Recent
Insufficient isolation of JavaScript (Duktape) execution context on Zabbix Server
Published 2026-03-24 by Zabbix
Parse Server: Denial of service via unindexed database query for unconfigured auth providers
Published 2026-03-24 by GitHub_M
Parse Server: Session update endpoint allows overwriting server-generated session fields
Published 2026-03-24 by GitHub_M
Parse Server: LiveQuery subscription query depth bypass
Published 2026-03-24 by GitHub_M
Parse Server: Query condition depth bypass via pre-validation transform pipeline
Published 2026-03-24 by GitHub_M
Parse Server: Protected field change detection oracle via LiveQuery watch parameter
Published 2026-03-24 by GitHub_M
Parse Server: LiveQuery bypasses CLP pointer permission enforcement
Published 2026-03-24 by GitHub_M
Parse Server: Auth provider validation bypass on login via partial authData
Published 2026-03-24 by GitHub_M
Missing Authentication for Critical Function in Pharos Controls Mosaic Show Controller
Published 2026-03-24 by icscert
Parse Server: Email verification resend page leaks user existence
Published 2026-03-24 by GitHub_M
Load more ↓