Ecosyste.ms: OpenCollective
An open API service for software projects hosted on Open Collective.
Critical
Ecosystems: npm
Packages: @sequelize/core, sequelize
Source: github
Published: almost 2 years ago
sequelize: GSA_kwCzR0hTQS12cWZ4LWdqOTYtM3c5Nc4AAxyK
Unsafe fall-through in getWhereConditionsEcosystems: npm
Packages: @sequelize/core, sequelize
Source: github
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: sequelize
Source: github
Published: almost 2 years ago
sequelize: GSA_kwCzR0hTQS13cmg5LWNqdjMtMmhwd84AAxxu
Sequelize vulnerable to SQL Injection via replacementsEcosystems: npm
Packages: sequelize
Source: github
Published: almost 2 years ago
High
Ecosystems: maven
Packages: com.ctrip.framework.apollo:apollo
Source: github
Published: almost 2 years ago
apollo: GSA_kwCzR0hTQS0zNjh4LXdtbWctaHE1Y84AAxxt
Apollo has potential access control security issue in eurekaEcosystems: maven
Packages: com.ctrip.framework.apollo:apollo
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: maven
Packages: com.ctrip.framework.apollo:apollo
Source: github
Published: almost 2 years ago
apollo: GSA_kwCzR0hTQS1mbXhxLXY4bWctcWgyNc4AAxxs
apollo-portal has potential CSRF issueEcosystems: maven
Packages: com.ctrip.framework.apollo:apollo
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: microweber/microweber
Source: github
Published: almost 2 years ago
microweber: GSA_kwCzR0hTQS1tdjM3LXhybWMtaGY2NM4AAxwi
Microweber Cross-site Scripting vulnerabilityEcosystems: packagist
Packages: microweber/microweber
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: almost 2 years ago
pixelfed: GSA_kwCzR0hTQS1xaDZ3LXBxNTItcXh4cc4AAxuy
Pixelfed may allow unauthorized actor to view private postsEcosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: almost 2 years ago
pixelfed: GSA_kwCzR0hTQS12anh4LWpnY3gtOWZxMs4AAxul
Pixelfed allows user enumeration via reset password functionalityEcosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: npm
Packages: undici
Source: github
Published: almost 2 years ago
undici: GSA_kwCzR0hTQS01cjlnLXFoNm0tanhmZs4AAxq9
CRLF Injection in Nodejs ‘undici’ via hostEcosystems: npm
Packages: undici
Source: github
Published: almost 2 years ago
High
Ecosystems: npm
Packages: undici
Source: github
Published: almost 2 years ago
undici: GSA_kwCzR0hTQS1yNmNoLW1xZjktcWM5d84AAxq-
Regular Expression Denial of Service in HeadersEcosystems: npm
Packages: undici
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: npm
Packages: @sequelize/core, sequelize
Source: github
Published: almost 2 years ago
sequelize: GSA_kwCzR0hTQS04YzI1LWYzbWotdjZoOM4AAxqp
Sequelize information disclosure vulnerabilityEcosystems: npm
Packages: @sequelize/core, sequelize
Source: github
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: sequelize, @sequelize/core
Source: github
Published: almost 2 years ago
sequelize: GSA_kwCzR0hTQS04bXdxLW1qNzMtcXY2OM4AAxqm
Duplicate advisory: Sequelize vulnerable to Improper Filtering of Special ElementsEcosystems: npm
Packages: sequelize, @sequelize/core
Source: github
Published: almost 2 years ago
High
Ecosystems: pypi
Packages: kiwitcms
Source: github
Published: almost 2 years ago
Kiwi: GSA_kwCzR0hTQS03OTY4LWg0bTQtZ2htOc4AAxpr
No protection against brute-force attacks on login pageEcosystems: pypi
Packages: kiwitcms
Source: github
Published: almost 2 years ago
High
Ecosystems: pypi
Packages: kiwitcms
Source: github
Published: almost 2 years ago
Kiwi: GSA_kwCzR0hTQS03ajloLTNqeGYtM3ZyZs4AAxpq
Denial of service vulnerability on Password reset pageEcosystems: pypi
Packages: kiwitcms
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS05dzh4LTVodjUtcjZnd84AAxpQ
Cross Site Scripting in usememos/memosEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: npm
