Browse Security Advisories
Moderate Security Advisories for https://github.com/treeverse/lakeFS from github Clear Filters
Moderate
8 months ago
lakeFS affected by unauthenticated access to API usage metrics
go
github.com/treeverse/lakefs
Moderate
over 1 year ago
lakeFS allows an authenticated user to cause a crash by exhausting server memory
go
github.com/treeverse/lakefs
Moderate
over 1 year ago
Re-creating a deleted user in lakeFS will re-enable previous user credentials that existed prior to its deletion
go
github.com/treeverse/lakefs
Moderate
over 2 years ago
User with ci:ReadAction permissions and write permissions to one path in a repository may copy objects from any path in the repository
go
github.com/treeverse/lakefs
Moderate
over 2 years ago
User with permission to write actions can impersonate another user when auth token is configured in environment variable
go
github.com/treeverse/lakefs
Moderate
almost 3 years ago
lakeFS vulnerable to Arbitrary JavaScript Injection via Direct Link to HTML Files
go
github.com/treeverse/lakefs
Moderate
over 4 years ago
Improper Access Control in github.com/treeverse/lakefs
go
github.com/treeverse/lakefs
Filter by Severity
Filter by Source
Filter by Ecosystem
packagist
3,613
maven
3,600
pypi
2,606
npm
2,365
go
2,078
nuget
1,874
cargo
567
rubygems
477
hex
25
swift
20
actions
16
pub
3
Filter by Package
moodle/moodle
318
openclaw
285
tensorflow
200
magento/community-edition
193
tensorflow-cpu
186
tensorflow-gpu
178
org.jenkins-ci.main:jenkins-core
152
github.com/mattermost/mattermost/server/v8
127
typo3/cms
125
com.liferay.portal:release.portal.bom
114
github.com/mattermost/mattermost-server
109
org.apache.tomcat:tomcat
99
pimcore/pimcore
91
com.liferay.portal:release.dxp.bom
82
Magick.NET-Q16-AnyCPU
80
Magick.NET-Q16-HDRI-AnyCPU
80
typo3/cms-core
78
Magick.NET-Q16-HDRI-OpenMP-arm64
75
wwbn/avideo
73
Magick.NET-Q16-HDRI-arm64
73
Magick.NET-Q16-HDRI-x86
73
microweber/microweber
72
Magick.NET-Q16-HDRI-x64
72
Magick.NET-Q16-OpenMP-arm64
69
Magick.NET-Q16-x86
69
Magick.NET-Q16-arm64
68
Magick.NET-Q16-OpenMP-x64
68
Magick.NET-Q8-AnyCPU
67
silverstripe/framework
66
Magick.NET-Q8-arm64
65
Magick.NET-Q8-OpenMP-arm64
65
concrete5/concrete5
65
thorsten/phpmyfaq
64
Magick.NET-Q8-OpenMP-x64
64
Magick.NET-Q8-x64
64
Magick.NET-Q16-x64
64
Magick.NET-Q8-x86
63
apache-airflow
60
magento/project-community-edition
58
dolibarr/dolibarr
56
phpmyadmin/phpmyadmin
56
drupal/core
55
github.com/usememos/memos
54
craftcms/cms
54
librenms/librenms
53
symfony/symfony
51
Magick.NET-Q16-HDRI-OpenMP-x64
51
apache-superset
47
mantisbt/mantisbt
46
Django
44
actionpack
44
open-webui
44
n8n
44
Magick.NET-Q16-OpenMP-x86
41
nocodb
40
parse-server
40
org.keycloak:keycloak-services
40
snipe/snipe-it
39
drupal/drupal
39
picklescan
37
github.com/grafana/grafana
36
showdoc/showdoc
35
org.elasticsearch:elasticsearch
35
directus
34
shopware/platform
34
org.keycloak:keycloak-core
32
admidio/admidio
32
github.com/mattermost/mattermost-server/v6
30
shopware/core
30
nova
30
getgrav/grav
30
hono
30
pypdf
29
baserproject/basercms
29
plone
29
intelliants/subrion
28
getkirby/cms
28
mautic/core
27
moin
27
ansible
27
gogs.io/gogs
26
rack
26
vllm
25
coreutils
25
k8s.io/kubernetes
25
aiohttp
24
Plone
24
next
23
phpmyfaq/phpmyfaq
23
github.com/cilium/cilium
22
froxlor/froxlor
22
github.com/hashicorp/vault
22
grumpydictator/firefly-iii
22
code.vikunja.io/api
21
github.com/answerdev/answer
21
