Vulnerability Directory

If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.

Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.

Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.
Arrow down

Vulnerability Directory

If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.

Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.

Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.

Codey gradient
Filtering by:
Severity
=
Text for Severity
Clear Filters
Severity
ID
Technology
Libraries Affected
Category
Version(s) Affected
Published Date
Low
Vue 2
Vue
ReDoS Vulnerability
>=2.0.0 <3.0.0
Oct 14, 2024
High
Vue 2, Nuxt 2
Command Injection
Vue 2.6, Vue 2.7, and Nuxt 2
Oct 8, 2024
Medium
Express
Express
URL Redirect/Open Redirect
>=3.4.5 <4.0.0
Oct 3, 2024
Critical
PHP
PHP
Content Spoofing
>=8.1.0 <8.1.29, >=8.2.0 <8.2.20, >=8.3.0 <8.3.8
Sep 30, 2024
High
Spring
Spring Framework
Path Traversal
>=5.3.0 <=5.3.39, >=6.0.0 <=6.0.23, >=6.1.0 <=6.1.12
Sep 12, 2024
Medium
Express
Express
Cross-Site Scripting
>=3.0.0-alpha1, <=3.21.2, >=4.0.0-rc1, <4.20.0, >=5.0.0-alpha.1 <5.0.0
Sep 10, 2024
Medium
AngularJS
AngularJS
Content Spoofing
>=1.3.0-rc.4
Sep 9, 2024
Medium
AngularJS
AngularJS
Content Spoofing
>=0.0.0
Sep 9, 2024
Medium
Node.js
Node.js
Cryptographic Weakness
4.0 < 18.19.1, 20 < 20.11.1
Sep 7, 2024
High
Node.js
Node.js
Command Injection
4.0 < 18.20.4, 20.0 < 20.15.1, 22.0< 22.4.1
Sep 7, 2024
Low
Node.js
Node.js
Resource Injection
4.0 <= 18.18.1, 20.0 <= 20.8.1
Sep 7, 2024
Medium
Spring
Spring Framework
Denial of Service
>=4.3.0 <=4.3.30, >=5.3.0 <5.3.38, >=6.0.0 <6.0.23, >=6.1.0 <6.1.12
Aug 27, 2024
Medium
Spring
Spring Boot
Signature Forgery
>=2.7.0 <=2.7.21, >=3.0.0 <=3.0.16, >=3.1.0 <=3.1.12, >=3.2.0 <=3.2.8, >=3.3.0 <=3.3.2
Aug 23, 2024
Medium
Spring
Spring Framework
Denial of Service
<5.3.39
Aug 20, 2024
Medium
Vue 2
Vue
Cross-Site Scripting
>=2.0.0 <3.0.0
Jul 23, 2024
Exclamation icon
No results found

Please enter a valid Vulnerability ID number or Technology name.

Sign up for the latest vulnerability alerts
Rss feed icon
Subscribe via RSS
or
Thanks for signing up for our Newsletter! We look forward to connecting with you.
Oops! Something went wrong while submitting the form.