Skip to content
Noroxi

Mark Esler (https://github.com/eslerm)

6 credited records · 6 in the last 12 months · 0 in CISA KEV

Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.

Credited records

Researchers
  • In versions of the Datadog Android application prior to v545-5.9.2, the app tags Crashlytics data with the user's Datadog UUID, with no user

    MediumCVSS 6.5No exploitEPSS 0%

    datadog · android appAug 7, 2026

  • In versions of the Datadog Android application prior to v541-5.9.2, the exported launcher activity AppActivity accepts an attacker-supplied

    MediumCVSS 6.3No exploitEPSS 0%

    datadog · android appAug 7, 2026

  • In versions of the Datadog Android application prior to v554-5.9.4, two Room-backed SQLite databases store sensitive content in plaintext: L

    MediumCVSS 4.6No exploitEPSS 0%

    datadog · android appAug 7, 2026

  • In versions of the Datadog Android application prior to v541-5.9.2, BubbleChatActivity is exported with no permission guard and accepts a SE

    MediumCVSS 6.4No exploitEPSS 0%

    datadog · android appAug 7, 2026

  • In versions of the Datadog Android application prior to v545-5.9.2, six App Widget configuration activities (IncidentWidgetActivity, Monitor

    MediumCVSS 5.5No exploitEPSS 0%

    datadog · android appAug 7, 2026

  • In versions of the Datadog Android application prior to v545-5.9.2, OnCallNotificationActivity is declared exported with no permission guard

    MediumCVSS 6.5No exploitEPSS 0%

    datadog · android appAug 7, 2026