github.com/openfga/openfga
21
code.gitea.io/gitea
21
wasmtime
21
DotNetNuke.Core
21
matrix-synapse
21
flowise
21
gradio
21
nilsteampassnet/teampass
21
github.com/traefik/traefik/v3
21
mediawiki/core
20
shopware/shopware
20
django
20
electron
19
github.com/traefik/traefik/v2
19
org.apache.struts:struts2-core
19
contao/core-bundle
18
org.apache.tomcat.embed:tomcat-embed-core
18
dompurify
18
github.com/docker/docker
18
pyload-ng
18
remdex/livehelperchat
18
nokogiri
17
salt
17
org.opencms:opencms-core
17
github.com/fleetdm/fleet/v4
17
prestashop/prestashop
17
github.com/argoproj/argo-cd/v2
17
github.com/hashicorp/consul
17
github.com/hashicorp/nomad
16
io.undertow:undertow-core
16
statamic/cms
16
zendframework/zendframework1
16
rdiffweb
16
com.liferay.portal:com.liferay.portal.impl
15
glance
15
yetiforce/yetiforce-crm
15
org.xwiki.platform:xwiki-platform-oldcore
15
vyper
15
org.apache.jspwiki:jspwiki-main
15
surrealdb
15
github.com/siyuan-note/siyuan/kernel
15
typo3/cms-backend
15
activesupport
14
org.springframework.security:spring-security-core
14
tinymce
14
github.com/goharbor/harbor
14
feehi/cms
14
puppet
14
deno
14
wagtail
14
feehi/feehicms
14
weblate
14
axios
14
forkcms/forkcms
13
ghost
13
keystone
13
sylius/sylius
13
vite
13
transformers
13
helm.sh/helm/v3
13
tribalsystems/zenario
13
svelte
13
github.com/containerd/containerd
13
Umbraco.Cms
13
craftcms/commerce
13
com.thoughtworks.xstream:xstream
13
com.jfinal:jfinal
13
github.com/zitadel/zitadel
13
github.com/ethereum/go-ethereum
12
lavalite/cms
12
ec-cube/ec-cube
12
github.com/filebrowser/filebrowser/v2
12
@openzeppelin/contracts-upgradeable
12
simplesamlphp/simplesamlphp
12
undici
12
phpoffice/phpspreadsheet
12
OctoPrint
12
github.com/traefik/traefik
12
facturascripts/facturascripts
12
wallabag/wallabag
12
roundup
12
github.com/openbao/openbao
12
github.com/rancher/rancher
12
@openzeppelin/contracts
12
horizon
11
org.eclipse.jetty:jetty-server
11
mlflow
11
io.netty:netty-codec-http
11
laravel/framework
11
org.bouncycastle:bcprov-jdk15on
11
astro
11
renovate
11
nicegui
11
github.com/argoproj/argo-cd
11
kubevirt.io/kubevirt
11
tinymce/tinymce
11
org.keycloak:keycloak-parent
11
ckeditor4
11
ckan
11
ci4-cms-erp/ci4ms
11
TinyMCE
11
genix/cms
11
cakephp/cakephp
10
github.com/go-gitea/gitea
10
joplin
10
Filter by Repository
https://github.com/tensorflow/tensorflow
200
https://github.com/moodle/moodle
192
https://github.com/liferay/liferay-portal
143
https://github.com/jenkinsci/jenkins
109
https://github.com/pimcore/pimcore
85
https://github.com/microweber/microweber
63
https://github.com/TYPO3/typo3
63
https://github.com/apache/tomcat
59
https://github.com/xwiki/xwiki-platform
50
https://github.com/silverstripe/silverstripe-framework
50
https://github.com/django/django
50
https://github.com/usememos/memos
50
https://github.com/rails/rails
46
https://github.com/thorsten/phpmyfaq
45
https://github.com/keycloak/keycloak
45
https://github.com/apache/airflow
44
https://github.com/librenms/librenms
42
https://github.com/kubernetes/kubernetes
40
https://github.com/mattermost/mattermost
36
https://github.com/mantisbt/mantisbt
35
https://github.com/mmaitre314/picklescan
34
https://github.com/star7th/showdoc
32
https://github.com/concretecms/concretecms
28
https://github.com/mautic/mautic
27
https://github.com/symfony/symfony
27
https://github.com/grafana/grafana
27
https://github.com/craftcms/cms
26
https://github.com/ansible/ansible
26
