An open API service providing security vulnerability metadata for many open source software ecosystems.

Browse Security Advisories

Critical
22 days ago

Magento Community Edition Improper Input Validation vulnerability GSA_kwCzR0hTQS13aDkyLTZxNmctcHg3as4ABL2A

packagist magento/project-community-edition, magento/community-edition
High
about 2 months ago

Magento Cross-site Scripting vulnerability GSA_kwCzR0hTQS04bXE4LWMyNDMtMjMzNc4ABK9P

packagist magento/project-community-edition, magento/community-edition
Critical
4 months ago

Magneto contains stored XSS vulnerability GSA_kwCzR0hTQS1qOTM0LXZqaDUtdmY5cs4ABI39

packagist magento/community-edition
Moderate
6 months ago

Magento Improper Authorization vulnerability GSA_kwCzR0hTQS1ycjJnLXJyamoteHc4Ns4ABGmw

packagist magento/community-edition
Critical
8 months ago

Improper Authorization vulnerability in Magento and Adobe Commerce GSA_kwCzR0hTQS1mcHBxLWYybTYteHY1Y84ABEWV

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento stored Cross-Site Scripting (XSS) vulnerability GSA_kwCzR0hTQS1tbTg3LXJycXgtOTRjcs4ABEWC

packagist magento/project-community-edition, magento/community-edition
Low
8 months ago

Magento Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability GSA_kwCzR0hTQS02dzI3LWM2NmYtZ3Zocc4ABEVz

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS00NjlmLXdmNGYtM2pqds4ABEWZ

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento stored Cross-Site Scripting (XSS) vulnerability GSA_kwCzR0hTQS04ODg0LTdybTktbXJ4NM4ABEWQ

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS12M2hxLWc0MjQtNW1nZ84ABEWN

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS04MnA0LTU1Z2otOTU2cM4ABEWS

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Business Logic Error vulnerability GSA_kwCzR0hTQS02ZmY4LWpyZmctNDNoaM4ABEWI

packagist magento/project-community-edition, magento/community-edition
Low
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS02NTZxLWZ4MnctOGNjds4ABEVr

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS1naHByLTZxaHItcnBwOM4ABEWY

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Information Exposure vulnerability GSA_kwCzR0hTQS0zY2ZnLXcyNTctY2dmOM4ABEV-

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS0zNmh3LXgzY2MtbTI1OM4ABEV2

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS1nYzI3LXJ2dm0tcTc3cs4ABEWR

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS1tNHJnLW1wcDItOTdweM4ABEV_

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Adobe Commerce Improper Authorization vulnerability GSA_kwCzR0hTQS12dzQ3LTc5anYtMzU5OM4ABEV4

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS14d2d4LTh2NzItNGo1as4ABEWT

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Incorrect Authorization vulnerability GSA_kwCzR0hTQS12NnIyLTQyNWMtaGZycs4ABEWJ

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Adobe Commerce Path Traversal GSA_kwCzR0hTQS05NTRwLWZmNzItMzI3d84ABEWB

packagist magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS1nM2o2LTk3NTMtOG1wMs4ABEWP

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS1maHc2LTNtajUtdzlnds4ABEWL

packagist magento/project-community-edition, magento/community-edition
Moderate
8 months ago

Magento Improper Access Control vulnerability GSA_kwCzR0hTQS01Mzl2LXc4N3ctdzYyY84ABEWG

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS1yamp3LWc2aHctN3BjOc4ABEWW

packagist magento/project-community-edition, magento/community-edition
High
8 months ago

Magento Stored Cross-Site Scripting (XSS) Vulnerability GSA_kwCzR0hTQS1nanhwLTQ2cnEtd2c0cc4ABEV5

packagist magento/project-community-edition, magento/community-edition
Moderate
about 1 year ago

