Lucas TESSON
8 exploits
Active since Jul 2025
ctfer-io chall-manager < 0.1.4 - Unauthenticated Path Traversal via Zip Slip
CVSS 9.1
Chall-Manager's invalid NetworkPolicy enables a malicious actor to pivot into another namespace
CVSS 9.9
Fullchain's Invalid NetworkPolicy enables a malicious actor to pivot into another namespace
CVSS 9.8
Monitoring is vulnerable to Archive Slip due to missing checks in sanitization
CVSS 9.8
Romeo's invalid NetworkPolicy enables a malicious actor to pivot into another namespace
CVSS 10.0
Romeo is vulnerable to Archive Slip due to missing checks in sanitization
CVSS 7.5
ctfer-io chall-manager < 0.1.4 - Unauthenticated Denial of Service via Zip Bomb Decompression
CVSS 9.8
ctfer-io chall-manager < 0.1.4 - Unauthenticated Denial of Service via Slow Loris Attack
CVSS 7.5