https://github.com/phpmyadmin/phpmyadmin
26
https://github.com/spring-projects/spring-framework
26
https://github.com/shopware/shopware
24
https://github.com/argoproj/argo-cd
24
https://github.com/directus/directus
24
https://github.com/umbraco/Umbraco-CMS
23
https://github.com/Dolibarr/dolibarr
22
https://github.com/answerdev/answer
21
https://github.com/plone/Products.CMFPlone
20
https://github.com/apache/activemq
20
https://github.com/magento/magento2
20
https://github.com/snipe/snipe-it
20
https://github.com/firefly-iii/firefly-iii
20
https://github.com/cilium/cilium
19
https://github.com/openstack/nova
18
https://github.com/contao/contao
18
https://github.com/livehelperchat/livehelperchat
18
https://github.com/apache/struts
17
https://github.com/matrix-org/synapse
16
https://github.com/ikus060/rdiffweb
16
https://github.com/gradio-app/gradio
16
https://github.com/shopware/platform
16
https://github.com/vyperlang/vyper
15
https://github.com/CVEProject/cvelist
15
https://github.com/netty/netty
15
https://github.com/apache/cxf
15
https://github.com/getkirby/kirby
15
https://github.com/TYPO3/TYPO3.CMS
14
https://github.com/PaddlePaddle/Paddle
14
https://github.com/geoserver/geoserver
14
https://github.com/baserproject/basercms
14
https://github.com/x-stream/xstream
14
https://github.com/froxlor/froxlor
14
https://github.com/tinymce/tinymce
14
https://github.com/moby/moby
14
https://github.com/yetiforcecompany/yetiforcecrm
14
https://github.com/saltstack/salt
14
https://github.com/OpenNMS/opennms
14
https://github.com/bcgit/bc-java
13
https://github.com/goharbor/harbor
13
https://github.com/nilsteampassnet/TeamPass
13
https://github.com/rack/rack
13
https://github.com/PrestaShop/PrestaShop
13
https://github.com/openfga/openfga
13
https://github.com/apache/nifi
13
https://github.com/octobercms/october
13
https://github.com/strapi/strapi
13
https://github.com/go-gitea/gitea
13
https://github.com/containerd/containerd
13
https://github.com/OpenZeppelin/openzeppelin-contracts
12
https://github.com/huggingface/transformers
12
https://github.com/openstack/keystone
12
https://github.com/traefik/traefik
12
https://github.com/TYPO3-CMS/core
12
https://github.com/helm/helm
12
https://github.com/hashicorp/consul
12
https://github.com/apache/zeppelin
11
https://github.com/vaadin/platform
11
https://github.com/forkcms/forkcms
11
https://github.com/github/advisory-database
11
https://github.com/ethereum/go-ethereum
11
https://github.com/intelliants/subrion
11
https://github.com/surrealdb/surrealdb
11
https://github.com/ckeditor/ckeditor4
11
https://github.com/rancher/rancher
11
https://github.com/dnnsoftware/Dnn.Platform
11
https://github.com/laravel/framework
11
https://github.com/vitejs/vite
11
https://github.com/electron/electron
11
https://github.com/vercel/next.js
10
https://github.com/decidim/decidim
10
https://github.com/aio-libs/aiohttp
10
https://github.com/backstage/backstage
10
https://github.com/liufee/cms
10
https://github.com/PHPOffice/PhpSpreadsheet
10
https://github.com/simplesamlphp/simplesamlphp
10
https://github.com/TryGhost/Ghost
10
https://github.com/greenpau/caddy-security
10
https://github.com/laurent22/joplin
10
https://github.com/vllm-project/vllm
10
https://github.com/wallabag/wallabag
10
https://github.com/bytecodealliance/wasmtime
10
https://github.com/fatfreecrm/fat_free_crm
9
https://github.com/opencast/opencast
9
https://github.com/sparklemotion/nokogiri
9