Magento Open Source Path Traversal vulnerability GSA_kwCzR0hTQS02cHhoLTI1NTctNWNqNc4AA-oW

packagist magento/community-edition
Critical
over 1 year ago

Magento RCE,XSS and other vulnerabilities GSA_kwCzR0hTQS04ajdjLTY4MngtcjlmMs4AA8I2

packagist magento/community-edition
Moderate
over 1 year ago

Magento Cross-Site Scripting (XSS) vulnerability GSA_kwCzR0hTQS1tY2ZjLTY3dm0tajU2OM4AA8I1

packagist magento/community-edition
Moderate
over 1 year ago

Magento Open Source allows Cross-Site Scripting (XSS) GSA_kwCzR0hTQS01OXZmLWhqeGMtZjljNc4AA63U

packagist magento/project-community-edition, magento/community-edition
High
over 1 year ago

Magento Open Source allows Improper Input Validation GSA_kwCzR0hTQS13aDRtLTZyaDMtcDRycc4AA63V

packagist magento/project-community-edition, magento/community-edition
High
over 1 year ago

Magento Open Source allows Cross-Site Scripting (XSS) GSA_kwCzR0hTQS0yNjRnLWY3djgtcTVxcc4AA5Ue

packagist magento/project-community-edition, magento/community-edition
High
over 1 year ago

Magento Open Source allows OS Command Injection GSA_kwCzR0hTQS01MjVmLXB2ajUtdnFtcc4AA5Uh

packagist magento/project-community-edition, magento/community-edition
Moderate
over 1 year ago

Magento Open Source allows Cross-Site Request Forgery (CSRF) GSA_kwCzR0hTQS1ocWdqLTQzOTYtaG14ds4AA5UR

packagist magento/project-community-edition, magento/community-edition
Moderate
over 1 year ago

Magento Open Source allows Uncontrolled Resource Consumption GSA_kwCzR0hTQS1jOWg5LWg1Z2YtODg1cs4AA5UQ

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows SQL Injection GSA_kwCzR0hTQS1oM2c5LWN3cjYtaHBoeM4AA2bk

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows SQL Injection GSA_kwCzR0hTQS1ycTM2LTlmNWYtMmd3N84AA2bl

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows Uncontrolled Resource Consumption GSA_kwCzR0hTQS03cGZjLTgzNHEtaDQ5N84AA2bm

packagist magento/project-community-edition, magento/community-edition
Low
almost 2 years ago

Magento Open Source allows Cross-Site Scripting (XSS) GSA_kwCzR0hTQS0zajd3LWpwNDYtOTc1Ms4AA2bi

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows Improper Authorization GSA_kwCzR0hTQS1ncmM2LXI2ZjgteGo3Y84AA2bh

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS1ycGM3LWdmNTgtdjN4Ms4AA2bj

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows SQL Injection GSA_kwCzR0hTQS1nZ3I4LTNod3gtNGYybc4AA2be

packagist magento/community-edition
Moderate
almost 2 years ago

Magento Open Source has Improper Input Validation Vulnerability GSA_kwCzR0hTQS05bXg2LTRnZzQtODV4as4AA2bg

packagist magento/project-community-edition, magento/community-edition
Moderate
almost 2 years ago

Magento Open Source allows Server-Side Request Forgery (SSRF) GSA_kwCzR0hTQS04anhjLTVmOTQtMjJ2aM4AA2bf

packagist magento/project-community-edition, magento/community-edition
Moderate
about 2 years ago

Magento Open Source affected by Improper Input Validation GSA_kwCzR0hTQS01eG1wLTd3ZzUteDY4cc4AA17M

packagist magento/project-community-edition, magento/community-edition
High
about 2 years ago

Magento Open Source allows Improper Neutralization of Special Elements Used GSA_kwCzR0hTQS1teGM5LWc2bTQtMnYzNc4AA1K5

packagist magento/project-community-edition, magento/community-edition
Low
about 2 years ago

Magento Open Source allows XML Injection GSA_kwCzR0hTQS1ycHYyLWc0cGMtd3A3Ms4AA1K6

packagist magento/project-community-edition, magento/community-edition
Moderate
about 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS0zdmcyLXY2MzktNmNoOc4AA1K9

packagist magento/project-community-edition, magento/community-edition
Low
over 2 years ago

Magento Open Source has Business Logic Errors Vulnerability GSA_kwCzR0hTQS0yOHZwLTM5cmYtM3Eyas4AAz4q

