Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Jervis has a Weak Random for Timing Attack Mitigation
Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin <= 1.6.9.5 - Unauthenticated Sensitive Information Exposure
libtpms returns wrong initialization vector when certain symmetric ciphers are used
Login Lockdown & Protection <= 2.14 - IP Block Bypass
Predictable Default Wi-Fi Password in EZCast Pro II Dongle
Nextcloud Calendar app used predictable proposal participant tokens
gokey allows secret recovery from a seed file without the master password
An authentication bypass vulnerability has been identified in the IFTTT integration feature
RNP 0.18.0 Vulnerable PKESK session keys
Hydra Booking – All in One Appointment Booking System | Appointment Scheduling, Booking Calendar & WooCommerce Bookings <= 1.1.27 - Unauthenticated...
Reuse of session IDs in oatpp-mcp leads to session hijacking and prompt hijacking by remote attackers
Banhammer – Monitor Site Traffic, Block Bad Users and Bots <= 3.4.8 - Unauthenticated Protection Mechanism Bypass
youth-is-as-pale-as-poetry e-learning JWT Token JwtUtils.java encryptSecret random values
Usage of unsafe random function in form-data for choosing boundary
D-Link DCS-6517/DCS-7517 Root Password Generation httpd generate_pass_from_mac entropy
Vantage6 Server JWT secret not cryptographically secure
Poor quality of randomness in authorization tokens
PSW Front-end Login & Registration <= 1.12 - Insufficiently Random Values to Unauthenticated Account Takeover/Privilege Escalation via customer_reg...
Tmall Demo Payment Identifier pay random values
vLLM AIBrix Prefix Caching hash.go random values
Showing 1 - 20 of 1,000+ results