MEDIUM6.5CVE-2026-44426ShellHub has cross-tenant IDOR in `GET /api/namespaces/:tenant` via API Key bypasses membership check in github.com/shellhub-io/shellhub from 0, < 0.24.2
MEDIUM6.5CVE-2026-44426ShellHub has cross-tenant IDOR in `GET /api/namespaces/:tenant` via API Key bypasses membership check in github.com/shellhub-io/shellhub from 0, < 0.24.2
MEDIUM6.5CVE-2026-44423ShellHub has cross-tenant IDOR in `GET /api/sessions/:uid` that discloses SSH session data in github.com/shellhub-io/shellhub from 0, < 0.24.2
MEDIUM6.5ShellHub has cross-tenant IDOR in `GET /api/sessions/:uid` that discloses SSH session data in github.com/shellhub-io/shellhub
from 0, < 0.24.2
MEDIUM6.5ShellHub has cross-tenant IDOR in `GET /api/devices/:uid` that discloses device data of any namespace in github.com/shellhub-io/shellhub
from 0, < 0.24.2
MEDIUM6.5ShellHub has cross-tenant IDOR in `GET /api/devices/:uid` that discloses device data of any namespace in github.com/shellhub-io/shellhub
from 0, < 0.24.2
MEDIUM5.4ShellHub has crash-DoS via field injection in filter and sort-by parameters in github.com/shellhub-io/shellhub
from 0, < 0.24.2
MEDIUM5.4ShellHub has crash-DoS via field injection in filter and sort-by parameters in github.com/shellhub-io/shellhub
from 0, < 0.24.2