Robuta

https://memo.vaaat.com/ Ech0 Ech0 is a next-generation open-source self-hosted platform built for individuals. It is lightweight and low-cost, making it easy to publish and share your... https://advisories.gitlab.com/golang/github.com/lin-snow/ech0/CVE-2026-33638/ Ech0 authenticated user-list exposed data via public `/api/allusers` endpoint | GitLab Advisory... CVE-2026-33638 Ech0 authenticated user-list exposed data via public `/api/allusers` endpoint : A public access-control flaw allows unauthenticated users to... https://ech0.koxiuqiu.cn/ Ech0 Ech0 is a next-generation open-source self-hosted platform built for individuals. It is lightweight and low-cost, making it easy to publish and share your... https://advisories.gitlab.com/golang/github.com/lin-snow/ech0/GHSA-69hx-63pv-f8f4/ Ech0 has Stored XSS via SVG Upload and Content-Type Validation Bypass in File Upload | GitLab... GHSA-69hx-63pv-f8f4 Ech0 has Stored XSS via SVG Upload and Content-Type Validation Bypass in File Upload: The file upload endpoint validates Content-Type using... https://a9orange.xyz/ Ech0 Ech0 is an open-source platform for quickly sharing thoughts, text, and links with full data control. https://advisories.gitlab.com/golang/github.com/lin-snow/ech0/GHSA-cp79-9mwr-wr49/ Ech0: Missing authorization on dashboard log endpoints allows low-privilege users to access... GHSA-cp79-9mwr-wr49 Ech0: Missing authorization on dashboard log endpoints allows low-privilege users to access sensitive system logs: Ech0 allows any... https://advisories.gitlab.com/golang/github.com/lin-snow/ech0/CVE-2026-35037/ Ech0: Unauthenticated SSRF in GetWebsiteTitle allows access to internal services and cloud metadata... CVE-2026-35037 Ech0: Unauthenticated SSRF in GetWebsiteTitle allows access to internal services and cloud metadata: The GET /api/website/title endpoint accepts... https://explore.ghost.org/p/ech0re ECH0.RE - Ghost Explore ghostexplore https://advisories.gitlab.com/golang/github.com/lin-snow/ech0/GHSA-4h9q-p5j4-xvvh/ Ech0: Scoped admin access tokens can bypass least-privilege controls on privileged endpoints,... GHSA-4h9q-p5j4-xvvh Ech0: Scoped admin access tokens can bypass least-privilege controls on privileged endpoints, including backup export: Ech0 scoped access... https://advisories.gitlab.com/golang/github.com/lin-snow/ech0/CVE-2026-35036/ Ech0 has Unauthenticated Server-Side Request Forgery in Website Preview Feature | GitLab Advisory... CVE-2026-35036 Ech0 has Unauthenticated Server-Side Request Forgery in Website Preview Feature: Ech0 implements link preview (editor fetches a page title)... server side request forgery https://ech0.re/ ECH0.RE