All CVEs — page 122 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
This flaw allows authentication bypass for WebSocket endpoints, enabling unauthorized access. It matters because it can lead to full compromise of the application and system.
This vulnerability allows an attacker to inject malicious SQL queries, potentially leading to data theft, manipulation, or system compromise.
The Reachy Mini daemon lacks authentication for its app installation endpoint, allowing anyone to install arbitrary Python packages and execute their code on the robot.