Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Stored Cross-Site Scripting in Altium Workflow Engine Allows Privilege Escalation
Rocket.Chat Unauthorized Access to OAuth App Details
Cursor has a Terminal Tool Allowlist Bypass via Environment Variables
Administrator Account Creation Vulnerability in BLUVOYIX
Local Privilege Escalation
Termix has a Stored XSS in File Manager leading to Local File Inclusion (LFI) in Electron and Session Hijacking in Browser
Frontend Admin by DynamiApps <= 3.28.25 - Unauthenticated Privilege Escalation to Administrator via Role Form Field
ZTE MF258K Pro Version Server has a Configuration Defect Vulnerability
RustFS has IAM deny_only Short-Circuit that Allows Privilege Escalation via Service Account Minting
PRIVILEGE ESCALATION VIA SUDO COMMAND
Apache StreamPipes: Leverage of User ID for Privilege Escalation
theshit vulnerable to unsafe loading of user-owned Python rules when running as root.
Self-hosted n8n has Legacy Code node that enables arbitrary file read/write
Inadequate account permissions management
Privilege Bypass in ADB
Flex Store Users <= 1.1.0 - Unauthenticated Privilege Escalation
Galette has a privilege escalation vulnerability
HiSecOS 04.0.01 Privilege Escalation via User Role Modification
ClipBucket's Manage Photos Feature is Vulnerable to Stored XSS via Collection Name
Parse Server GitHub CI workflow vulnerable to RCE through Improper Privilege Management
Showing 1 - 20 of 1,000+ results