Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
589941
AlmaLinux
4163
Alpaquita
7323
Alpine
3919
Android
2912
BellSoft Hardened Containers
255
Bitnami
6247
Chainguard
29060
CRAN
11
crates.io
1894
Debian
50687
Echo
2278
GHC
3
GIT
74030
GitHub Actions
37
Go
5091
Hackage
25
Hex
44
Julia
332
Linux
22049
Mageia
5761
Maven
6076
MinimOS
8465
npm
213275
NuGet
1497
openEuler
5543
openSUSE
10288
OSS-Fuzz
3671
Packagist
5516
Pub
10
PyPI
17357
Red Hat
17678
Rocky Linux
2447
RubyGems
1799
SUSE
17033
SwiftURL
42
Ubuntu
48525
VSCode
15
Wolfi
14583
ID
Packages
Summary
Published
arrow_upward
Attributes
BELL-CVE-2025-40345
Alpaquita:23/linux-lts
Alpaquita:stream/linux-lts
See record for full details
1 hour ago
Fix available
MINI-gp9c-vvwm-mv93
MinimOS/caddy
MinimOS/caddy-man
MinimOS/caddy-src
See record for full details
6 hours ago
Fix available
ECHO-b05b-f115-1c9e
Echo/linux
See record for full details
7 hours ago
Fix available
CVE-2025-54369
github.com/node-saml/node-saml
Node-SAML SAML Authentication Bypass
8 hours ago
Fix available
Severity - 9.3 (Critical)
CVE-2025-67749
github.com/pcsx2/pcsx2
PCSX2 has an Out-of-bounds Read due to unchecked offset and size passed to memcpy
9 hours ago
Fix available
Severity - 5.3 (Medium)
GHSA-vx9q-rhv9-3jvg
Maven/io.airlift:aircompressor-v3
aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer
9 hours ago
Fix available
Severity - 8.2 (High)
CVE-2025-67721
github.com/airlift/aircompressor
Aircompressor's Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer
9 hours ago
Fix available
Severity - 6.3 (Medium)
GHSA-3jp5-5f8r-q2wg
npm/vuetify
Vuetify has a Prototype Pollution vulnerability
10 hours ago
Fix available
Severity - 8.6 (High)
GHSA-9w3x-85mw-4fwm
npm/vuetify
Vuetify has a Cross-site Scripting (XSS) vulnerability in the VDatePicker component
10 hours ago
Fix available
Severity - 6.3 (Medium)
GHSA-55jh-84jv-8mx8
npm/lightning-flow-scanner
Lightning Flow Scanner Vulnerable to Code Injection via Unsafe Use of
`
new Function()
`
in APIVersion Rule
11 hours ago
Fix available
Severity - 8.4 (High)
GHSA-4jmp-x7mh-rgmr
Go/github.com/babylonlabs-io/finality-provider
Finality Provider vulnerable to anti-slashing bypassing due to misconfiguration
11 hours ago
No fix available
Severity - 8.7 (High)
CVE-2025-67750
github.com/flow-scanner/lightning-flow-scanner
Lightning Flow Scanner is Vulnerable to Code Injection via Unsafe Use of new Function() in APIVersion Rule
11 hours ago
Fix available
Severity - 8.4 (High)
CVE-2025-67734
github.com/frappe/lms
Frappe Authenticated Users can Execute JavaScript through its Job Form
11 hours ago
Fix available
Severity - 5.1 (Medium)
CGA-rjpq-6978-w42c
Chainguard/traefik-3.5
See record for full details
11 hours ago
Fix available
GHSA-4jj9-cgqc-x9h5
Go/github.com/neuvector/neuvector
NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)
12 hours ago
Fix available
Severity - 8.8 (High)
GHSA-3hg2-rh4r-8qf6
Maven/org.apache.streampark:streampark
Apache StreamPark: Use the user’s password as the secret key Vulnerability
13 hours ago
Fix available
Severity - 8.7 (High)
Load more...
Vulnerability Database - OSV