Vulnerability disclosures and security advisories

Sort by
IDSummarySeverityDate
GHSA-5fx4-c9qp-36jcUnauthenticated S3 gRPC identity management enables IAM admin accessCriticalSep 18, 2026
GHSA-jw56-gm6j-34mpBroad-policy S3 identities can escalate to IAM adminCriticalSep 2, 2026
CVE-2026-17615Unauthenticated file read through the Resteasy sourceproviderHigh (7.5)Aug 31, 2026
CVE-2026-49086Dapr Pub/Sub headers can influence internal routingMedium (6.5)Jul 6, 2026