G3XAR
9 exploits
Active since Sep 2025
Taskosaur 1.0.0 - Privilege Escalation
CVSS 9.8
HomeBox < 0.23.1 - Authenticated Stored Cross-Site Scripting via Item Attachment Upload
CVSS 4.6
HomeBox < 0.23.1 - Authenticated Server-Side Request Forgery via Notifier URL Parameter
CVSS 5.0
Formwork 2.0.0-2.3.3 - Privilege Escalation
CVSS 8.8
Initiative < 0.32.4 - Insufficient Session Expiration via JWT Token Invalidation
CVSS 8.1
Initiative < 0.32.4 - Stored Cross-Site Scripting via HTML Document Upload
CVSS 8.7
Slink v1.4.9 - Stored Cross-Site Scripting via SVG Upload
CVSS 6.1
Flare < 1.7.1 - Stored Cross-Site Scripting via SVG/HTML/XML File Upload
CVSS 4.6
Slink v1.4.9 - Stored Cross-Site Scripting via SVG Upload
CVSS 6.1