Skip to content
View Kirill89's full-sized avatar

Organizations

@linux-learn@java-self-study@mobb-dev

Block or report Kirill89

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Kirill89/README.md

Hi, I'm Kirill 👋

Information Security Researcher · Software Engineer · Open Source Software Contributor


Blogs


Talks


Vulnerabilities

  1. Open Redirect in Gophish
  2. Path Traversal in PistacheCVE-2022-26068, C/C++
  3. Path Traversal in WebccCVE-2022-25298, C/C++
  4. Arbitrary File Write in DrogonCVE-2022-25297, C/C++
  5. Arbitrary File Write in MongooseCVE-2022-25299, C/C++
  6. Content Injection in CrowCVE-2021-23824, C/C++
  7. Path Traversal in CrowCVE-2021-23514, C/C++
  8. Arbitrary File Write in Iris Web FrameworkCVE-2021-23772, Go
  9. Open Redirect in ClearanceCVE-2021-23435, Ruby
  10. DOM-based XSS in Video.jsCVE-2021-23414, JavaScript
  11. Open Redirect in GitpodGo
  12. Prototype Pollution in nedbCVE-2021-23395, JavaScript
  13. Prototype Pollution in yargs-parser CVE-2020-7608, JavaScript
  14. Prototype Pollution in minimistCVE-2020-7598, JavaScript
  15. Denial of Service in ecstaticCVE-2019-10775, JavaScript
  16. Command Injection in php-shellcommandCVE-2019-10774, PHP
  17. SQL Injection in MedooCVE-2019-10762, PHP
  18. SQL Injection in Pixie Query BuilderCVE-2019-10766, PHP
  19. Prototype Pollution in AngularJSCVE-2019-10768, JavaScript
  20. SQL Injection in knex.jsCVE-2019-10757, JavaScript
  21. SQL Injection in sequelizeCVE-2019-10748, JavaScript
  22. Prototype Pollution in lodash and lodash.mergeCVE-2019-10744, JavaScript

Pinned Loading

  1. prototype-pollution-explainedprototype-pollution-explainedPublic

    Prototype Pollution in JavaScript

    JavaScript 76 16

  2. prototype-pollution-exploitsprototype-pollution-exploitsPublic

    Prototype Pollution exploits collection

    JavaScript 40 10

  3. visual-studio-code-extension-security-vulnerabilitiesvisual-studio-code-extension-security-vulnerabilitiesPublic

    HTML 4 1

  4. cpp-bencodecpp-bencodePublic

    C++ Bencode Parsing Library

    C++ 1 1

  5. trax-retail/url-protector-nginx-moduletrax-retail/url-protector-nginx-modulePublic

    This module allow nginx to decrypt strings encrypted with xxtea algorithm. This is useful to hide actual URLs from client.

    C 10 5

  6. reviewcerberusreviewcerberusPublic

    AI-powered code review tool that analyzes git branch differences and generates comprehensive review reports. Supports AWS Bedrock and Anthropic API. Features automated analysis of logic, security, …

    Python 32 2