David May
5 exploits
Active since Nov 2018
Apache Superset < 0.23 - Remote Code Execution via Pickle Deserialization
Vela compiler < 0.6.1 - Server Configuration Exposure via Sprig env Function
CVSS 7.4
Vela 0.7.0-0.7.4 - Unauthenticated Secret Exposure via .netrc File
CVSS 7.5
go-vela/server < 0.16.0, go-vela/worker < 0.16.0, go-vela/ui < 0.17.0 - Privilege Escalation
CVSS 9.6
Apache Superset < 0.23 - Remote Code Execution via Pickle Deserialization
CVSS 9.8