CVE Browser
MaxKB function-library sandbox escape: dlopen stack-check bypass via importlib meta-path callbacks and unhooked dlsym(RTLD_NEXT)
MaxKB: Sandbox escape via unhooked fexecve
MaxKB cross-knowledge IDOR lets a normal user read and modify documents and paragraphs in another knowledge base
MaxKB: Prompt-injectable agent can lead to command execution
MaxKB: Authenticated full-read SSRF via the knowledge web-document import/sync crawler (Fork.fork requests.get, no internal-IP guard, non-blind)
MaxKB: Chat share-link endpoint missing owner check: a chat token can publish another user's conversation
MaxKB: Missing per-tool authorization in the agent and workflow tool-dispatch path
MaxKB: Cross-workspace model parameter form write
MaxKB: Management chat-record routes trust path application_id but load ChatRecord by global chat_id
MaxKB: Known MCP tool IDs expose owner Tool.code and can be referenced by attacker workflows
MaxKB AWS Bedrock model credential injection leads to remote code execution
MaxKB: Homepage ranking leaks application IDs that workflow application-nodes can use to invoke another user's application
MaxKB: Expired application API keys remain usable on `/chat/api/mcp`
CordysCRM: Unauthenticated arbitrary file disclosure via `/attachment/preview/{id}` and `/pic/preview/{id}`
CordysCRM MCP Form Configuration Endpoint Exposed to Anonymous Users
CordysCRM: Authenticated SQL injection via `sort.name` on `POST /account-pool/page`
CordysCRM: SSRF via Approval Flow Webhook Execution due to Missing SSRF Validation at Runtime
CordysCRM: Broken object-level authorization in lead pool and account pool detail endpoints exposes arbitrary leads and accounts
CordysCRM SSE Notification Stream Hijack via `/sse/subscribe`
CordysCRM: Customer Public Pool Sorting Field SQL Injection
KubePi: Unauthenticated SSO/OIDC configuration allows admin account takeover and SSRF
KubePi: Insufficient per-cluster authorization checks in cluster management APIs
MaxKB: UpdateStoreTool fetches caller-supplied app-store URLs without host validation
1Panel-dev CordysCRM Third Party Edit Endpoint IntegrationConfigService.java getSqlBotSrc server-side request forgery
1Panel-dev CordysCRM Third Party Endpoint TokenService.java server-side request forgery
Showing 1 to 25 CVEs · page 1 (more available)