Alex Vandiver
7 exploits
Active since Jul 2014
Zulip Server <4.9 - Info Disclosure
CVSS 8.6
Zulip <4.11 or >4.0-<5.0-rc1 - Privilege Escalation
CVSS 5.4
Email::Address < 1.904 - Denial of Service via Inefficient Regular Expression
zulip < 4.7 - Denial of Service via Linkifier Regular Expression Complexity
CVSS 4.3
Zulip <4.11 or >4.0-<5.0-rc1 - Privilege Escalation
CVSS 5.4
zulip_server - Cross-Site Scripting via Arbitrary Content-Type Upload in S3 Storage
CVSS 4.4
Zulip Server 3.0-8.3 - Unauthorized Sensitive Information Exposure via Message Move Operation
CVSS 6.5