Kailash Nadh
4 exploits
Active since Jun 2025
listmonk 4.0.0-5.0.1 - Unauthenticated Sensitive Environment Variable Exposure via Template Function
CVSS 9.0
listmonk: Broken Access Control in CSV Import (Unauthorized List Assignment)
CVSS 5.4
listmonk: Active sessions remain valid after password reset and password change
CVSS 7.1
listmonk 2.4.0-4.1.0 - SQL Injection in QuerySubscribers Function
CVSS 6.5