Results for "CVE bypass"
- Article
SQLi CVE Database: A Complete List of SQL Injection Vulnerabilities
A complete SQLi CVE database. Track SQL injection vulnerabilities, CVSS scores, and bypass methods including CVE-2026-34612 and CVE-2026-34717.
- Article
CVE-2025-51458: DB-GPT SQLI via CVE Bypass (CVE-2024-10835 & CVE-2024-10901)
SQL injection vulnerability in DB-GPT 0.7.0 despite fixes for prior CVEs, affecting multiple database endpoints.
- Article
CVE-2025-53944: AutoGPT Authorization Bypass in Graph Execution External API
Authorization bypass vulnerability in AutoGPT’s external API allowing authenticated users to access execution results from other users’ graph executions.
- Article
CVE-2025-51479: ONYX Authorization Bypass in Enterprise Edition Group Management API
Authorization bypass vulnerability in ONYX Enterprise Edition allowing curators to manipulate groups outside their authorized scope.
- Article
Claude Code Review: What Code Scanners Cannot Tell You About Real Risk
Claude Code Review brought five parallel agents and sub-1% false positives, changing how AI development teams ship production code.
- Article
What Is SSRF (Server-Side Request Forgery)? A Complete Guide
Learn what SSRF (Server-Side Request Forgery) is, how attackers exploit it in cloud environments, and proven defense strategies. A complete guide.
- Article
Claude Code Security Review: Complete Guide for Developers
A complete guide to Claude Code Security Review for developers. Learn setup, vulnerability detection, limitations, and best practices.
- Article
Business Logic Is AppSec’s Unsolved Problem
Broken access control has been the #1 vulnerability class since 2021. This post explores why it’s unsolved, why it will get worse, and how LLMs can bridge the g…
- Article
Cross-Domain Authentication: A Complete Guide
Learn cross-domain authentication with OAuth, SAML, and Active Directory. A complete security guide covering implementation and vulnerabilities.
- Article
How Gecko Discovered 30 0-Day Vulnerabilities No AppSec Tool Found
Previously, there were entire classes of business logic and multi-step vulnerabilities that have long been invisible to SAST. Today, that changes.
Showing 1 - 10 of 12 results