Erik Michelson
6 exploits
Active since Apr 2025
HedgeDoc < 1.10.3 - Cross-Site Scripting via SVG File Upload
CVSS 6.4
HedgeDoc < 1.10.3 - Cross-Site Scripting via SVG File Upload
CVSS 6.4
HedgeDoc < 1.10.6 - Stored Cross-Site Scripting via SVG Upload
CVSS 4.3
HedgeDoc < 1.10.3 - Cross-Site Scripting via SVG File Upload
CVSS 6.4
HedgeDoc < 1.10.4 - Cross-Site Request Forgery in OAuth2 Social Login Endpoints
CVSS 3.7
HedgeDoc < 1.10.6 - Stored Cross-Site Scripting via SVG Upload
CVSS 4.3