|
About the Security Adivsories category
|
|
0
|
24
|
March 3, 2025
|
|
OpenZiti edge router MFA posture nil-pointer panic causing authenticated router DoS
|
|
0
|
15
|
August 26, 2026
|
|
Unauthenticated Memory Exhaustion via Unbounded Pre-Auth Request Body Buffering
|
|
0
|
16
|
August 26, 2026
|
|
Legacy Enrollment Path Doubles Per-Request Memory Allocation, Amplifying Memory Exhaustion DoS
|
|
0
|
17
|
August 26, 2026
|
|
Zrok copy writes attacker-controlled WebDAV paths outside the destination root
|
|
0
|
42
|
May 13, 2026
|
|
Zrok Python ProxyShare can be used as an SSRF proxy through absolute URL paths
|
|
0
|
25
|
May 13, 2026
|
|
Broken ownership check in DELETE /api/v2/unaccess allows non-admin to delete global frontend records
|
|
0
|
35
|
April 16, 2026
|
|
Unauthenticated DoS via unbounded memory allocation in striped session cookie parsing
|
|
0
|
52
|
April 16, 2026
|
|
Reflected XSS in GitHub OAuth callback via unsanitized refreshInterval error rendering
|
|
0
|
36
|
April 16, 2026
|
|
Server Side Request Forgery Vulnerability in Ziti Console
|
|
0
|
53
|
March 3, 2025
|
|
Cross Site Scripting Vulnerability in Ziti Console
|
|
0
|
55
|
March 3, 2025
|