kube-audit-rest is a simple logger of mutation/creation requests to the k8s api. If the "full-elastic-stack" example vector configuration was used for a real cluster, the previous va ...
Continue ReadingMay 23, 2025
CloudStack users can add and read comments (annotations) on resources they are authorised to access. Due to an access validation issue that affects Apache CloudStack versions from 4.16.0, users who ha ...
Continue ReadingMay 23, 2025
Umbraco, a free and open source .NET content management system, has an improper access control issue starting in version 14.0.0 and prior to version 14.3.0. The issue allows low-privilege users to acc ...
Continue ReadingMay 23, 2025
Umbraco, a free and open source .NET content management system, has an improper access control issue starting in version 14.0.0 and prior to version 14.3.0. The issue allows low-privilege users to acc ...
Continue ReadingMay 23, 2025
information disclosure while invoking the mailbox read...Read More ...
Continue ReadingMay 23, 2025
information disclosure while invoking the mailbox read...Read More ...
Continue ReadingMay 23, 2025
In version v0.3.8 of open-webui, an improper privilege management vulnerability exists in the API endpoints GET /api/v1/documents/ and POST /rag/api/v1/doc. This vulnerability allows a lower-privilege ...
Continue ReadingMay 23, 2025
An access control vulnerability was discovered in Grafana OSS where an Organization administrator could permanently delete the Server administrator account. This vulnerability exists in the DELETE /ap ...
Continue ReadingMay 23, 2025
Back to Main