Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2240982
AlmaLinux
5967
Alpaquita
16156
Alpine
4655
Android
3677
Azure Linux
17970
BellSoft Hardened Containers
770
Bitnami
9476
Chainguard
1048381
CleanStart
5235
CRAN
14
crates.io
2763
Debian
68939
Echo
7865
GHC
3
GIT
109017
GitHub Actions
55
Go
9328
Hackage
33
Hex
364
Julia
1713
Linux
29975
Mageia
6237
Maven
7050
MinimOS
148242
npm
229102
NuGet
1869
opam
29
openEuler
8900
openSUSE
14573
OSS-Fuzz
4018
Packagist
7101
Pub
11
PyPI
25463
Red Hat
23527
Rocky Linux
4342
Root
19624
RubyGems
5327
SUSE
23442
SwiftURL
60
TuxCare
9919
Ubuntu
65983
VSCode
21
Wolfi
293786
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-5p3m-vhh6-9236
PyPI/stigmem-node
stigmem-node has blind SSRF via unvalidated webhook subscription delivery_address
20 Aug
Fix available
Severity - 6.3 (Medium)
GHSA-6gqw-jqv7-v88m
PyPI/stigmem-node
stigmem-node: decay sweep expires and counts facts across all tenants (cross-tenant BOLA)
19 Jun
Fix available
Severity - 7.2 (High)
GHSA-xhv3-q4xx-349r
PyPI/stigmem-node
stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)
19 Jun
Fix available
Severity - 8.6 (High)
GHSA-x26h-xmv8-gxf7
PyPI/stigmem-node
stigmem-node: RTBF tombstones are mis-attributed and suppress reads tenant-blind (cross-tenant BOLA)
19 Jun
Fix available
Severity - 7.2 (High)
GHSA-9vp8-3hmv-8fgh
PyPI/stigmem-node
stigmem-node's federation peer registration lacked explicit out-of-band approval
29 May
Fix available
Severity - 9.1 (Critical)
GHSA-w7pm-9g55-mxfm
PyPI/stigmem-node
stigmem-node's unsigned plugin override could be enabled without a second explicit acknowledgment
29 May
Fix available
Severity - 7.3 (High)
GHSA-jmfc-hfjq-pxcp
PyPI/stigmem-node
stigmem-node's federation insecure transport settings may allow non-loopback cleartext federation
29 May
Fix available
Severity - 9.1 (Critical)
GHSA-9pc9-4crj-mhpj
PyPI/stigmem-node
stigmem-node's Postgres schema identifier handling required defensive quoting
29 May
Fix available
Severity - 7.5 (High)
GHSA-xh5j-xjfq-qvvx
PyPI/stigmem-node
stigmem-node's federation peer token timestamp validation may reject valid peer tokens
29 May
Fix available
Severity - 7.1 (High)
GHSA-fp6w-8wpg-74g5
PyPI/stigmem-node
stigmem-node: Auth-disabled deployments may grant broad anonymous access outside loopback
29 May
Fix available
Severity - 9.2 (Critical)
Vulnerability Database - OSV