Packages: ra-ui-materialui, react-admin
Source: github
Published: almost 2 years ago
react-admin: GSA_kwCzR0hTQS01amNyLTgyZmgtMzM5ds4AAxmS
Cross-Site-Scripting attack on `<RichTextField>`Ecosystems: npm
Packages: ra-ui-materialui, react-admin
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: npm
Packages: @sideway/formula
Source: github
Published: almost 2 years ago
formula: GSA_kwCzR0hTQS1jMmpjLTRmcHItNHZoZ84AAxfy
@sideway/formula contains Regular Expression Denial of Service (ReDoS) VulnerabilityEcosystems: npm
Packages: @sideway/formula
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
wallabag: GSA_kwCzR0hTQS0ycXhwLXhteDYtY3E0Zs4AAxel
Cross-Site Request Forgery (CSRF) in wallabag/wallabagEcosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
wallabag: GSA_kwCzR0hTQS0zeDJjLTg3Y3EtcXg0Oc4AAxei
Cross-site Scripting (XSS) in wallabag/wallabagEcosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
Low
Ecosystems: cargo
Packages: tokio
Source: github
Published: almost 2 years ago
tokio: GSA_kwCzR0hTQS00cTgzLTdjcTQtcDZ3Z84AAxat
`tokio::io::ReadHalf<T>::unsplit` is UnsoundEcosystems: cargo
Packages: tokio
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
wallabag: GSA_kwCzR0hTQS1tcnF4LW1qYzQtdmZoM84AAxYc
wallabag subject to Improper Authorization via annotationsEcosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
wallabag: GSA_kwCzR0hTQS1xd3g4LW14eHgtbWc5Ns4AAxYb
wallabag contains Improper Authorization via export featureEcosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
wallabag: GSA_kwCzR0hTQS1oNDVmLXJqdnctMnJ2Ms4AAxUc
Withdrawn: wallabag subject to Improper AuthorizationEcosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
wallabag: GSA_kwCzR0hTQS14cnczLXdxcGgtM2Z4Z84AAxUd
Withdrawn: wallabag subject to Improper Authorization via annotationsEcosystems: packagist
Packages: wallabag/wallabag
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: microweber/microweber
Source: github
Published: almost 2 years ago
microweber: GSA_kwCzR0hTQS1wajk3LXI4M3Ytdmo3Zs4AAxT0
Microweber contains Cross-site ScriptingEcosystems: packagist
Packages: microweber/microweber
Source: github
Published: almost 2 years ago
High
Ecosystems: npm
Packages: parse-server
Source: github
Published: almost 2 years ago
parse-server: GSA_kwCzR0hTQS12bTVyLWM4N3ItcGY2eM4AAxTe
Parse Server option `masterKeyIps` vulnerability to IP spoofingEcosystems: npm
Packages: parse-server
Source: github
Published: almost 2 years ago
High
Ecosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
magento-lts: GSA_kwCzR0hTQS1oNjMyLXA3NjQtcGpxbc4AAxOZ
DataFlow upload remote code execution vulnerabilityEcosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
High
Ecosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
magento-lts: GSA_kwCzR0hTQS01ajJnLTNwaDQtcmd2bc4AAxOY
Fix for authenticated remote code execution through layout updateEcosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
magento-lts: GSA_kwCzR0hTQS0zcDczLW1tN3YtNGY2bc4AAxOW
DoS vulnerability in MaliciousCode filterEcosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
High
Ecosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
magento-lts: GSA_kwCzR0hTQS01dnB2LXhtY2otOXE4Nc4AAxOV
Fix for arbitrary file deletion in customer media allows for remote code executionEcosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
High
Ecosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
magento-lts: GSA_kwCzR0hTQS1jOXEzLXI0cnYtbWptN84AAxOU
Fix for arbitrary command execution in custom layout update through blocksEcosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
magento-lts: GSA_kwCzR0hTQS1yM2M5LTlqNXEtcHd2NM4AAxJH
magento-lts Reset Password not protected against well-timed CSRFEcosystems: packagist
Packages: openmage/magento-lts
