Mat Trudel
7 exploits
Active since May 2026
HTTP/1 chunked body reader ignores length cap in bandit
CVSS 7.5
HTTP/1 chunked decoder infinite loop on requests with trailer fields in bandit
CVSS 7.5
WebSocket permessage-deflate inflate has no output-size cap in bandit
CL.CL HTTP request smuggling via duplicate Content-Length in bandit
Client-supplied URI scheme trusted without transport verification in bandit
WebSocket fragmented message reassembly unbounded in bandit
HTTP/2 frame size limit checked after body is buffered in bandit