Ben McCann
6 exploits
Active since Apr 2023
SvelteKit < 1.15.1 - CSRF Protection Bypass via Content-Type Header
CVSS 8.8
SvelteKit < 1.15.2 - Cross-Site Request Forgery via Uppercase Content-Type Header Bypass
CVSS 8.8
SvelteKit < 2.8.3 - Cross-Site Scripting via Request URL
CVSS 5.4
SvelteKit < 2.8.3 - Cross-Site Scripting in Error Page Template
CVSS 5.4
SvelteKit 2.19.0-2.49.4 - Server-Side Request Forgery and Denial of Service via Prerendered Routes
CVSS 9.1
SvelteKit 2.49.0-2.49.4 - Denial of Service via Form Remote Function Memory Exhaustion
CVSS 7.5