Manuel Spigolon
7 exploits
Active since Oct 2022
fastify < 5.7.2 - Request Body Validation Bypass via Content-Type Header Tab Injection
CVSS 7.5
fastify < 4.8.1 - Denial of Service via Malicious Content-Type Header
CVSS 7.5
@festify/secure-session - Info Disclosure
CVSS 7.4
fastify 5.0.0-5.3.0 and 4.29.0 - Content-Type Validation Bypass via Altered Whitespace or Casing
CVSS 7.5
fastify/reply-from < 12.5.0 - Unintended Proxy Access via Malicious URL
CVSS 5.4
@fastify/middie <9.1.0 - Auth Bypass
CVSS 8.4
@fastify/express <4.0.3 - Auth Bypass
CVSS 8.4