Ronald Brill

2 exploits Active since Apr 2023
CVE-2023-26119 WRITEUP CRITICAL WRITEUP
net.sourceforge.htmlunit:htmlunit <3.0.0 - RCE
Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage.
CVSS 9.8
CVE-2023-2798 WRITEUP HIGH WRITEUP
HtmlUnit < 2.70.0 - Denial of Service via Stack Overflow
Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages, an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.
CVSS 7.5