sahar042
5 exploits
Active since Nov 2023
runc < 1.2.8, 1.3.0-rc.1-1.3.1, 1.4.0-rc.1-1.4.0-rc.2 - Arbitrary Mount Gadget via Insufficient Bind-Mount Verification
CKEditor < 4.15.1 - Cross-Site Scripting via /ckeditor/samples/old/ajax.html
MongoDB Memory Disclosure (CVE-2025-14847) - Mongobleed
CVSS 7.5
WP Booking Calendar <= 9.9 - Unauthenticated SQL Injection via calendar_request_params[dates_ddmmyy_csv]
CVSS 9.8
Stakater Forecastle < 1.0.139 - Path Traversal via URL-Encoded Backslash
CVSS 7.5