Damien Arrachequesne
20 exploits
Active since Jan 2021
Socket.IO: Zero-attachment Memory Exhaustion
CVSS 7.5
Socket.IO: Zero-attachment Memory Exhaustion
CVSS 7.5
Socket.IO: Zero-attachment Memory Exhaustion
CVSS 7.5
Socket.IO: Engine.IO WebTransport SID DoS
CVSS 7.5
Socket.IO: Engine.IO Polling Transport Connection Exhaustion
CVSS 7.5
Engine.IO 4.0.0-4.1.1, 5.0.0-5.2.0, 6.0.0-6.1.0 - Denial of Service via Crafted HTTP Request
CVSS 7.5
Engine.IO 4.0.0-4.1.1, 5.0.0-5.2.0, 6.0.0-6.1.0 - Denial of Service via Crafted HTTP Request
CVSS 7.5
socket.io-client_java < 2.0.1 - NULL Pointer Dereference via Invalid Payload Format
CVSS 7.5
socket.io-parser 3.4.0-3.4.2 and 4.0.4-4.2.2 - Denial of Service via Crafted Socket.IO Packet
CVSS 7.3
Socket.IO < 2.5.1 and 3.0.0-4.6.2 - Denial of Service via Crafted Packet
CVSS 7.3
Socket.IO < 2.5.1 and 3.0.0-4.6.2 - Denial of Service via Crafted Packet
CVSS 7.3
socket.io allows an unbounded number of binary attachments
CVSS 7.5
socket.io allows an unbounded number of binary attachments
CVSS 7.5
socket.io allows an unbounded number of binary attachments
CVSS 7.5
Engine.IO < 4.0.0 - Denial of Service via Long Polling Transport
CVSS 7.5
Engine.IO 4.0.0-4.1.1, 5.0.0-5.2.0, 6.0.0-6.1.0 - Denial of Service via Crafted HTTP Request
CVSS 7.5
socket.io-client_java < 2.0.1 - NULL Pointer Dereference via Invalid Payload Format
CVSS 7.5
engine.io < 3.6.1 - Denial of Service via Crafted HTTP Request
CVSS 7.1
Engine.IO 5.1.0-6.4.1 - Denial of Service via Crafted HTTP Request
CVSS 6.5
socket.io-parser 3.4.0-3.4.2 and 4.0.4-4.2.2 - Denial of Service via Crafted Socket.IO Packet
CVSS 7.3