drkim-dev
6 exploits
Active since Oct 2025
Appsmith < 1.96 - Stored Cross-Site Scripting in Table Widget via Invite Users Feature
kanboard < 1.2.50 - Authenticated Remote Code Execution via Plugin Installer Bypass
Tandoor Recipes <2.5.1 - Path Traversal
Tandoor Recipes < 2.5.1 - Authenticated Blind Server-Side Request Forgery via Cookmate Recipe Import
ClipBucket 5.3-5.5.2-147 - Remote Code Execution via Update Launch Type Parameter
CVSS 7.2
ClipBucket v5 has time-based Blind SQL Injection in ajax.php that leads to Data Exfiltration
CVSS 8.8