Launch Week Day 1: Announcing Security Design Review

Know every threat before it ships

200K+ vulnerabilities, malicious packages, and supply chain threats enriched with Corgea's research.

LOW 3.3
NuGet

GHSA-vf33-6r7x-66xx

ImageMagick: Division by Zero in binomial kernel

LOW 3.7
NuGet

GHSA-qv2q-c278-pch5

ImageMagick: Information Disclosure in PasskeyEncipherImage via AES-CTR nonce reuse

LOW 3.3
NuGet

CVE-2025-68469

ImageMagick has a heap-buffer-overflow

LOW 3.8
NuGet

GHSA-h39g-6x3c-7fq9

Zio has SubFileSystem Path Confinement Bypass via Unresolved `..` Segment

LOW 3.3
NuGet

GHSA-w54j-7wpm-crhj

ImageMagick has a heap-buffer-overflow in FTXT encoder

LOW 3.3
NuGet

GHSA-pmpg-6pww-fg6q

ImageMagick has out-of-bounds access in ConnectedComponentsImage() via CLI-controlled connected-components:* artifacts

LOW 3.7
NuGet

GHSA-x928-4434-crqj

ImageMagick has a memory leak in PNG encoder when writing a MNG image

LOW 3.3
NuGet

GHSA-q8h3-jv9v-57qx

ImageMagick has has an off-by-one origin validation in allows out-of-bounds read in morphology processing

LOW 3.3
NuGet

GHSA-8vfj-q2cp-5m5j

ImageMagick has a heap buffer overflow read in magnify operation via unrecognized magnify:method value

LOW 3.3
NuGet

GHSA-9r56-3gjq-hqf7

ImageMagick: META reader memory leak in the APP1JPEG input path

LOW 3.3
NuGet

GHSA-6p22-q7w5-33pg

ImageMagick has possible memory leak in ASHLAR coder when action fails

LOW 3.7
NuGet

GHSA-vmvw-pwwf-cc2w

Duplicate Advisory: OpenClaw has cross-account DM pairing authorization bypass via unscoped pairing store access

LOW 3.7
NuGet

GHSA-2gq3-ww97-wfjm

ImageMagick has a possible heap Use After Free vulnerability in its meta coder

LOW 3.7
NuGet

GHSA-wfx3-6g53-9fgc

ImageMagick: Memory Leak in multiple coders that write raw pixel data

LOW 3.3
NuGet

GHSA-gq5v-qf8q-fp77

ImageMagick: Heap-based Buffer Overflow in GetPixelIndex due to metadata-cache desynchronization

LOW 3.7
NuGet

GHSA-3j4x-rwrx-xxj9

mageMagick has a possible use-after-free write in its PDB decoder

LOW 3.7
NuGet

GHSA-wgxp-q8xq-wpp9

ImageMagick: Malicious PCD files trigger 1‑byte heap Out-of-bounds Read and DoS

LOW 3.7
NuGet

CVE-2026-25984

ImageMagick: Integer Overflow in PSB (PSD v2) RLE decoding path causes heap Out of Bounds reads for 32-bit builds

LOW 3.7
NuGet

CVE-2025-53014

ImageMagick has a Heap Buffer Overflow in InterpretImageFilename

LOW 3.7
NuGet

CVE-2025-53019

ImageMagick has a Memory Leak in magick stream

LOW 2.7
NuGet

CVE-2024-35239

Umbraco Forms components vulnerable to Stored Cross-site Scripting

LOW 3.1
NuGet

GHSA-7jxj-rpx7-ph2c

Umbraco.Forms CDN may cache sensitive form uploads when processed by ImageSharp

LOW 3.7
NuGet

CVE-2026-22611

AWS SDK for .NET V4 adopted defense in depth enhancement for region parameter value

LOW 3.8
NuGet

CVE-2025-57807

ImageMagick BlobStream Forward-Seek Under-Allocation

LOW 3.7
NuGet

CVE-2025-55212

ImageMagick affected by divide-by-zero in ThumbnailImage via montage -geometry ":" leads to crash

LOW 2.4
NuGet

CVE-2025-59546

DNN Vulnerable to Stored XSS Using Backend Admin Credentials

LOW 3.5
NuGet

CVE-2025-48376

DNN site Import could use an external source with a crafted request

LOW 3.3
NuGet

CVE-2025-46326

Snowflake Connector for .NET has race condition when checking access to Easy Logging configuration file

LOW 3.5
NuGet

GHSA-4gmq-m9vp-jrwg

Duplicate Advisory: Umbraco CMS Cross-site Scripting vulnerability

LOW 3.7
NuGet

CVE-2024-28868

Umbraco possible user enumeration

LOW 3.1
NuGet

CVE-2024-49755

Duende IdentityServer has insufficient validation of DPoP cnf claim in Local APIs

LOW 2.5
NuGet

CVE-2024-40636

Steeltoe Leaks Basic Auth Credentials to Logs After Fetch Registry Error

LOW 3.9
NuGet

CVE-2024-27086

MSAL.NET applications targeting Xamarin Android and .NET Android (MAUI) susceptible to local denial of service

LOW 3.1
NuGet

GHSA-frcx-xc72-c4v4

Use of Sha-1 in tusdotnet

LOW 3.7
NuGet

CVE-2023-49274

SMTP misconfiguration leading to "Forgot Password" exploit that leaks registered user email.

LOW 2.1
NuGet

CVE-2021-22143

Exposure of Sensitive Information in Elastic APM .NET Agent

LOW 3.5
NuGet

CVE-2020-36620

EnumStringValues vulnerable to Uncontrolled Resource Consumption

Ready to move

Start Securing

Free, no credit card | First findings in minutes