shaohuzhang1
7 exploits
Active since Jun 2025
MaxKB has Stored XSS via ChatHeadersMiddleware
CVSS 5.4
Stored XSS via Eval Injection in EchartsRander Component
CVSS 5.4
MaxKB has CSV Injection in its Application Chat Export Functionality
CVSS 4.7
1Panel-dev MaxKB MdPreview chat.ts cross site scripting
CVSS 3.5
1Panel-dev MaxKB ChatHeadersMiddleware chat_headers_middleware.py cross site scripting
CVSS 3.5
1Panel-dev MaxKB Public Chat static_headers_middleware.py StaticHeadersMiddleware cross site scripting
CVSS 3.5
MaxKB <1.10.8-lts - Privilege Escalation
CVSS 8.8