Matteo Collina
23 exploits
Active since Dec 2017
Mercurius <16.8.0 - DoS
CVSS 8.2
MQTT.js <2.15.0 - DoS
CVSS 6.5
Aedes < 0.35.0 - Incorrect Authorization
CVSS 5.3
Fastify-reply-from < 4.0.2 - Improper Input Validation
CVSS 10.0
Fastify-http-proxy < 4.3.1 - Improper Input Validation
CVSS 10.0
Msgpack5 < 3.6.1 - Prototype Pollution
CVSS 6.7
Fastify-multipart < 5.3.1 - Prototype Pollution
CVSS 7.5
@fastify/bearer-auth <7.0.2-8.0.1 - Info Disclosure
CVSS 7.5
Undici <5.19.1 - ReDoS
CVSS 7.5
Fastify Passport - CSRF Bypass
CVSS 6.5
Fastify Swagger-UI - Information Disclosure
CVSS 5.3
Undici <6.6.1 - Memory Corruption
CVSS 6.5
Undici <5.28.2, <6.6 - Auth Bypass
CVSS 3.9
Nodejs Undici < 5.28.4 - Incorrect Authorization
CVSS 3.9
Nodejs Undici < 5.28.4 - Improper Access Control
CVSS 2.6
@festify/secure-session - Info Disclosure
CVSS 7.4
Undici <5.28.5,6.21.1,7.2.3 - Info Disclosure
CVSS 6.8
Fastify <5.3.0 - Auth Bypass
CVSS 7.5
NPM Undici < 5.29.0 - Memory Leak
CVSS 3.1
Fastify-reply-from <12.5.0 - SSRF
CVSS 5.4
Nodejs Undici < 6.23.0 - Resource Allocation Without Limits
CVSS 5.9
@fastify/express <4.0.3 - Auth Bypass
CVSS 8.4
Fastify < 5.7.3 - Resource Allocation Without Limits
CVSS 3.7