Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Apache Syncope: Remote Code Execution via Scripted Connector
Apache Syncope: Remote Code Execution via Flowable BPMN Groovy ScriptTask
Apache Syncope: RCE via Groovy Sandbox bypass
Cross-namespace traffic interception via incorrect route precedence ordering in AWS Load Balancer Controller
GPU DDK - SharedSecMem mapped into all GPU virtual address spaces
Apache Syncope: Post-auth RCE via Groovy static
Traefik Kubernetes CRD allows unauthorized cross-namespace middleware binding
Spring gRPC SecurityContext leaks across requests on authorization failure
A new API endpoint introduced in pretix 2025 that is supposed to return all check-in events of a specific event in fact returns all check-in even...
API allows deletion of users of other instance
Electron: nodeIntegrationInWorker not correctly scoped in shared renderer processes
Keycloak: keycloak: replay of action tokens via improper handling of single-use entries
Keycloak: keycloak: privilege escalation via forged authorization codes due to singleuseobjectprovider isolation flaw
Llama-stack-k8s-operator: llama stack service exposed across namespaces due to missing networkpolicy
Remote Code Execution in ServiceNow AI Platform
Lack of isolation in mcp-run-python leads to MCP server takeover
Network boundaries not respected in certain Foundry namespaces.
An Improper Isolation or Compartmentalization vulnerability [CWE-653] in Fortinet FortiSandbox 5
Incorrect oauth passthrough in Grafana Databricks Datasource
Incorrect oauth passthrough in Grafana Snowflake Datasource
Showing 1 - 20 of 1,000+ results