Vulnerability Directory

If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.

Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.

Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.

Codey gradient
Filtering by:
Severity
=
Text for Severity
Close icon
Clear Filters
Severity
ID
Technology
Libraries Affected
Category
Version(s) Affected
Published Date
Medium
jQuery
jQuery Validation
Cross-Site Scripting
<1.20.0
Jan 30, 2026
Medium
Drupal 7
i18n_node in i18n
Broken Access
>=7.1.0 <=7.1.35
Jan 29, 2026
Medium
jQuery
jQuery UI
Cross-Site Scripting
<1.13.0
Jan 27, 2026
Medium
jQuery
jQuery UI
Cross-Site Scripting
<1.13.0
Jan 27, 2026
Medium
Drupal 7
Webform Multiple File Upload
Cross-Site Scripting
>=7.1.0 <=7.1.6
Jan 27, 2026
Medium
jQuery
jQuery UI
Cross-Site Scripting
>=1.7.0 <1.10.0
Jan 27, 2026
Medium
jQuery
NES for jQuery UI
Cross-Site Scripting
<1.13.0
Jan 27, 2026
High
MySQL Connector/J
mysql-connector-j
Authorization Bypass
< 8.2.0
Jan 21, 2026
High
Hibernate
Hibernate ORM
Command Injection
>= 5.6.0 <= 5.6.15
Jan 20, 2026
High
Struts
Apache Struts
Remote Code Execution
>=2.0.0 <=2.3.37, >=2.5.0 <=2.5.33, >=6.0.0 <6.1.1,
Jan 16, 2026
Medium
Drupal 7
Form Builder Drupal Module
Cross-Site Scripting
>=7.1.0 <=7.1.22
Jan 15, 2026
Medium
Drupal 7
Webform Multiple File Upload
Cross-Site Scripting
>=7.1.0 <=7.1.6
Jan 13, 2026
High
Drupal 7
Commerce Paybox
Signature Forgery
>=7.1.0 <=7.1.5
Jan 13, 2026
High
Angular
Angular
Cross-Site Scripting
<=18.2.14, >=19.0.0-next.0 <19.2.18, >=20.0.0-next.0 <20.3.16, >=21.0.0-next.0 <21.0.7, >=21.1.0-next.0 <21.1.0-rc.0
Jan 9, 2026
Medium
Drupal 7
IFrame Remove Filter Module
Cross-Site Scripting
>=7.0.x <=7.1.5
Jan 8, 2026
Exclamation icon
No results found

Please enter a valid Vulnerability ID number or Technology name.

Sign up for the latest vulnerability alerts
Rss feed icon
Subscribe via RSS
or
Thanks for signing up for our Newsletter! We look forward to connecting with you.
Oops! Something went wrong while submitting the form.