Krzysztof Kotlarek
6 exploits
Active since Oct 2021
Discourse < 3.1.3 and < 3.2.0.beta3 - Server-Side Request Forgery via Embedding Feature
CVSS 3.4
Discourse-reactions <0.2 - Info Disclosure
CVSS 5.3
Discourse < 2.8.1 - Denial of Service via Streaming URL Onebox Parsing
CVSS 6.5
Discourse - Denial of Service via Custom Sidebar Section Update
CVSS 6.5
Discourse < 3.1.3 and < 3.2.0.beta3 - Server-Side Request Forgery via Embedding Feature
CVSS 3.4
Discourse Code Review Plugin <eed3a80 - XSS
CVSS 3.1