Eyodav
6 exploits
Active since Aug 2025
OpenPLC Runtime <9cd8f1b - File Upload
CVSS 6.4
Coolify < 4.0.0-beta.420.6 - Authenticated Stored Cross-Site Scripting in Project Name
CVSS 9.0
Coolify < 4.0.0-beta.420.6 - Authenticated Remote Code Execution via Docker Compose Directive Injection
CVSS 8.8
Coolify < 4.0.0-beta.420.7 - Authenticated Remote Code Execution via Git Repository Field
CVSS 8.8
CasaOS <= 0.4.15 - Unauthenticated Sensitive Information Exposure via Image and Debug Endpoints
CVSS 5.3
OpenPLC Runtime v3 - Persistent Denial of Service via Malformed Epoch Time in Program Upload