Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BELL-CVE-2025-40345
  • Alpaquita:23/linux-lts
  • Alpaquita:stream/linux-lts
See record for full details 1 hour ago
  • Fix available
MINI-gp9c-vvwm-mv93
  • MinimOS/caddy
  • MinimOS/caddy-man
  • MinimOS/caddy-src
See record for full details 6 hours ago
  • Fix available
ECHO-b05b-f115-1c9e
  • Echo/linux
See record for full details 7 hours ago
  • Fix available
CVE-2025-54369
  • github.com/node-saml/node-saml
Node-SAML SAML Authentication Bypass 8 hours ago
  • Fix available
  • Severity - 9.3 (Critical)
CVE-2025-67749
  • github.com/pcsx2/pcsx2
PCSX2 has an Out-of-bounds Read due to unchecked offset and size passed to memcpy 9 hours ago
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-vx9q-rhv9-3jvg
  • Maven/io.airlift:aircompressor-v3
aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer 9 hours ago
  • Fix available
  • Severity - 8.2 (High)
CVE-2025-67721
  • github.com/airlift/aircompressor
Aircompressor's Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer 9 hours ago
  • Fix available
  • Severity - 6.3 (Medium)
GHSA-3jp5-5f8r-q2wg
  • npm/vuetify
Vuetify has a Prototype Pollution vulnerability 10 hours ago
  • Fix available
  • Severity - 8.6 (High)
GHSA-9w3x-85mw-4fwm
  • npm/vuetify
Vuetify has a Cross-site Scripting (XSS) vulnerability in the VDatePicker component 10 hours ago
  • Fix available
  • Severity - 6.3 (Medium)
GHSA-55jh-84jv-8mx8
  • npm/lightning-flow-scanner
Lightning Flow Scanner Vulnerable to Code Injection via Unsafe Use of `new Function()` in APIVersion Rule 11 hours ago
  • Fix available
  • Severity - 8.4 (High)
GHSA-4jmp-x7mh-rgmr
  • Go/github.com/babylonlabs-io/finality-provider
Finality Provider vulnerable to anti-slashing bypassing due to misconfiguration 11 hours ago
  • No fix available
  • Severity - 8.7 (High)
CVE-2025-67750
  • github.com/flow-scanner/lightning-flow-scanner
Lightning Flow Scanner is Vulnerable to Code Injection via Unsafe Use of new Function() in APIVersion Rule 11 hours ago
  • Fix available
  • Severity - 8.4 (High)
CVE-2025-67734
  • github.com/frappe/lms
Frappe Authenticated Users can Execute JavaScript through its Job Form 11 hours ago
  • Fix available
  • Severity - 5.1 (Medium)
CGA-rjpq-6978-w42c
  • Chainguard/traefik-3.5
See record for full details 11 hours ago
  • Fix available
GHSA-4jj9-cgqc-x9h5
  • Go/github.com/neuvector/neuvector
NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM) 12 hours ago
  • Fix available
  • Severity - 8.8 (High)
GHSA-3hg2-rh4r-8qf6
  • Maven/org.apache.streampark:streampark
Apache StreamPark: Use the user’s password as the secret key Vulnerability 13 hours ago
  • Fix available
  • Severity - 8.7 (High)