Open Source Vulnerabilities
apptainer
Security update for apptainer
visegripped Stracker api.php getHistory sql injection
radare2, radare2, radare2, radare2, radare2, radare2
node-minimatch
node-minimatch - security update
Cross-site Scripting (XSS) - Reflected in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Improper Authentication in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Weak Password Requirements in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in radareorg/radare2
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in radareorg/radare2
publify_core
Integer overflow in publify_core
publify_core
Publify Core does not strip metadata from images
publify_core
Publify Core does not strip metadata from images
publify_core
Publify Improper Input Validation vulnerability
publify_core
Publify Improper Input Validation vulnerability
libplist
Heap-buffer-overflow in parse_skip_ws
org.apache.shiro:shiro-root
Apache Shiro Interpretation Conflict vulnerability
org.apache.shiro:shiro-root
Apache Shiro Interpretation Conflict vulnerability
shiro, shiro, shiro, shiro, shiro, shiro
,
Apache Shiro before 1.11.0, when used with Spring Boot 2.6+, may allow authentication bypass through a specially crafted HTTP request
/
Apache Shiro before 1.11.0, when used with Spring Boot 2.6+, may allow authentication bypass through a specially crafted HTTP request
grumpydictator/firefly-iii
Improper Authorization in grumpydictator/firefly-iii
grumpydictator/firefly-iii
Improper Authorization in grumpydictator/firefly-iii
pyload-ng
Code Injection in pyload-ng
netdata, netdata, netdata, netdata, netdata
Netdata is vulnerable to improper authentication
Netdata vulnerable to command injection
Izanami is vulnerable to Authorization Bypass
Autolab is vulnerable to file disclosure via remote handin feature
Autolab is vulnerable to file disclosure via remote handin feature
Nextcloud Deck vulnerable to authorization bypass
Nextcloud Deck vulnerable to uncontrolled resource consumption
Nextcloud Deck vulnerable to uncontrolled resource consumption
golang.org/x/net
golang.org/x/net/http2/h2c vulnerable to request smuggling attack
golang.org/x/net
golang.org/x/net/http2/h2c vulnerable to request smuggling attack
neo4j-apoc-procedures is vulnerable to path traversal
KubePi is vulnerable to missing authorization
Autolab is vulnerable to remote code execution (RCE) via MOSS functionality
Autolab is vulnerable to remote code execution (RCE) via MOSS functionality
