Navidrome allows SQL Injection via role parameter

🛡 Security Advisory: SQL Injection Vulnerability in Navidrome v0.55.2 Overview This vulnerability arises due to improper input validation on the role parameter within the API endpoint /api/artist. ...

Continue Reading
CVE-2025-27151

creation_timestamp| type| source ---|---|--- 2025-05-29 10:08:28+00:00| seen| https://bsky.app/profile/2rZiKKbOU3nTafniR2qMMSE0gwZ.activitypub.awakari.com.ap.brid.gy/post/3lqchwxanfuv2 2025-05-29 11:5 ...

Continue Reading
CVE-2025-37999

creation_timestamp| type| source ---|---|--- 2025-05-29 13:51:01+00:00| seen|...Read More ...

Continue Reading
CVE-2025-48045

creation_timestamp| type| source ---|---|--- 2025-05-29 12:40:10+00:00| seen| https://bsky.app/profile/2rZiKKbOU3nTafniR2qMMSE0gwZ.activitypub.awakari.com.ap.brid.gy/post/3lqcqfmdnnab2 2025-05-29 13:5 ...

Continue Reading
CVE-2025-48472

creation_timestamp| type| source ---|---|--- 2025-05-29 16:42:34+00:00| seen|...Read More ...

Continue Reading
CVE-2025-48389

creation_timestamp| type| source ---|---|--- 2025-05-29 16:42:36+00:00| seen|...Read More ...

Continue Reading
CVE-2025-48748

creation_timestamp| type| source ---|---|--- 2025-05-29 16:42:37+00:00| seen| https://bsky.app/profile/2rZiKKbOU3nTafniR2qMMSE0gwZ.activitypub.awakari.com.ap.brid.gy/post/3lqd5vdjgx3q2 2025-05-29 17:0 ...

Continue Reading
CVE-2025-45474

creation_timestamp| type| source ---|---|--- 2025-05-29 16:42:37+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: