Skip to content
View matt-'s full-sized avatar

Highlights

  • Pro

Block or report matt-

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
matt-/README.md

Hi there 👋

CVEs

Microsoft:

Google:

Electron:

Zulip

  • CVE-2020-9445 - Server XSS vulnerability in modal_link
  • CVE-2020-9443 - Desktop RCE Untrusted content in webview.
  • CVE-2020-10856 - Remote code execution due to missing context isolation
  • CVE-2020-10857 - shell.openExternal and shell.openItem
  • CVE-2020-10858 - Zulip recording via the webcam and microphone due to a missing permission request handler.

Other / Bug Bounty: RCEs in both Burp and ZAP proxy apps. RCEs in VSCode via Markdown issues. Bugcrowd MVP January 2020 Microsoft (MSRC) Contributors List - 2019 Facebook Hall of Fame

Pinned Loading

  1. CVE-2018-15685 CVE-2018-15685 Public

    Forked from electron/minimal-repro

    POC for CVE-2018-15685

    JavaScript 42 17

  2. TheGreatEscape TheGreatEscape Public

    CSS 9 2

  3. CVE-2012-2848 Video: http://www.you... CVE-2012-2848 Video: http://www.youtube.com/watch?v=fY6TnhoxU78
    1
    
                  
    2
    <!DOCTYPE html>
    3
    <html lang="en">
    4
    <head>
    5
    <meta charset="UTF-8" />
  4. net-yahoo net-yahoo Public

    Automatically exported from code.google.com/p/net-yahoo

    Perl

  5. pixee/pixee-cli pixee/pixee-cli Public

    Implementation of the Pixee CLI

    Python 31 12

  6. Contrast-Security-OSS/NodeTestBench Contrast-Security-OSS/NodeTestBench Public archive

    Intentionally Vulnerable Node Applications

    JavaScript 16 12