bootstrapbool
4 credited records · 4 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
27Monitor | CVE-2026-41459Weaponized | Xerte Online Toolkits Path Disclosure via /setupthexerteproject · xerteonlinetoolkits · CWE-497 | Medium6.9 | — | 1.1% | Apr 22, 2026 |
38Monitor | CVE-2026-34415Weaponized | Xerte Online Toolkits File Upload RCE via elfinder Connectorthexerteproject · xerteonlinetoolkits · CWE-184 | Critical9.3 | — | 4.4% | Apr 22, 2026 |
29Monitor | CVE-2026-34414Weaponized | Xerte Online Toolkits Path Traversal via connector.phpthexerteproject · xerteonlinetoolkits · CWE-22 | High7.1 | — | 3.6% | Apr 22, 2026 |
36Monitor | CVE-2026-34413Weaponized | Xerte Online Toolkits Missing Authentication via connector.phpthexerteproject · xerteonlinetoolkits · CWE-497 | High8.8 | — | 3.1% | Apr 22, 2026 |
- CVE-2026-4145927Monitor
Xerte Online Toolkits Path Disclosure via /setup
MediumCVSS 6.9WeaponizedEPSS 1%thexerteproject · xerteonlinetoolkitsApr 22, 2026
- CVE-2026-3441538Monitor
Xerte Online Toolkits File Upload RCE via elfinder Connector
CriticalCVSS 9.3WeaponizedEPSS 4%thexerteproject · xerteonlinetoolkitsApr 22, 2026
- CVE-2026-3441429Monitor
Xerte Online Toolkits Path Traversal via connector.php
HighCVSS 7.1WeaponizedEPSS 4%thexerteproject · xerteonlinetoolkitsApr 22, 2026
- CVE-2026-3441336Monitor
Xerte Online Toolkits Missing Authentication via connector.php
HighCVSS 8.8WeaponizedEPSS 3%thexerteproject · xerteonlinetoolkitsApr 22, 2026