Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
A security vulnerability in the /apis/dashboard
Lack of Authentication in the InputManager D-Bus interface
Float Payment Gateway <= 1.1.9 - Improper Authorization to Unauthenticated Order Status Manipulation
Dreamweaver Desktop | Incorrect Authorization (CWE-863)
CP Image Store with Slideshow <= 1.1.9 - Missing Authorization to Authenticated (Contributor+) Arbitrary Product Import
TYPO3 CMS Allows Broken Access Control in Edit Document Controller
Lychee cross-album password propagation on Album unlocking
Multiple vulnerabilities in Viafirma products
Templately <= 3.4.8 - Unauthenticated Limited Arbitrary JSON File Write
Blog2Social: Social Media Auto Post & Scheduler <= 8.7.2 - Incorrect Authorization to Authenticated (Subscriber+) Sensitive Information Exposure
Ghost has Staff Token permission bypass
Under certain configurations, file artifacts uploaded to the Dossier and Slides apps did not inherit security markings of their parent artifact. Th...
WP Table Builder <= 2.0.19 - Incorrect Authorization to Authenticated (Subscriber+) Arbitrary Table Creation
Soft Serve is missing an authorization check in LFS lock deletion
Kirby is missing permission checks in the content changes API
OPEXUS eCASE Audit incorrect access control
RustFS has IAM Incorrect Authorization in ImportIam that Allows Privilege Escalation
Awesome Hotel Booking <= 1.0 - Incorrect Authorization to Unauthenticated Arbitrary Booking Modification
iDS6 DSSPro Digital Signage System 6.2 Privilege Escalation via Access Control
Coolify has a privilege escalation - low privileged user can invite themselves as an admin user
Showing 1 - 20 of 1,000+ results