
apache__nifi_CVE-2022-33140_1-16-22
Automated data flow processing and distribution system with secure configuration, provenance tracking, and extensible plugin architecture for…

Automated data flow processing and distribution system with secure configuration, provenance tracking, and extensible plugin architecture for…

Automated data flow platform for processing and distributing data with built-in provenance tracking, secure configuration, and scalable pipeline…

Open-source network access control (NAC) system with captive portal, 802.1X, BYOD management, wired/wireless enforcement, and IDS/vulnerability…

Web-based admin UI for AAA/TACACS+ services, providing centralized management of authentication, authorization, accounting rules, and system…

Secure, private AI agent operating system with local encrypted storage, OAuth/SSO authentication, policy-based access control, and extensible…

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

A binary and file access authorization system for macOS.

Proof-of-concept exploit for FortiOS authentication bypass (CVE-2024-55591) that allows unauthenticated access to system logs via WebSocket on…

Customer Assurance Operating System. Answer the security questionnaires your customers send you, once.

Proof-of-concept for CVE-2026-55584: IP allowlist bypass in phpSysInfo via spoofed X-Forwarded-For/Client-IP headers, exposing system information…

Python exploit for CVE-2025-5947 targeting authentication bypass in WordPress Service Finder Bookings plugin ≤ 6.0 via cookie spoofing, enabling…

Web-based tool for adding shadow users with SHA-512 password hashing and auto-aging detection, featuring multiple write fallback methods for system…

The Governed Agentic AI Operating System — Rust + Tauri 2.0 | 65 crates, 658 commands, 84 pages, 5,029 tests, 10/10 OWASP

RestroPress – Online Food Ordering System 3.0.0 - 3.1.9.2 - Unauthenticated Information Exposure to Authentication Bypass via Forged JWT

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

Customer Support System 1.0 - SQL Injection Login Bypass

Book Store Management System v1.0 - Incorrect Access Control

Proof-of-concept exploit for CVE-2023-27350 in PaperCut NG; exploits SetupCompleted access-control flaw to bypass authentication and execute code as…