.tomcat:tomcat 138 com.liferay.portal:release.portal.bom 124 com.liferay.portal:release.dxp.bom 123 pimcore/pimcore 120 dolibarr/dolibarr 116 github.com/mattermost/mattermost/server/v8 115 typo3/cms-core 111 phpmyadmin/phpmyadmin 107 Django 107 microweber/microweber 103 drupal/core 103 magento/project-community-edition 101 silverstripe/framework 92 apache-airflow 85 drupal/drupal 83 librenms/librenms 82 thorsten/phpmyfaq 73 Plone 72 symfony/symfony 69 com.fasterxml.jackson.core:jackson-databind 69 concrete5/concrete5 67 github.com/usememos/memos 66 salt 65 ansible 63 apache-superset 61 actionpack 61 shopware/platform 58 org.apache.struts:struts2-core 57 github.com/grafana/grafana 56 mlflow 53 craftcms/cms 52 org.keycloak:keycloak-core 50 nova 48 github.com/hashicorp/vault 48 baserproject/basercms 47 nokogiri 46 django 46 org.apache.tomcat.embed:tomcat-embed-core 46 shopware/core 45 mautic/core 44 vyper 44 github.com/rancher/rancher 44 gradio 44 org.xwiki.platform:xwiki-platform-oldcore 43 org.keycloak:keycloak-services 42 rdiffweb 42 matrix-synapse 42 nilsteampassnet/teampass 42 plone 41 showdoc/showdoc 41 org.elasticsearch:elasticsearch 41 mantisbt/mantisbt 41 k8s.io/kubernetes 41 froxlor/froxlor 40 github.com/mattermost/mattermost-server/v6 39 intelliants/subrion 39 directus 38 com.thoughtworks.xstream:xstream 37 com.jfinal:jfinal 36 net.mingsoft:ms-mcms 36 snipe/snipe-it 36 moin 35 zendframework/zendframework1 34 org.jenkins-ci.plugins:script-security 34 github.com/answerdev/answer 34 io.undertow:undertow-core 34 gogs.io/gogs 33 parse-server 33 keystone 32 github.com/hashicorp/nomad 31 opencv-contrib-python 31 github.com/argoproj/argo-cd 31 github.com/argoproj/argo-cd/v2 31 github.com/cilium/cilium 31 opencv-python 31 github.com/docker/docker 31 shopware/shopware 30 getgrav/grav 30 github.com/mattermost/mattermost-server 29 Pillow 29 rack 29 github.com/hashicorp/consul 29 electron 28 pillow 28 mediawiki/core 28 org.apache.solr:solr-core 28 org.opencms:opencms-core 27 centreon/centreon 27 openssl-src 26 prestashop/prestashop 26 next 26 org.springframework.security:spring-security-core 26 github.com/traefik/traefik/v2 25 open-webui 25 contao/core-bundle 25 rubygems-update 25 org.eclipse.jetty:jetty-server 25 getkirby/cms 24 surrealdb 24 pocketmine/pocketmine-mp 24 org.keycloak:keycloak-parent 24 magento/core 24 vllm 23 simplesamlphp/simplesamlphp 23 phpoffice/phpexcel 23 puppet 23 org.bouncycastle:bcprov-jdk14 23 remdex/livehelperchat 23 grumpydictator/firefly-iii 23 zendframework/zendframework 23 laravel/framework 23 pyload-ng 22 ckb 22 @openzeppelin/contracts-upgradeable 22 activerecord 22 org.apache.openmeetings:openmeetings-parent 22 DotNetNuke.Core 22 Microsoft.AspNetCore.App.Runtime.win-x86 22 org.apache.tomcat:tomcat-catalina 22 Microsoft.AspNetCore.App.Runtime.win-x64 22 tribalsystems/zenario 22 helm.sh/helm/v3 21 @openzeppelin/contracts 21 org.apache.nifi:nifi 21 phpoffice/phpspreadsheet 21 github.com/ethereum/go-ethereum 21 Microsoft.AspNetCore.App.Runtime.win-arm 21 glance 21 github.com/goharbor/harbor 21 aim 20 org.xwiki.platform:xwiki-platform-web-templates 20 org.apache.tomcat:tomcat-coyote 20 code.gitea.io/gitea 20 funadmin/funadmin 20 langchain 20 wasmtime 20 golang.org/x/net 20 org.cloudfoundry.identity:cloudfoundry-identity-server 20 cockpit-hq/cockpit 20 Microsoft.AspNetCore.App.Runtime.osx-x64 19 Microsoft.AspNetCore.App.Runtime.linux-arm 19 Microsoft.AspNetCore.App.Runtime.win-arm64 19 Microsoft.AspNetCore.App.Runtime.linux-musl-x64 19 github.com/zitadel/zitadel 19 deno 19 Microsoft.AspNetCore.App.Runtime.linux-arm64 19 neutron 19 Microsoft.AspNetCore.App.Runtime.linux-x64 19 topthink/framework 19 com.vaadin:vaadin-bom 18 Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 18 genix/cms 18 mindsdb 18 forkcms/forkcms 18 contao/contao 18 mercurial 18 org.apache.jspwiki:jspwiki-main 18 cobbler 18 yetiforce/yetiforce-crm 17 cakephp/cakephp 17 flowise 17 notebook 17 org.springframework:spring-core 17 typo3/cms-backend 17 org.apache.geode:geode-core 17 OctoPrint 17 github.com/traefik/traefik/v3 17 opencart/opencart 17 cryptography 17 francoisjacquet/rosariosis 17 ezsystems/ezpublish-kernel 17 symfony/security 17 org.apache.inlong:manager-pojo 17 calibreweb 17 openmage/magento-lts 17 Microsoft.NetCore.App.Runtime.win-arm 16 phpbb/phpbb 16 github.com/openfga/openfga 16 org.apache.ranger:ranger 16 paddlepaddle 16 PaddlePaddle 16 org.apache.activemq:activemq-client 16 lollms 16 october/system 16 Microsoft.NetCore.App.Runtime.win-x64 16 Microsoft.NetCore.App.Runtime.win-x86 16 org.bouncycastle:bcprov-jdk15 16 rusqlite 16 org.apache.dubbo:dubbo 16 transformers 16 sequelize 16 Microsoft.NetCore.App.Runtime.win-arm64 16

Filter by Repository