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows XML Injection GSA_kwCzR0hTQS13aDQyLThyMnctODczeM4AAz4V

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows Information Exposure GSA_kwCzR0hTQS04NW00LWc5dnEteHB4as4AAz4m

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS1xdzVtLXZtcDMtZjU1M84AAz4v

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows Server-Side Request Forgery (SSRF) GSA_kwCzR0hTQS01Zjc5LXZocjQtdncycs4AAz44

packagist magento/project-community-edition, magento/community-edition
Low
over 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS0zcXI0LXc5NmYtNjcyds4AAz4W

packagist magento/project-community-edition, magento/community-edition
Low
over 2 years ago

Magento Open Source affected by Improper Input Validation GSA_kwCzR0hTQS02NmM5LXhyd2otOXh2Ns4AAz4t

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS1mOTg5LTNmcDktcTNyMs4AAz4U

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows Server-Side Request Forgery (SSRF) GSA_kwCzR0hTQS00NTg4LTd4NDgtanJnas4AAz41

packagist magento/project-community-edition, magento/community-edition
High
over 2 years ago

Magento Open Source allows Improper Neutralization of Special Elements Used GSA_kwCzR0hTQS1nZm1tLXd3NmYtNW1tNc4AAz49

packagist magento/project-community-edition, magento/community-edition
Low
over 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS0zNTRoLWZwbXEtNjh2N84AAz4Z

packagist magento/project-community-edition, magento/community-edition
Moderate
over 2 years ago

Magento Open Source allows Incorrect Authorization GSA_kwCzR0hTQS0yd203LW1tZ2MtcXhyM84AAyWc