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: rubygems
Packages: commonmarker
Source: github
Published: almost 2 years ago
commonmarker: GSA_kwCzR0hTQS02MzZmLXhtNWotcGo5bc4AAxIx
Several quadratic complexity bugs may lead to denial of service in CommonmarkerEcosystems: rubygems
Packages: commonmarker
Source: github
Published: almost 2 years ago
High
Ecosystems: npm
Packages: ua-parser-js
Source: github
Published: almost 2 years ago
ua-parser-js: GSA_kwCzR0hTQS1maGc3LW04OXEtMjVyM84AAxIw
ReDoS Vulnerability in ua-parser-js versionEcosystems: npm
Packages: ua-parser-js
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/go-sonic/sonic
Source: github
Published: almost 2 years ago
sonic: GSA_kwCzR0hTQS0yeDQ4LXA2Y3EtNXhjd84AAxHY
Path Traversal in github.com/go-sonic/sonicEcosystems: go
Packages: github.com/go-sonic/sonic
Source: github
Published: almost 2 years ago
High
Ecosystems: packagist
Packages: yiisoft/yii2-gii
Source: github
Published: almost 2 years ago
yii2-gii: GSA_kwCzR0hTQS0zbXBnLXEyNmotODNqNc4AAxHH
Command injection in yiisoft/yii2-giiEcosystems: packagist
Packages: yiisoft/yii2-gii
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: cargo
Packages: git2, libgit2-sys
Source: github
Published: almost 2 years ago
libgit2: GSA_kwCzR0hTQS1tNGNoLXJmdjUteDVnM84AAxHC
git2-rs fails to verify SSH keys by defaultEcosystems: cargo
Packages: git2, libgit2-sys
Source: github
Published: almost 2 years ago
Critical
Ecosystems: npm
Packages: electerm
Source: github
Published: almost 2 years ago
electerm: GSA_kwCzR0hTQS14NzN3LWc4aHgtdjdycM4AAxGk
Code injection in electermEcosystems: npm
Packages: electerm
Source: github
Published: almost 2 years ago
High
Ecosystems: npm
Packages: rsshub
Source: github
Published: almost 2 years ago
RSSHub: GSA_kwCzR0hTQS02NHdwLWpoOXAtNWNnMs4AAw6f
RSSHub SSRF vulnerabilityEcosystems: npm
Packages: rsshub
Source: github
Published: almost 2 years ago
Low
Ecosystems: packagist
Packages: flarum/core
Source: github
Published: almost 2 years ago
framework: GSA_kwCzR0hTQS1ocGgzLWh2M2MtNzcyNc4AAw3b
Any Flarum user including unactivated can reply in public discussions whose first post was permanently deletedEcosystems: packagist
Packages: flarum/core
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: packagist
Packages: flarum/core
Source: github
Published: almost 2 years ago
framework: GSA_kwCzR0hTQS04Z2NnLXZ3bXctcnhqNM4AAw3a
Flarum notifications can leak restricted contentEcosystems: packagist
Packages: flarum/core
Source: github
Published: almost 2 years ago
High
Ecosystems: packagist
Packages: flarum/mentions
Source: github
Published: almost 2 years ago
framework: GSA_kwCzR0hTQS0yMm05LW0zd3ctNTNoM84AAw3Z
Flarum post mentions can be used to read any post on the forum without access controlEcosystems: packagist
Packages: flarum/mentions
Source: github
Published: almost 2 years ago
High
Ecosystems: npm
Packages: convict
Source: github
Published: almost 2 years ago
node-convict: GSA_kwCzR0hTQS00anJtLWMzMngtdzRqZs4AAw3Y
convict vulnerable to Prototype PollutionEcosystems: npm
Packages: convict
Source: github
Published: almost 2 years ago
High
Ecosystems: npm
Packages: debug
Source: github
Published: almost 2 years ago
debug: GSA_kwCzR0hTQS05dnZ3LWNjOXctZjI3aM4AAw0l
debug Inefficient Regular Expression Complexity vulnerabilityEcosystems: npm
Packages: debug
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS04Njg2LTRjcjMtNzZ3as4AAwyw
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS1wY3ZoLXB4MnAtdm14d84AAwyz
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS1oMnBoLTlyNzYtMzd2Nc4AAwyv
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS05aDd4LTlwbWgtN2dnOM4AAwyu
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS14MjJ2LXFnbTItN3FjN84AAwyx
