Vulnerability Database

Search the MergeBase vulnerability database for information on known vulnerabilities in open-source components.

Risk Score
High severity
#score-progress-count
Out of 10
Summary
ID
#id-text
CWEs
#cwes-text
Published
#published-text
Updated
#updated-text
Source
NVD
Identifier

#dentifier-text-item

Description
#description-text
MergeBase Comment
#mergebase-comment
Common Weakness Enumeration (CWE)

Open Source Protection

Stay on top of the real risk of open source at any time.

Avoid false positives and get sophisticated upgrade guidance based on risk, compatibility and popularity."

More on Continuous Protection

Add RunTime Protection

Detect and defend against known-vulnerabilities at runtime. The only SCA to do so.

The quickest way to respond to an imminent threat like log4j with CVE-2021-44228.

More on Run-time Protection

Shift Left Now

CodeGreen is an early-warning defence for your in-house development and integrates directly into GitHub and BitBucket

More on BitBucket and Github apps