Guy Sartorelli
7 exploits
Active since Apr 2023
Silverstripe asset-admin < 5.3.8 - oEmbed Cross-Site Scripting
CVSS 5.4
Silverstripe Framework < 4.12.15 - Missing Authorization in GridField Print View
CVSS 4.3
Silverstripe Framework < 4.12.15 - Open Redirect via Login Screen Link
CVSS 5.4
silverstripe/graphql 3.0.0-3.8.1 - Unauthenticated Denial of Service via Recursive GraphQL Query
CVSS 7.5
Silverstripe Reports <5.2.3 - Info Disclosure
CVSS 4.3
Silverstripe framework < 5.2.16 - Stored Cross-Site Scripting via Crafted Encoded Payload
CVSS 5.4
Silverstripe Framework < 5.3.8 - Cross-Site Scripting in Form Message Content
CVSS 5.4