Thomas
7 exploits
Active since Apr 2018
Etherpad Lite <1.6.4 - Privilege Escalation
CVSS 9.8
Fides < 2.15.1 - Path Traversal
CVSS 7.5
Fides < 2.22.1 - Server-Side Request Forgery via YAML Dataset and Config Files
CVSS 8.2
Fides < 2.22.1 - Unauthorized Exposure of Sensitive Configuration via API Endpoint
CVSS 6.5
Fides < 2.22.1 - Authenticated Stored Cross-Site Scripting via Privacy Policy URL
CVSS 3.9
Fides 2.15.1-2.23.2 - Stored Cross-Site Scripting in Data Subject Access Request Package
CVSS 4.3
symfony1 1.3.0-1.5.17 - Remote Code Execution via Swift Mailer Gadget Chain
CVSS 5.0