Gregor Vostrak
2 exploits
Active since Mar 2026
solidtime: Time entry update endpoint allows cross-organization modification of a known time-entry UUID
CVSS 5.8
solidtime vulnerable to IDOR in private projects
CVSS 6.5