lukasz-rybak
29 exploits
Active since Nov 2025
Dolibarr: OS Command Injection (RCE) via MAIN_ODT_AS_PDF configuration
October CMS: Twig Sandbox Bypass via Collection Methods
CVSS 4.9
XWiki Blog <9.15.7 - Stored XSS
CVSS 9.0
WBCE CMS <1.6.5 - Auth Bypass
CVSS 8.1
Churchcrm < 6.5.3 - XSS
CVSS 5.4
Churchcrm < 6.4.0 - XSS
CVSS 5.4
Churchcrm < 6.5.3 - SQL Injection
CVSS 8.8
Devcode Openstamanager < 2.9.8 - OS Command Injection
CVSS 8.8
Devcode-it Openstamanager - SQL Injection
CVSS 8.8
Devcode Openstamanager < 2.9.8 - SQL Injection
CVSS 8.8
Devcode-it Openstamanager - SQL Injection
CVSS 8.8
Devcode Openstamanager < 2.9.8 - SQL Injection
CVSS 6.5
Omega-PSIR <4.6.7 - XSS
CVSS 6.1
Redaxo < 5.20.2 - Path Traversal
CVSS 6.5
Wbce Cms < 1.6.4 - Improper Authorization
CVSS 8.8
Saleor < 3.20.108 - XSS
CVSS 4.8
InvoicePlane <=1.6.3 - Path Traversal
CVSS 7.5
Shopware <6.7.6.1 - Code Injection
CVSS 7.2
Saleor <3.20.108-3.22.27 - Code Injection
CVSS 5.4
OpenSTAManager <2.9.8 - XSS
CVSS 6.1
OpenSTAManager <2.9.8 - SQL Injection
CVSS 6.5
OpenSTAManager <2.9.8 - SQL Injection
CVSS 6.5
OpenSTAManager <2.9.8 - SQL Injection
CVSS 6.5
OpenSTAManager <2.9.8 - SQL Injection
CVSS 6.5
Facturascripts < 2025.81 - SQL Injection
CVSS 8.8