Jan Cizmar
4 exploits
Active since Jul 2023
Tolgee < 3.166.3 - XML External Entity Injection in Resource Import
CVSS 6.5
Tolgee 3.14.0-3.23.0 - Missing Authorization via API Key Permission Bypass
CVSS 8.1
Tolgee < 3.57.2 - Missing Authorization for Translation Data via API Endpoints
CVSS 2.7
Tolgee 3.57.2-3.57.4 - Incorrect Authorization via Admin API Key
CVSS 6.5