Security: Shelf-nu/shelf.nu
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
Server-Side Request Forgery (SSRF) via Asset CSV Import imageUrl Validation BypassGHSA-xgrm-8w6v-mvjg published
Jun 3, 2026 by DonKokoHigh -
Cross-organization IDOR: authenticated users could read/attach another workspace's assets, tags, custodians, bookings, QR codes and audit dataGHSA-r46p-gfrp-xxgq published
May 19, 2026 by DonKokoHigh -
SQL Injection via sortBy ParameterGHSA-69xv-wmgg-3qp3 published
Apr 27, 2026 by DonKokoModerate
Learn more about advisories related to Shelf-nu/shelf.nu in the GitHub Advisory Database