Vulnerabilities

Last updated 3 hours ago
Filters
Severity
Critical Severity
CVSS Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
High Severity
CVSS Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
Medium Severity
CVSS Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
Low Severity
CVSS Score Range: < 4.0
Low severity vulnerabilities (CVSS < 4.0). Hygiene issues that can accumulate but pose lower immediate risk.
Unknown Severity
CVSS Score Range: No score
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
Package Summary Severity Published Modified
github.com/seaweedfs/seaweedfs SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access High Risk 8.0 1 month ago 4 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access in github.com/seaweedfs/seaweedfs Unknown 1 month ago 4 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Unauthenticated filer IAM gRPC service grants S3 administrative control Critical 9.8 26 days ago 18 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Unauthenticated filer IAM gRPC service grants S3 administrative control in github.com/seaweedfs/seaweedfs Unknown 18 days ago 18 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Filer JWT allowed_prefixes literal prefix match allows cross-tenant access to sibling paths High Risk 8.1 26 days ago 18 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Filer JWT allowed_prefixes literal prefix match allows cross-tenant access to sibling paths in github.com/seaweedfs/seaweedfs Unknown 18 days ago 18 days ago
github.com/seaweedfs/seaweedfs SeaweedFS Vulnerable to SQL Injection Medium Risk 6.5 1 year ago 19 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Path traversal in the S3 gateway X-Amz-Copy-Source header allows cross-bucket object read High Risk 7.7 1 month ago 26 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Path traversal in the S3 gateway X-Amz-Copy-Source header allows cross-bucket object read in github.com/seaweedfs/seaweedfs Unknown 26 days ago 26 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Improper authorization in the S3Tables / Iceberg REST management API lets a low-privileged S3 user enumerate administrator-owned table buckets Medium Risk 4.3 1 month ago 26 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Improper authorization in the S3Tables / Iceberg REST management API lets a low-privileged S3 user enumerate administrator-owned table buckets in github.com/seaweedfs/seaweedfs Unknown 26 days ago 26 days ago
github.com/seaweedfs/seaweedfs SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle Critical 9.3 1 month ago 1 month ago
github.com/seaweedfs/seaweedfs SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle in github.com/seaweedfs/seaweedfs Unknown 1 month ago 1 month ago
github.com/seaweedfs/seaweedfs SeaweedFS Vulnerable to SQL Injection in github.com/seaweedfs/seaweedfs Unknown 1 year ago 7 months ago