Joseph Schorr
6 exploits
Active since Oct 2023
SpiceDB <1.27.0-rc1 - Info Disclosure
CVSS 4.2
SpiceDB < 1.30.1 - Incorrect Authorization Decision via LookupSubjects Schema Handling
CVSS 2.2
Spicedb < 1.33.1 - Incorrect Permission Resolution via Exclusion Dispatcher
CVSS 3.7
spicedb < 1.35.3 - Improper Privilege Management via Caveated Indirect Subject Types
CVSS 3.7
SpiceDB 1.35.0-1.37.0 - Incorrect Permission Evaluation via LookupResources2 Caveat Handling
CVSS 2.0
SpiceDB < 1.47.1 - Insecure Inherited Permissions in LookupResources
CVSS 5.3