Home/Product/authzed spicedb
Product

authzed spicedb

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-40091
>= 1.49.0 and < 1.51.1
SpiceDB is an open source database system for creating and managing security-critical application permissions. In versions 1.49.0
6.0MEDIUM
CVE-2025-65111
< 1.47.1
SpiceDB is an open source database system for creating and managing security-critical application permissions. Prior to version 1.
5.3MEDIUM
CVE-2025-64529
< 1.45.2
SpiceDB is an open source database system for creating and managing security-critical application permissions. In versions prior t
6.5MEDIUM
CVE-2025-49011
< 1.44.2
SpiceDB is an open source database for storing and querying fine-grained authorization data. Prior to version 1.44.2, on schemas i
3.7LOW
CVE-2024-48909
>= 1.35.0 and < 1.37.1
SpiceDB is an open source database for scalably storing and querying fine-grained authorization data. Starting in version 1.35.0 a
2.0LOW
CVE-2024-46989
< 1.35.3
spicedb is an Open Source, Google Zanzibar-inspired permissions database to enable fine-grained authorization for customer applica
3.7LOW
CVE-2024-38361
< 1.33.1
Spicedb is an Open Source, Google Zanzibar-inspired permissions database to enable fine-grained authorization for customer applica
3.7LOW
CVE-2024-32001
< 1.30.1
SpiceDB is a graph database purpose-built for storing and evaluating access control data. Use of a relation of the form: `relation
2.2LOW
CVE-2024-27101
< 1.29.2
SpiceDB is an open source, Google Zanzibar-inspired database for creating and managing security-critical application permissions.
7.3HIGH
CVE-2023-46255
< 1.27.0
SpiceDB is an open source, Google Zanzibar-inspired database for creating and managing security-critical application permissions.
4.2MEDIUM
CVE-2023-35930
all versions
SpiceDB is an open source, Google Zanzibar-inspired, database system for creating and managing security-critical application permi
3.7LOW
CVE-2023-29193
< 1.19.1
SpiceDB is an open source, Google Zanzibar-inspired, database system for creating and managing security-critical application permi
8.7HIGH
CVE-2022-21646
all versions
SpiceDB is a database system for managing security-critical application permissions. Any user making use of a wildcard relationshi
8.1HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin