Open Source Vulnerabilities
open-webui
Open WebUI: Users denied by the OAuth role policy can still sign in via token exchange
open-webui
Open WebUI: Users denied by the OAuth role policy can still sign in via token exchange
github.com/traefik/traefik/v3, github.com/traefik/traefik/v2
Traefik: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') and Incorrect Authorization
github.com/traefik/traefik/v3/ github.com/traefik/traefik/v2
Traefik: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') and Incorrect Authorization
github.com/traefik/traefik/v3
Traefik entrypoint header-name sanitization bypassed via request trailers
github.com/traefik/traefik/v3
Traefik entrypoint header-name sanitization bypassed via request trailers
github.com/traefik/traefik/v3, github.com/traefik/traefik/v2
Traefik HTTP/3 Backend NTLM Connection Reuse
github.com/traefik/traefik/v3/ github.com/traefik/traefik/v2
Traefik HTTP/3 Backend NTLM Connection Reuse
github.com/traefik/traefik/v3, github.com/traefik/traefik/v2
Traefik: Rootless HTTP/1 request-target routes as "/" but is forwarded verbatim, bypassing path-scoped routing, middleware guards and access logging
github.com/traefik/traefik/v3/ github.com/traefik/traefik/v2
Traefik: Rootless HTTP/1 request-target routes as "/" but is forwarded verbatim, bypassing path-scoped routing, middleware guards and access logging
github.com/rclone/rclone
rclone archive/zip: Zip Slip via unsanitized zip entry names lets a malicious archive escape its own namespace
github.com/rclone/rclone
rclone archive/zip: Zip Slip via unsanitized zip entry names lets a malicious archive escape its own namespace
github.com/rclone/rclone
rclone: http backend forwards custom/auth headers to a different host on redirect
github.com/rclone/rclone
rclone: http backend forwards custom/auth headers to a different host on redirect
github.com/rclone/rclone
rclone: Directory metadata (chmod/chown/chtimes) applied through a planted symlink in rclone local --links escapes the destination
github.com/rclone/rclone
rclone: Directory metadata (chmod/chown/chtimes) applied through a planted symlink in rclone local --links escapes the destination
github.com/rclone/rclone
rclone local: crafted Range request against a translated symlink panics (DoS)
github.com/rclone/rclone
rclone local: crafted Range request against a translated symlink panics (DoS)
github.com/rclone/rclone
rclone serve s3: --auth-proxy without --auth-key authenticates nobody - full SigV4 signature bypass
github.com/rclone/rclone
rclone serve s3: --auth-proxy without --auth-key authenticates nobody - full SigV4 signature bypass
github.com/rclone/rclone
rclone: RC per-server auth-proxy bypass
github.com/rclone/rclone
rclone: RC per-server auth-proxy bypass
github.com/rclone/rclone
rclone: FTP cross-session auth-proxy backend confusion
github.com/rclone/rclone
rclone: FTP cross-session auth-proxy backend confusion
github.com/rclone/rclone
rclone: source object names can escape the configured root on upload
github.com/rclone/rclone
rclone: source object names can escape the configured root on upload
github.com/rclone/rclone
rclone: S3 multipart declared-length memory exhaustion
github.com/rclone/rclone
rclone: S3 multipart declared-length memory exhaustion
open-webui
Open WebUI: Unauthenticated requests can stall the server via uncached OIDC fetches in back-channel logout
open-webui
Open WebUI: Unauthenticated requests can stall the server via uncached OIDC fetches in back-channel logout
open-webui
Open WebUI: Any authenticated user can suppress calendar alerts instance-wide via a non-numeric alert value
open-webui
Open WebUI: Any authenticated user can suppress calendar alerts instance-wide via a non-numeric alert value
open-webui
Open WebUI: Any authenticated user can start a non-terminating request via a folder parent cycle
open-webui
Open WebUI: Any authenticated user can start a non-terminating request via a folder parent cycle