https://github.com/dotnet/runtime
9
https://github.com/jenkinsci/git-plugin
9
https://github.com/dpgaspar/Flask-AppBuilder
9
https://github.com/jquery/jquery
9
https://github.com/puppetlabs/puppet
9
https://github.com/alkacon/opencms-core
9
https://github.com/publify/publify
9
https://github.com/pimcore/admin-ui-classic-bundle
9
https://github.com/OctoPrint/OctoPrint
9
https://github.com/thorsten/phpMyFAQ
9
https://github.com/urllib3/urllib3
9
https://github.com/sulu/sulu
8
https://github.com/getgrav/grav
8
https://github.com/openbao/openbao
8
https://github.com/eclipse/jetty.project
8
https://github.com/opensearch-project/security
8
https://github.com/FlowiseAI/Flowise
8
https://github.com/openstack/glance
8
https://github.com/zendframework/zendframework
8
https://github.com/onionshare/onionshare
8
https://github.com/LavaLite/cms
8
https://github.com/pyload/pyload
8
https://github.com/parse-community/parse-server
8
https://github.com/ckan/ckan
8
https://github.com/rails/rails-html-sanitizer
8
https://github.com/nilsteampassnet/teampass
8
https://github.com/dolibarr/dolibarr
8
https://github.com/apache/superset
8
https://github.com/kubeedge/kubeedge
8
https://github.com/swagger-api/swagger-ui
8
https://github.com/hashicorp/nomad
8
https://github.com/rubygems/rubygems
8
https://github.com/gogs/gogs
8
https://github.com/pandao/editor.md
8
https://github.com/modoboa/modoboa
8
https://github.com/vaadin/flow
7
https://github.com/nocodb/nocodb
7
https://github.com/denoland/deno
7
https://github.com/matrix-org/matrix-rust-sdk
7
https://github.com/opencontainers/runc
7
https://github.com/nahsra/antisamy
7
https://github.com/modxcms/revolution
7
https://github.com/janeczku/calibre-web
7
https://github.com/twbs/bootstrap
7
https://github.com/containers/podman
7
https://github.com/jupyter/notebook
7
https://github.com/louislam/uptime-kuma
7
https://github.com/zenml-io/zenml
7
https://github.com/openstack/horizon
7
https://github.com/jenkinsci/blueocean-plugin
7
https://github.com/opencv/opencv
7
https://github.com/croogo/croogo
7
https://github.com/MobSF/Mobile-Security-Framework-MobSF
7
https://github.com/scrapy/scrapy
7
https://github.com/StarCitizenTools/mediawiki-skins-Citizen
7
https://github.com/zitadel/zitadel
7
https://github.com/python-pillow/Pillow
7
https://github.com/py-pdf/pypdf
7
https://github.com/Sylius/Sylius
7
https://github.com/google/fscrypt
7
https://github.com/jeecgboot/jeecg-boot
7
https://github.com/treeverse/lakeFS
7
https://github.com/kevinpapst/kimai2
7
https://github.com/OPCFoundation/UA-.NETStandard
7
https://github.com/n8n-io/n8n
7
https://github.com/Leantime/leantime
7
https://github.com/dragonflyoss/dragonfly
7
https://github.com/chakra-core/ChakraCore
7
https://github.com/kubevirt/kubevirt
7
https://github.com/bagisto/bagisto
7
https://github.com/igniterealtime/Openfire
7
https://github.com/vega/vega
7
https://github.com/undertow-io/undertow
7
https://github.com/hashicorp/vault
7
https://github.com/panva/jose
6
https://github.com/withastro/astro
6
https://github.com/ezsystems/ezplatform-admin-ui
6
https://github.com/jenkinsci/subversion-plugin
6
https://github.com/jenkinsci/config-file-provider-plugin
6
https://github.com/NodeBB/NodeBB
6
https://github.com/nodejs/undici
6
https://github.com/psf/requests
6
https://github.com/spatie/browsershot
6
https://github.com/cui2shark/security
6
https://github.com/quarkusio/quarkus
6
https://github.com/jenkinsci/script-security-plugin
6