CVE-2023-45810 - OpenFGA Denial of Service Vulnerability and Mitigation
The OpenFGA project, a powerful and flexible authorization/permission engine inspired by Google Zanzibar, has been discovered to contain a potentially severe denial of service
CVE-2023-40579 - OpenFGA v1.3. Authorization Bypass Vulnerability in ListObjects API
A recent vulnerability (CVE-2023-40579) has been identified in OpenFGA, an authorization and permission engine designed for developers and inspired by Google Zanzibar. OpenFGA allows developers
CVE-2022-39352 - OpenFGA Authorization Bypass Vulnerability in Versions Prior to .2.5
OpenFGA is a high-performance authorization/permission engine, inspired by Google's Zanzibar system. It plays a critical role in securing access to resources by
CVE-2022-39340 - OpenFGA `streamed-list-objects` Endpoint Authorization Header Bypass Vulnerability
OpenFGA, an authorization/permission engine, suffers from a critical vulnerability (CVE-2022-39340) in versions .2.3 and earlier, which allows unauthorized users to access sensitive data
CVE-2022-39341 - OpenFGA Authorization Bypass Vulnerability in Versions Prior to .2.4
A critical vulnerability has been identified in OpenFGA, an open-source authorization and permission engine, affecting versions earlier than .2.4. The vulnerability, tracked as CVE-2022-39341,
Episode
00:00:00
00:00:00