open-webui
Open WebUI: Admin demoted through SSO role sync keeps read and write access to all users' notes
open-webui
Open WebUI: Admin demoted through SSO role sync keeps read and write access to all users' notes
@jhb.software/payload-alt-text-plugin
@jhb.software/payload-alt-text-plugin: Alt Text Endpoint Authorization Bypass via Payload Local API `overrideAccess` Omission
@jhb.software/payload-alt-text-plugin
@jhb.software/payload-alt-text-plugin: Alt Text Endpoint Authorization Bypass via Payload Local API `overrideAccess` Omission
@argos-ci/core
@argos-ci/core: CI Branch Name OS Command Injection
@argos-ci/core
@argos-ci/core: CI Branch Name OS Command Injection
mistralrs-server-core
mistral.rs: Unbounded Remote Media Fetch and Video Frame Expansion DoS
mistralrs-server-core
mistral.rs: Unbounded Remote Media Fetch and Video Frame Expansion DoS
mistralrs-server-core
mistral.rs Media Loader: Unauthenticated SSRF and arbitrary local file read via image_url
mistralrs-server-core
mistral.rs Media Loader: Unauthenticated SSRF and arbitrary local file read via image_url
open-webui
Open WebUI: A user's session cookies are sent to tool servers configured for bearer authentication
open-webui
Open WebUI: A user's session cookies are sent to tool servers configured for bearer authentication
open-webui
Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLite
open-webui
Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLite
omniroute
OmniRoute ACP Custom-Agent Remote Code Execution (RCE)
omniroute
OmniRoute ACP Custom-Agent Remote Code Execution (RCE)
n8n, n8n
n8n: Per-Resource OAuth Consent Bypass via Unbound Refresh Token Resource Substitution
n8n/ n8n
n8n: Per-Resource OAuth Consent Bypass via Unbound Refresh Token Resource Substitution
n8n, n8n
n8n: Instance AI Credential Setup Accepts Unvalidated Probe URL from Fetched Content
n8n/ n8n
n8n: Instance AI Credential Setup Accepts Unvalidated Probe URL from Fetched Content
n8n, n8n, n8n
n8n: Git Node branch.<name>.remote Config Key Bypasses Sandbox Path Restriction, Enabling Local Git Repository Read
n8n/ n8n/ n8n
n8n: Git Node branch.<name>.remote Config Key Bypasses Sandbox Path Restriction, Enabling Local Git Repository Read
n8n, n8n
n8n: Cross-Tenant Project-Member PII Disclosure via Missing Per-Project Scope Check on Role Assignment Endpoints
n8n/ n8n
n8n: Cross-Tenant Project-Member PII Disclosure via Missing Per-Project Scope Check on Role Assignment Endpoints
n8n, n8n, n8n
n8n: Log Streaming Event Destinations Decrypt Generic-Auth Credentials Without Ownership Check
n8n/ n8n/ n8n
n8n: Log Streaming Event Destinations Decrypt Generic-Auth Credentials Without Ownership Check
n8n, n8n, n8n
n8n: Disabled OIDC SSO Endpoints Remain Active and Issue Valid Sessions
n8n/ n8n/ n8n
n8n: Disabled OIDC SSO Endpoints Remain Active and Issue Valid Sessions
n8n, n8n, n8n
n8n: GitHub Trigger 422 Reuse Path Skips Webhook Secret Storage, Causing Signature Verification to Fail-Open
n8n/ n8n/ n8n
n8n: GitHub Trigger 422 Reuse Path Skips Webhook Secret Storage, Causing Signature Verification to Fail-Open
n8n, n8n, n8n
n8n: Path Injection in Elasticsearch and ElasticSecurity Nodes via Unencoded Identifiers
n8n/ n8n/ n8n
n8n: Path Injection in Elasticsearch and ElasticSecurity Nodes via Unencoded Identifiers
n8n, n8n
n8n: Prototype Pollution via Workflow Structure Summary Can Lead to Denial of Service
n8n/ n8n
n8n: Prototype Pollution via Workflow Structure Summary Can Lead to Denial of Service
n8n, n8n, n8n
n8n: Cross-User Active Workflow ID and Lifecycle Event Disclosure via Missing userId Filter
n8n/ n8n/ n8n
n8n: Cross-User Active Workflow ID and Lifecycle Event Disclosure via Missing userId Filter
plural-agent-harness-0.6-fips
paketo-buildpacks-yarn-install
paketo-buildpacks-python-package-managers-run
paketo-buildpacks-python-package-managers-install
paketo-buildpacks-poetry-install
paketo-buildpacks-pipenv-install
paketo-buildpacks-pip-install
