Pascal Knoth
3 credited records · 3 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
33Monitor | CVE-2026-65635No exploit | Boruta dynamic client registration allows creation of over-privileged OAuth clientsmalach-it · boruta · CWE-653 | High8.3 | — | 0.5% | Jul 30, 2026 |
27Monitor | CVE-2026-54885No exploit | Server-side request forgery in Boruta OAuth request_uri and OpenID jwks_uri fetchingmalach-it · boruta · CWE-918 | Medium6.9 | — | 0.6% | Jul 30, 2026 |
36Monitor | CVE-2026-53431No exploit | Boruta accepts expired JWT client assertions due to missing exp claim validationmalach-it · boruta · CWE-294 | Critical9.1 | — | 0.7% | Jul 30, 2026 |
- CVE-2026-6563533Monitor
Boruta dynamic client registration allows creation of over-privileged OAuth clients
HighCVSS 8.3No exploitEPSS 1%malach-it · borutaJul 30, 2026
- CVE-2026-5488527Monitor
Server-side request forgery in Boruta OAuth request_uri and OpenID jwks_uri fetching
MediumCVSS 6.9No exploitEPSS 1%malach-it · borutaJul 30, 2026
- CVE-2026-5343136Monitor
Boruta accepts expired JWT client assertions due to missing exp claim validation
CriticalCVSS 9.1No exploitEPSS 1%malach-it · borutaJul 30, 2026