thomas-osgood
5 exploits
Active since Oct 2019
WordPress 5.6.0-5.7.0 - Authenticated XML External Entity Injection via Media Library File Upload
request-baskets < 1.2.1 - Server-Side Request Forgery via /api/baskets/{name} Endpoint
GeoServer WMS GetMap XXE Arbitrary File Read
ThinVNC 1.0b1 - Path Traversal and Arbitrary File Read via ThinVnc.ini
WP Data Access <5.3.7 - Privilege Escalation
CVSS 7.5