Back to CVEs & Disclosures
Coordinated disclosure

5 Vulnerabilities Patched

Five reported vulnerabilities validated and patched by vendors following responsible disclosure.

Status
Patched by vendors
Reported
2024 – 2026

Impact

  • Authentication and access-control bypasses on production web applications.
  • Injection flaws allowing unauthorised reads of application data.
  • All findings reported privately and fixed before any public write-up.

Timeline

  1. Discovery

    Manual testing and source review identified the issues.

  2. Report

    Full PoC and remediation guidance sent to each vendor.

  3. Fix

    Vendors shipped patches; disclosure coordinated afterwards.

View advisory on Github-advisories