danielgatis records
3 published records for vendor danielgatis.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-346 Origin Validation Error1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
34Monitor | CVE-2025-25302No exploit | Rembg CORS misconfigurationdanielgatis · rembg · CWE-346 | High8.7 | — | 0.2% | Mar 3, 2025 |
27Monitor | CVE-2025-25301No exploit | Rembg allows SSRF via /api/removedanielgatis · rembg · CWE-918 | Medium6.9 | — | 0.5% | Mar 3, 2025 |
21Monitor | CVE-2026-40086No exploit | Rembg has a Path Traversal via Custom Model Loadingdanielgatis · rembg · CWE-22 | Medium5.3 | — | 0.6% | Apr 10, 2026 |
- CVE-2025-2530234Monitor
Rembg CORS misconfiguration
HighCVSS 8.7No exploitEPSS 0%danielgatis · rembgMar 3, 2025
- CVE-2025-2530127Monitor
Rembg allows SSRF via /api/remove
MediumCVSS 6.9No exploitEPSS 1%danielgatis · rembgMar 3, 2025
- CVE-2026-4008621Monitor
Rembg has a Path Traversal via Custom Model Loading
MediumCVSS 5.3No exploitEPSS 1%danielgatis · rembgApr 10, 2026