epicosy
11 exploits
Active since Sep 2013
OWASP json-sanitizer < 1.2.1 - Cross-Site Scripting via SCRIPT Element Confusion
CVSS 6.1
XStream < 1.4.14 - Remote Code Execution via Blocklist Bypass
CVSS 8.0
Jooby < 1.6.4 - Cross-Site Scripting via Default Error Handler
CVSS 6.1
Terracotta Quartz Scheduler <2.3.0 - SSRF
CVSS 9.8
Ratpack < 1.7.5 - HTTP Response Splitting via Unvalidated HTTP Headers
CVSS 7.5
karsany OBridge <1.3 - SQL Injection
CVSS 4.6
Square Retrofit < 2.5.0 - XML External Entity Injection via JAXB
CVSS 9.1
Apache Sling XSS Protection API < 1.0.12 - Cross-Site Scripting via encodeForJSString Method
CVSS 6.1
OWASP AntiSamy < 1.5.5 - Cross-Site Scripting via Style Attribute Bypass
CVSS 6.1
jsoup < 1.8.3 - Cross-Site Scripting
CVSS 6.1
JavaMelody < 1.46 - Cross-Site Scripting via X-Forwarded-For Header