Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
ClipBucket: SQL Wildcard Injection in Subtitle Edit Endpoint Allows Mass Subtitle Overwrite
Improper Neutralization of Wildcards or Matching Symbols in CloudEdge Online Cameras and App
GlobalProtect: Authenticated Code Injection Through Wildcard on macOS
Laravel has a File Validation Bypass
New Rock Technologies Cloud Connected Devices Improper Neutralization of Wildcards or Matching Symbols
The kubewarden-controller AdmissionPolicy and AdmissionPolicyGroup policies can be used to alter PolicyReport resources
Expedition: Wildcard Expansion Vulnerability
Ruijie Reyee OS Improper Neutralization of Wildcards or Matching Symbols
PAN-OS: Arbitrary File Read Vulnerability in the Command Line Interface (CLI)
Marinus Pfund, member of the AXIS OS Bug Bounty Program, has found the VAPIX API alwaysmulti.cgi was vulnerable for file globbing which could lead ...
Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX APIs mediaclip.cgi and playclip.cgi was vulnerable for file globbi...
Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX APIs local_list.cgi, create_overlay.cgi and irissetup.cgi was vuln...
Lookup operations do not take into account wildcards in SpiceDB
Information Disclosure
Additional information exposure with Spring Data JPA example matcher