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
memos: GSA_kwCzR0hTQS1mcGpjLWN4cjYtdzZoOM4AAwyy
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: almost 2 years ago
Moderate
Ecosystems: cargo
Packages: tokio
Source: github
Published: almost 2 years ago
tokio: GSA_kwCzR0hTQS03cnJqLXhyNTMtODJwN84AAwyk
Tokio reject_remote_clients configuration may get dropped when creating a Windows named pipeEcosystems: cargo
Packages: tokio
Source: github
Published: almost 2 years ago
Critical
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS04dzVxLTVmcHEtdjRwbc4AAwrb
usememos/memos Cross-site Scripting vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Critical
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS14OXA5LXYzeDYtNjhtcc4AAwra
usememos/memos vulnerable to Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS02d2hqLThnOWctNWp2eM4AAwqm
usememos/memos vulnerable to Improper Handling of Insufficient Permissions or PrivilegesEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1jd3JtLTMzcXEtNHcyeM4AAwp6
usememos/memos Cross-Site Request Forgery vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS12aDQzLWNjNngtcHJwcs4AAwqF
usememos/memos vulnerable to Improper Verification of Source of a Communication ChannelEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1jNWhxLTM1aDctcjl4NM4AAwqA
usememos/memos Cross-Site Request Forgery vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1wd2hyLXA2OHctMjk2eM4AAwqE
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS01anFwLXdtaGotZzMzZs4AAwqB
usememos/memos Cross-Site Request Forgery vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1ybWh4LTloNWgtM3hoM84AAwqC
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1neHFmLTRnNHAtcTNoY84AAwqD
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1ndzltLTJtNXYtYzZ4Nc4AAwp7
usememos/memos Cross-Site Request Forgery vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS02NDJxLTJxNjgtOWozcM4AAwp-
usememos/memos Cross-Site Request Forgery vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1yN2hnLTJjcHAtOHdxcc4AAwp_
usememos/memos has Incorrectly Specified Destination in a Communication ChannelEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS00MnEyLW01NGYtamg5Nc4AAwp8
sememos/memos vulnerable to Improper Handling of ValuesEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1tNXByLXdtNnEteDRnMs4AAwpL
usememos/memos vulnerable to Comparison of Object References Instead of Object ContentsEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1nZmo0LXdnODktbTIycs4AAwo7
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS02Zng5LTI5eDItZm1mas4AAwpG
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1yM3AzLTVmMzUtaDZtZs4AAwpF
usememos/memos Improper Privilege Management vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1oYzVxLTI2aDgtcjl3Zs4AAwo6
usememos/memos Improper Authorization vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1tcTVxLWdwZ3YtcHd4d84AAwpH
usememos/memos Incorrect Use of Privileged APIs vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS03cXB3LTJqOW0tcnc4Y84AAwpJ
usememos/memos has Insufficient Granularity of Access ControlEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1xZjlxLTN3d3gtOHFqds4AAwpE
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS02dzV3LXd4OHctMmNxOc4AAwpK
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1wcDNwLTZqamgtcm1nN84AAwpC
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1mODNwLXBnODYtcDkyMs4AAwpB
usememos/memos has Insufficient Granularity of Access ControlEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1tZnZxLW0zamotODg2NM4AAwo8
usememos/memos vulnerable to Improper Verification of Source of a Communication ChannelEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1xY2Y1LW0yYzYtODlmMs4AAwo_
