Skip to content
Noroxi

futo records

4 published records for vendor futo.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
75%
Median publish → KEV
No record has entered KEV

All records

4 records
  • immich API Key Privilege Escalation vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    futo · immichJan 29, 2026

  • immich-server: Insecure Transmission of Authentication Credentials via Password Parameter in HTTP Request Query String When Accessing Shared Albums

    MediumCVSS 6.3No exploitEPSS 0%

    futo · immichApr 3, 2026

  • immich has Stored XSS via OCR Text in 360° Panorama Viewer

    MediumCVSS 5.4Proof of conceptEPSS 0%

    futo · immichApr 8, 2026

  • immich: Open Redirect via Shared Album name

    MediumCVSS 5.1No exploitEPSS 0%

    futo · immichApr 15, 2026