In telephony service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution priv…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
In phoneEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privi…
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
In bluetooth service, there is a possible missing permission check. This could lead to local denial of service in bluetooth service with no additiona…
The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadO…
In Django 3.2 before 3.2.19, 4.x before 4.1.9, and 4.2 before 4.2.1, it was possible to bypass validation when using one form field to upload multipl…
An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting from 15.10 before 15.10.5, a…
Mattermost fails to invalidate existing authorization codes when deauthorizing an OAuth2 app, allowing an attacker possessing an authorization code t…
In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a missing permission check. This co…
In sanitize of LayerState.cpp, there is a possible way to take over the screen display and swap the display content due to a missing permission check…
In multiple functions of RunningTasks.java, there is a possible privilege escalation due to a missing privilege check. This could lead to local infor…
A CWE-862: Missing Authorization vulnerability exists that could allow viewing of unauthorized content, changes or deleting of content, or performing…
The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which c…
matrix-js-sdk is the Matrix Client-Server SDK for JavaScript and TypeScript. An attacker present in a room where an MSC3401 group call is taking plac…
A missing permission check in Jenkins TurboScript Plugin 1.3 and earlier allows attackers with Item/Read permission to trigger builds of jobs corresp…
A missing permission check in Jenkins Report Portal Plugin 0.5 and earlier allows attackers with Overall/Read permission to connect to an attacker-sp…
A missing permission check in Jenkins Assembla merge request builder Plugin 1.1.13 and earlier allows unauthenticated attackers to trigger builds of …
A missing permission check in Jenkins Quay.io trigger Plugin 0.1 and earlier allows unauthenticated attackers to trigger builds of jobs corresponding…
Improper authorization in Gitlab EE affecting all versions from 12.3.0 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions sta…
HashiCorp Nomad and Nomad Enterprise versions 1.5.0 up to 1.5.2 allow unauthenticated users to bypass intended ACL authorizations for clusters where …