Wocanilo

2 exploits Active since Aug 2019
CVE-2019-14537 NOMISEC CRITICAL WORKING POC
YOURLS < 1.7.3 - Authentication Bypass via Type Juggling
YOURLS through 1.7.3 is affected by a type juggling vulnerability in the api component that can result in login bypass.
8 stars
CVSS 9.8
CVE-2019-14912 NOMISEC MEDIUM WORKING POC
PRiSE adAS 1.7.0 - Open Redirect via OPENSSO Goto Parameter
An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly check the goto parameter, leading to an open redirect that leaks the session cookie.
CVSS 6.1