Laurent Cozic
11 exploits
Active since Jun 2018
Joplin has Denial of Service (DoS) via Uncontrolled Resource Allocation through Title Input
CVSS 5.5
Joplin < 1.0.184 - Stored Cross-Site Scripting and Arbitrary File Read
CVSS 5.4
Joplin < 1.0.90 - Stored Cross-Site Scripting in Note Content Field
CVSS 6.1
Joplin < 2.3.2 - Cross-Site Request Forgery
CVSS 5.4
Joplin < 1.8.5 - Stored Cross-Site Scripting via Improper HTML Sanitization
CVSS 5.4
Joplin < 2.0.9 - Stored Cross-Site Scripting via Note Body Buttons and Forms
CVSS 6.1
Joplin < 2.9.17 - Cross-Site Scripting via Improper Sanitization
CVSS 6.1
Joplin < 2.11.5 - Cross-Site Scripting via SVG USE Element
CVSS 6.1
Joplin < 2.11.5 - Cross-Site Scripting via Image Map AREA Element
CVSS 6.1
Joplin < 3.2.12 - Stored Cross-Site Scripting via HTML Comment Handling
CVSS 7.8
Joplin 3.3.3 Server - Privilege Escalation
CVSS 8.8