Jakub Witczak
24 exploits
Active since Feb 2025
Denial of service via exponential certificate policy tree growth in path validation
Megaco flex scanner buffer overflow via oversized property parm name
Denial of service via exponential certificate policy tree growth in path validation
SSH server timing side-channel in ssh_auth:check_password/3 allows unauthenticated username enumeration
CVSS 5.3
OCSP responder certificate validity period not checked in public_key
CVSS 3.7
OCSP responder certificate validity period not checked in public_key
CVSS 3.7
Erlang OTP Pre-Auth RCE Scanner and Exploit
CVSS 10.0
Erlang OTP Pre-Auth RCE Scanner and Exploit
CVSS 10.0
Erlang OTP Pre-Auth RCE Scanner and Exploit
CVSS 10.0
Erlang OTP - Resource Leak Exposure
Erlang OTP <28.0.3 - Excessive Allocation
Erlang OTP <28.0.3 - Uncontrolled Resource Consumption
Erlang/OTP 17.0-28.0.3, 27.3.4.3, 26.2.5.15 - Uncontrolled Resource Consumption in SSH SFTP Module
Erlang OTP ssh_sftpd - Path Traversal
CVSS 5.4
Erlang OTP ssh_sftpd - Path Traversal
CVSS 5.4
OCSP designated-responder authorization bypass via missing signature verification
CVSS 7.4
OCSP designated-responder authorization bypass via missing signature verification
CVSS 7.4
Erlang OTP ssh_sftpd - Path Traversal
CVSS 5.4
Erlang/OTP 25.3.2.18-27.2.3 - Authenticated Denial of Service via SFTP Packet Size Mismatch
Erlang/OTP <27.3.4, <26.2.5.12, <25.3.2.21 - Man-in-the-Middle
CVSS 3.7
Erlang OTP - Resource Leak Exposure
Erlang OTP <28.0.3 - Excessive Allocation
Erlang OTP <28.0.3 - Uncontrolled Resource Consumption
Erlang/OTP 17.0-28.0.3, 27.3.4.3, 26.2.5.15 - Uncontrolled Resource Consumption in SSH SFTP Module