Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Loytec LINX firmware: Improper Privilege Management in /usr/bin/ltsudo
Accountsservice: accountsservice: arbitrary file read via seticonfile for systemd-homed users
Local privilege escalation in ESET security applications for macOS
Local privilege escalation in ESET security applications for macOS
WPify Woo <= 5.4.16 - Authenticated (Shop Manager+) Privilege Escalation via Arbitrary Option Update via save_option REST Endpoint
OWASP DefectDojo API/Web serializers.py UserSerializer privileges management
Grav API Plugin 1.0.9 Privilege Escalation via Invitations groups
MDJM Event Management <= 1.7.8.4 - Authenticated (Subscriber+) Privilege Escalation via 'set-permissions' and 'change_role' Handlers
Authenticated local root privilege escalation vulnerability in openFT for Linux and Oracle Solaris
Local Privilege Escalation in Gaia Portal
Grav Login Plugin 3.8.11 Privilege Escalation via Profile Update
n8n before 2.29.8 and 2.30.1 Privilege Escalation via Token Exchange
Local Privilege Escalation in servereye client (sensorhub)
praisonai-platform: Any workspace member can promote themselves (or any other member) to owner via PATCH /workspaces/{id}/members/{user_id}
praisonai-platform: Any workspace member can add arbitrary user as owner via POST /workspaces/{id}/members
praisonai-platform: Any workspace member can delete the entire workspace via DELETE /workspaces/{id}
praisonai-platform: Any workspace member can rewrite workspace name, description, and settings via PATCH /workspaces/{id}
praisonai-platform: Any workspace member can remove any other member (including the owner) via DELETE /workspaces/{id}/members/{user_id}
PraisonAI Platform has a cross-workspace IDOR + member-role privilege escalation
Easy Form Builder by WhiteStudio <= 4.0.11 - Unauthenticated Privilege Escalation to Administrator via Password Recovery REST Endpoint
Showing 1 - 20 of 1,000+ results