Skip to content
Noroxi

tinyb0y

5 credited records · 5 in the last 12 months · 0 in CISA KEV

Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.

Credited records

Researchers
  • Apache Calcite Avatica: Unrestricted class initialization when instantiating plugins

    HighCVSS 8.8No exploitEPSS 1%

    apache software foundation · apache calcite avaticaSep 22, 2026

  • GitPython before 3.1.58 Path Traversal via .gitmodules Submodule Name

    HighCVSS 8.4No exploitEPSS 0%

    gitpython project · gitpythonAug 19, 2026

  • Improper handling of highly compressed data (data amplification) in CISA Malcolm

    HighCVSS 7.1No exploitEPSS 0%

    cisagov · malcolmAug 18, 2026

  • Incorrect Authorization in CISA Malcolm

    MediumCVSS 5.3No exploitEPSS 0%

    cisagov · malcolmAug 18, 2026

  • OpenNMS JEXL sandbox bypass in Measurements REST API allows ROLE_USER to load arbitrary classes

    MediumCVSS 5.4No exploitEPSS 0%

    the opennms group · meridianAug 13, 2026