fineman999
4 exploits
Active since Jul 2024
Gotenberg: Unauthenticated RCE via ExifTool Metadata Key Injection
CVSS 9.8
open-webui 0.3.32 - Unauthenticated Denial of Service via Code Format Endpoint
CVSS 7.5
Ech0 affected by unauthenticated SSRF in GetWebsiteTitle allows access to internal services and cloud metadata
CVSS 7.2
Flowise 1.4.3 - Arbitrary File Read via OpenAI Assistants File Endpoint
CVSS 7.5