writeups.xyz writeups.xyz / Thomas Chauchefoin (@Swapgs)

Title Vulnerabilities Programs Authors
Securing Developer Tools: Unpatched Code Vulnerabilities in Gogs (2/2)
Securing Developer Tools: Unpatched Code Vulnerabilities in Gogs (1/2)
Visual Studio Code Security: Finding New Vulnerabilities in the NPM Integration (3/3)
Visual Studio Code Security: Markdown Vulnerabilities in Third-Party Extensions (2/3)
Security Vulnerabilities in CasaOS
Why ORMs and Prepared Statements Can't (Always) Win
Odoo: Get your Content Type right, or else!
Empowering weak primitives: file truncation to code execution with Git
Remote Code Execution in Melis Platform
Securing Developer Tools: A New Supply Chain Attack on PHP
WordPress Core - Unauthenticated Blind SSRF
Securing Developer Tools: Argument Injection in Visual Studio Code
Your Vulnerability Is In Another OEM!
PHP Supply Chain Attack on Composer