Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Hono has incorrect IP matching in ipRestriction() for IPv4-mapped IPv6 addresses
Vite has a `server.fs.deny` bypass with queries
Rack: Rack::Static header_rules bypass via URL-encoded paths
Varnish Cache before 8
Caddy: Unicode case-folding length expansion causes incorrect split_path index (SCRIPT_NAME/PATH_INFO confusion) in FastCGI transport
FrankenPHP affected by Path Confusion via Unicode casing in CGI path splitting allows execution of arbitrary files
NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause improper processing of input data
A directory traversal vulnerability exists in Ivanti LANDesk Management Gateway through 4
zip Vulnerable to Incorrect Path Canonicalization During Archive Extraction, Leading to Arbitrary File Write
The ip-utils package through 2
A vulnerability in multiple Atlassian products allows a remote, unauthenticated attacker to cause additional Servlet Filters to be invoked when the...
A vulnerability in multiple Atlassian products allows a remote, unauthenticated attacker to bypass Servlet Filters used by first and third party apps