packagist magento/project-community-edition, magento/community-edition

Filter by Severity

Filter by Ecosystem

Filter by Package

tensorflow 430 moodle/moodle 418 tensorflow-cpu 409 tensorflow-gpu 407 magento/community-edition 266 Microsoft.ChakraCore 247 org.jenkins-ci.main:jenkins-core 242 typo3/cms 169 com.liferay.portal:release.portal.bom 146 org.apache.tomcat:tomcat 130 github.com/mattermost/mattermost/server/v8 129 pimcore/pimcore 120 com.liferay.portal:release.dxp.bom 117 dolibarr/dolibarr 116 typo3/cms-core 108 phpmyadmin/phpmyadmin 107 Django 106 microweber/microweber 103 drupal/core 99 magento/project-community-edition 97 silverstripe/framework 91 apache-airflow 86 librenms/librenms 83 thorsten/phpmyfaq 73 drupal/drupal 73 Plone 70 com.fasterxml.jackson.core:jackson-databind 69 github.com/usememos/memos 68 concrete5/concrete5 67 salt 65 ansible 63 apache-superset 61 symfony/symfony 59 actionpack 58 shopware/platform 58 org.apache.struts:struts2-core 56 github.com/grafana/grafana 56 mlflow 53 craftcms/cms 53 org.keycloak:keycloak-core 50 github.com/hashicorp/vault 49 github.com/rancher/rancher 48 nova 48 mautic/core 47 baserproject/basercms 47 shopware/core 46 nokogiri 45 vyper 44 gradio 44 org.xwiki.platform:xwiki-platform-oldcore 43 rdiffweb 42 matrix-synapse 42 k8s.io/kubernetes 42 org.keycloak:keycloak-services 42 nilsteampassnet/teampass 42 showdoc/showdoc 41 org.elasticsearch:elasticsearch 41 mantisbt/mantisbt 41 github.com/mattermost/mattermost-server 41 froxlor/froxlor 40 intelliants/subrion 40 picklescan 39 directus 38 snipe/snipe-it 38 org.apache.tomcat.embed:tomcat-embed-core 37 com.thoughtworks.xstream:xstream 37 github.com/mattermost/mattermost-server/v6 36 net.mingsoft:ms-mcms 36 com.jfinal:jfinal 36 github.com/argoproj/argo-cd/v2 35 moin 35 io.undertow:undertow-core 35 github.com/answerdev/answer 34 parse-server 33 org.jenkins-ci.plugins:script-security 33 gogs.io/gogs 32 keystone 32 zendframework/zendframework1 32 github.com/hashicorp/nomad 31 opencv-python 31 github.com/argoproj/argo-cd 31 shopware/shopware 31 github.com/cilium/cilium 31 opencv-contrib-python 30 github.com/docker/docker 30 getgrav/grav 30 rack 30 github.com/hashicorp/consul 29 next 29 pillow 28 plone 28 mediawiki/core 28 electron 28 org.apache.solr:solr-core 28 Pillow 28 contao/core-bundle 27 DotNetNuke.Core 27 centreon/centreon 27 django 27 org.springframework.security:spring-security-core 27 org.opencms:opencms-core 27 prestashop/prestashop 27 openssl-src 25 pocketmine/pocketmine-mp 25 vllm 25 github.com/traefik/traefik/v2 25 rubygems-update 25 open-webui 25 org.eclipse.jetty:jetty-server 25 flowise 24 surrealdb 24 org.keycloak:keycloak-parent 24 getkirby/cms 24 org.apache.tomcat:tomcat-catalina 23 pyload-ng 23 laravel/framework 23 remdex/livehelperchat 23 simplesamlphp/simplesamlphp 23 grumpydictator/firefly-iii 23 puppet 23 org.apache.openmeetings:openmeetings-parent 22 zendframework/zendframework 22 tribalsystems/zenario 22 ckb 22 activerecord 22 org.apache.nifi:nifi 21 github.com/goharbor/harbor 21 @openzeppelin/contracts 21 org.bouncycastle:bcprov-jdk14 21 github.com/ethereum/go-ethereum 21 glance 21 contao/contao 21 @openzeppelin/contracts-upgradeable 21 cockpit-hq/cockpit 20 funadmin/funadmin 20 org.xwiki.platform:xwiki-platform-web-templates 20 org.cloudfoundry.identity:cloudfoundry-identity-server 20 code.gitea.io/gitea 20 typo3/cms-backend 20 wasmtime 20 aim 20 ethyca-fides 20 phpoffice/phpspreadsheet 19 topthink/framework 19 transformers 19 github.com/zitadel/zitadel 19 helm.sh/helm/v3 19 neutron 19 deno 19 org.springframework:spring-core 18 com.vaadin:vaadin-bom 18 cobbler 18 golang.org/x/net 18 genix/cms 18 forkcms/forkcms 18 org.apache.tomcat:tomcat-coyote 18 langchain 18 Microsoft.AspNetCore.App.Runtime.win-x64 18 mindsdb 18 org.apache.jspwiki:jspwiki-main 18 mercurial 18 Microsoft.AspNetCore.App.Runtime.win-x86 18 org.apache.inlong:manager-pojo 17 Microsoft.AspNetCore.App.Runtime.linux-arm 17 opencart/opencart 17 Microsoft.AspNetCore.App.Runtime.win-arm 17 yetiforce/yetiforce-crm 17 github.com/openfga/openfga 17 cakephp/cakephp 17 OctoPrint 17 openmage/magento-lts 17 Microsoft.AspNetCore.App.Runtime.linux-arm64 17 org.apache.geode:geode-core 17 francoisjacquet/rosariosis 17 cryptography 17 calibreweb 17 ezsystems/ezpublish-kernel 17 notebook 17 PaddlePaddle 16 Microsoft.AspNetCore.App.Runtime.win-arm64 16 phpbb/phpbb 16 org.apache.ranger:ranger 16 org.apache.dubbo:dubbo 16 org.apache.activemq:activemq-client 16 sequelize 16 github.com/traefik/traefik/v3 16 lollms 16 Microsoft.AspNetCore.App.Runtime.linux-musl-x64 16 rusqlite 16 ghost 16 tinymce 16 Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 16 paddlepaddle 16 pimcore/admin-ui-classic-bundle 15 Microsoft.NetCore.App.Runtime.win-arm64 15 undici 15 h2o 15 Microsoft.AspNetCore.App.Runtime.osx-x64 15 Microsoft.AspNetCore.App.Runtime.linux-x64 15 Microsoft.NetCore.App.Runtime.win-arm 15

Filter by Repository