https://gitlab.com/lassi-3
4 credited records · 4 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2026-5302No exploit | Permissive Cross-domain Policy with Untrusted Domains in coolercontroldcoolercontrol · coolercontrold · CWE-942 | High8.1 | — | 0.4% | Apr 8, 2026 |
24Monitor | CVE-2026-5301No exploit | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in coolercontrol-uicoolercontrol · coolercontrold · CWE-79 | Medium6.1 | — | 0.4% | Apr 8, 2026 |
36Monitor | CVE-2026-5300No exploit | Missing Authentication for Critical Function in coolercontroldcoolercontrol · coolercontrold · CWE-306 | Critical9.1 | — | 0.3% | Apr 8, 2026 |
28Monitor | CVE-2026-5208No exploit | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in coolercontroldcoolercontrol · coolercontrold · CWE-78 | High7.2 | — | 1.5% | Apr 8, 2026 |
- CVE-2026-530232Monitor
Permissive Cross-domain Policy with Untrusted Domains in coolercontrold
HighCVSS 8.1No exploitEPSS 0%coolercontrol · coolercontroldApr 8, 2026
- CVE-2026-530124Monitor
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in coolercontrol-ui
MediumCVSS 6.1No exploitEPSS 0%coolercontrol · coolercontroldApr 8, 2026
- CVE-2026-530036Monitor
Missing Authentication for Critical Function in coolercontrold
CriticalCVSS 9.1No exploitEPSS 0%coolercontrol · coolercontroldApr 8, 2026
- CVE-2026-520828Monitor
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in coolercontrold
HighCVSS 7.2No exploitEPSS 2%coolercontrol · coolercontroldApr 8, 2026