Track record

Vulnerabilities we've responsibly disclosed to open-source projects.

16 vulnerabilities reported
2 patched
14 in disclosure process
GHSA-w47q-3m69-84v8 paperless-ngx/paperless-ngx Medium

Document editors can alter permissions via the documents update API.

GHSA-jqwv-hx7q-fxh3 paperless-ngx/paperless-ngx Low

Read-only users can create documents via post_document endpoint.