Security Findings


Open Docker Image Registry

Vendor: Bauermedia / Eventim / Atlantismedia

Discovered an exposed Docker image registry without authentication, allowing unauthorized access to private container images.

2023-6-27

Stored XSS Vulnerability

Vendor: BayZeit

Found a cross-site scripting (XSS) vulnerability in the web application allowing arbitrary JavaScript execution.

2025-14-03

Multiple XSS Vulnerabilities

Vendor: Primus

Identified and reported multiple cross-site scripting (XSS) vulnerabilities in the campus management system.

2025-28-04