Alexander Scheel
11 exploits
Active since Jul 2020
OpenBao lacks user confirmation for OIDC direct callback mode
CVSS 9.6
Dogtagpki < 10.8.3 - Improper Certificate Validation
CVSS 6.8
Openbao < 2.3.0 - Log Information Exposure
CVSS 4.5
Openbao < 2.3.0 - Improper Input Validation
CVSS 7.5
Openbao < 2.3.2 - Brute Force
CVSS 5.3
OpenBao <2.3.1 - Info Disclosure
CVSS 6.5
OpenBao <2.3.1 - Auth Bypass
CVSS 6.5
OpenBao <2.3.1 - Auth Bypass
CVSS 5.7
Openbao < 2.4.2 - Log Information Exposure
CVSS 7.5
Openbao < 2.4.2 - Log Information Exposure
CVSS 4.9
Openbao < 2.4.4 - Incorrect Privilege Assignment
CVSS 7.2