Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

pixelfed

We are on a mission to create an open and ethical image sharing platform.
Collective - Host: opensource - https://opencollective.com/pixelfed - Code: https://github.com/pixelfed/pixelfed

Critical
pixelfed: GSA_kwCzR0hTQS1nY2NxLWgzeGotamd2Zs4AA5N1
Pixelfed doesn't check OAuth Scopes in API routes, giving elevated permissions
Ecosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: 12 months ago
Moderate
pixelfed: GSA_kwCzR0hTQS1xaDZ3LXBxNTItcXh4cc4AAxuy
Pixelfed may allow unauthorized actor to view private posts
Ecosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: almost 2 years ago
Moderate
pixelfed: GSA_kwCzR0hTQS12anh4LWpnY3gtOWZxMs4AAxul
Pixelfed allows user enumeration via reset password functionality
Ecosystems: packagist
Packages: pixelfed/pixelfed
Source: github
Published: almost 2 years ago