usememos/memos Improper Authorization vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1tZm1wLThtcWctcTR3bc4AAwpD
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1yeDJtLXhyNHgtNTRoaM4AAwpA
usememos/memos vulnerable to Improper AuthorizationEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1xdzM2LXJ3NXEtZ3hjcc4AAwpI
usememos/memos Improper Authorization vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1qdnE4LXc3cXYtaHFwNs4AAwo-
usememos/memos Improper Authentication vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1naHgyLTZ2NGctOXdtbc4AAwo5
usememos/memos makes Incorrect Use of Privileged APIsEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1xcnJmLXh2Y2YtcDY0cc4AAwo9
usememos/memos vulnerable Improper Restriction of Excessive Authentication AttemptsEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: packagist
Packages: microweber/microweber
Source: github
Published: about 2 years ago
microweber: GSA_kwCzR0hTQS04aDQzLXhnNWctOWNqN84AAwnh
Microweber vulnerable to unrestricted malicious uploadsEcosystems: packagist
Packages: microweber/microweber
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS12OTJwLXBobXAteGZmcs4AAwno
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1jMnY0LThyOWctZzV4as4AAwnt
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS05N3JjLW1tNWotZjZyas4AAwnr
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1qNTkzLWg1djMtNDV4Ns4AAwny
usememos/memos may leak user information to an authenticated userEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS0zM204LWY0aHctd20zcc4AAwne
usememos/memos Denial of Service vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: npm
Packages: markdown-it
Source: github
Published: about 2 years ago
markdown-it: GSA_kwCzR0hTQS1qNXA3LWpmNHEtNzQycc4AAwnP
markdown-it vulnerable to Inefficient Regular Expression ComplexityEcosystems: npm
Packages: markdown-it
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1mNTUyLTk3cXgtYzY5NM4AAwk8
usememos/memos vulnerable to stored Cross-site ScriptingEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Critical
Ecosystems: packagist
Packages: topthink/framework
Source: github
Published: about 2 years ago
framework: GSA_kwCzR0hTQS1wNHFyLXZxMmctMjJ3cM4AAwkn
ThinkPHP Framework vulnerable to remote code executionEcosystems: packagist
Packages: topthink/framework
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1xY3cyLTQ5MnYtNTd4as4AAwkV
usememos/memos missing Secure cookie attributeEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1mdjZjLXJmZzMtZ3Zqd84AAwkU
usememos/memos makes Incorrect Use of Privileged APIsEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1xcjUyLTU5cjYtNDlmNM4AAwkX
usememos/memos Improper Access Control vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS13NTd2LTZ4cDQtcm0yds4AAwkT
usememos/memos vulnerable to account takeover due to improper access controlEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS05djQ4LTJoNXgtZnZwbc4AAwkS
usememos/memos vulnerable to improper access controlEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Critical
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS02OGd3LXIyeDUtN3I1cs4AAwkY
usememos/memos Authorization Bypass Through User-Controlled Key vulnerabilityEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
High
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS12d2c0LTg0NngtZjk0ds4AAwkW
usememos/memos vulnerable to improper authorizationEcosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
Moderate
Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago
memos: GSA_kwCzR0hTQS1jOGpoLXZjamgtZngyd84AAwkR
usememos/memos vulnerable to stored cross-site scripting (XSS)Ecosystems: go
Packages: github.com/usememos/memos
Source: github
Published: about 2 years ago