Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Flowise: Credential Data Leak
JeecgBoot User List Endpoint SysUserController.java queryPageList information disclosure
SecureAge CatchPulse IOCTL saappctl.sys information disclosure
erzhongxmu JeeWMS Boot Actuator Endpoint actuator information disclosure
Path Traversal in Altium Projects Service Allows Arbitrary File Read
Server-Side Request Forgery in Altium Platform Design GraphQL Service Allows Information Disclosure
async-http-client: Cookie header not stripped on cross-origin redirect
HAX CMS Vulnerable to Private Key Disclosure via Broken HMAC Implementation
Microsoft Graph Information Disclosure Vulnerability
Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs
MISP Dashboard widget field selection may expose restricted user and organisation data
Unauthorized exposure of private galaxies in MISP event template creation
Unauthenticated IPv6 WAN Management Exposure
Weak Static Cryptographic Initialization Vectors
Publicly Readable AWS S3 Telemetry Buckets
Hard-coded APK Resource Credentials & Scepters
FOSSBilling version exposed via asset cache buster
Phoenix Contact: Unauthenticated log download vulnerability in the firmware of CHARX SEC-3xxx charging controllers
LibreChat Exfiltrates Server Secrets via MCP Server URL Injection
NiceGUI: Local file disclosure via Docutils file insertion in ui.restructured_text()
Showing 1 - 20 of 1,000+ results