Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.37.0 until 1.37.5 and 1.38.3, the HTTP OAuth2 filter ...
Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.36.0 until 1.36.9, 1.37.5, and 1.38.3, a Use-After-Fr...
Docmost versions prior to 0.71.0 suffer from a persistent cross site scripting vulnerability...
A low-privileged Docmost user could supply a victim attachmentId to the generic upload endpoint and overwrite another page's stored attachment insi...
In Docmost versions 0.70.0 through 0.70.2, restricted child pages hidden from public share viewers could still leak through public share search res...
The Frontend File Manager Plugin WordPress plugin through 23.6 does not properly verify ownership of every targeted post before permanent deletion,...
Mattermost Plugins versions
Unauthenticated Insecure Direct Object References (IDOR) in GravityView
Unauthenticated Sensitive Data Exposure in Bopo – WooCommerce Product Bundle Builder
Subscriber Broken Access Control in WPComplete
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.