Miguel Ribeiro
12 exploits
Active since Feb 2026
Wallos: Incomplete fix for CVE-2026-30840 - SSRF in AI and notification endpoints bypass ssrf_helper.php
CVSS 6.5
Wallos: Password Reset Tokens Never Expire
CVSS 6.5
Wallos: SSRF Bypass - Incomplete Fix for CVE-2026-30839/30840
CVSS 7.7
Wallos: Stored cross-site scripting (XSS) vulnerability in the payment method rename endpoint
CVSS 5.4
Wallos: Incomplete fix for CVE-2026-30840 - SSRF in AI and notification endpoints bypass ssrf_helper.php
CVSS 6.5
Wallos: SSRF via HTTP Proxy Environment Variable
CVSS 9.1
Wallos <4.6.2 - Path Traversal
CVSS 7.5
Wallos <4.6.2 - SSRF
CVSS 4.3
Wallos <4.6.2 - SSRF
CVSS 8.8
Wallos <4.6.2 - XSS
CVSS 6.1
Wallos <4.6.2 - Privilege Escalation
CVSS 4.3
Wallos <=4.6.0 - SSRF
CVSS 7.7