Kanboard CVE-2026-33058 Writeup
Walkthrough of the discovery of an authenticated SQL injection in Kanboard version <= 1.2.50 tracked as CVE-2026-33058
Walkthrough of the discovery of an authenticated SQL injection in Kanboard version <= 1.2.50 tracked as CVE-2026-33058
What I’ve been up to in the last few weeks
A tl;dr about account lockout bypass (CVE-2025-6004) in Hashicorp Vault
While publishing oauth-labs I stumbled upon a vulnerability in goreportcard
New pet project ghmlwr
Atlassian Research and a short status update
Why RFC5322 email validation might lead to XSS vulnerabilities
This is a short one about a not-so-fun parcel tracking service that I came across after completing the check-out of my cat food order for my furry overlords
A short personal opinon piece about uncooperative businesses.
A not-so-fun little feature of AirTies Air 4930.