Filter
-Infinity
0

The RegisterNorth Korea targets crypto developers via NPM supply chain attack

First published (updated )

npmA local user can bypass the OpenAFS PAG (Process Authentication Group) throttling mechanism in Unix client

8.4
First published (updated )

Linux Kernelafs: Fix corruption in reads at fpos 2G-4G from an OpenAFS server

First published (updated )

npmSSRF

First published (updated )

npmPath Traversal

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

npmMalicious File Upload

7.5
First published (updated )

npmThe FILES directive inside a VM template allows execution of uploaded files when the template is instantiated, resulting in a Remote Code Execution (RCE) attack.

First published (updated )

npmThe FILES Directive allows arbitrary files from the frontend system (including sensitive files) to be included when a VM is started from that template, which may result in Information Disclosure.

First published (updated )

npmCreation of Temporary File in Directory with Insecure Permissions in auto-generated Java, Scala code

First published (updated )

npmCreation of Temporary File in Directory with Insecure Permissions in the OpenAPI-Generator online generator

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

npmCreation of Temporary File in Directory with Insecure Permissions in the OpenAPI Generator Maven plugin

First published (updated )

npmOpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to an information disclosure vulnerability bec…

7.5
First published (updated )

npmOpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to information leakage upon certain error cond…

First published (updated )

npmOpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to denial of service from unserialized data ac…

7.5
First published (updated )

npmOpenAPI Tools OpenAPI Generator before 4.0.0-20190419.052012-560 uses http:// URLs in various build.…

8.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

npmAn issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as …

7.5
First published (updated )

npmInfoleak

7.5
First published (updated )

npmAn issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. The backup tape controller …

First published (updated )

DebianOpenAFS 1.x before 1.6.22 does not properly validate Rx ack packets, which allows remote attackers t…

7.8
First published (updated )

npmInfoleak

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

npmThe newEntry function in ptserver/ptprocs.c in OpenAFS before 1.6.17 allows remote authenticated use…

First published (updated )

DebianOff-by-one error in afs_pioctl.c in OpenAFS before 1.6.16 might allow local users to cause a denial …

7.8
First published (updated )

npmInfoleak

First published (updated )

npmInfoleak

First published (updated )

npmInfoleak

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DebianBuffer Overflow

First published (updated )

npmBuffer Overflow

First published (updated )

npmOpenAFS before 1.6.13 allows remote attackers to spoof bos commands via unspecified vectors.

First published (updated )

npmBuffer Overflow

2.1
First published (updated )

npmInfoleak

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203