Skip to content
View romain-deperne's full-sized avatar

Organizations

@HackInProvence

Block or report romain-deperne

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
romain-deperne/README.md

Romain Deperne

Offensive security researcher. OSCP · OSWA.

Vulnerability research

22 publicly credited CVEs. Links point to my reproduction notes or the vendor advisory.

CVE Project Vulnerability CVSS
CVE-2026-48017 DbGate Code injection leading to remote code execution 8.8
CVE-2026-45662 Dokploy OS command injection 8.8
CVE-2026-34940 KubeAI OS command injection 8.7
CVE-2026-77262 mcp-atlassian Arbitrary file read 8.6
CVE-2026-34160 Chamilo LMS Unauthenticated SSRF 8.6
CVE-2026-34975 Plunk Email header injection 8.5
CVE-2026-41490 Dagster SQL injection 8.3
CVE-2026-33980 adx-mcp-server KQL injection 8.3
CVE-2026-32247 Graphiti Cypher injection 8.1
CVE-2026-34398 FreeCAD Code execution via malicious project metadata 7.8
CVE-2026-34399 FreeCAD Code execution via malicious SVG template 7.8
CVE-2026-33715 Chamilo LMS Unauthenticated SSRF and open email relay 7.2
CVE-2026-35211 OpenCTI Elasticsearch Painless script injection 6.5
CVE-2026-18988 Easy Accordion Stored cross-site scripting 6.4
CVE-2026-11390 News Kit Addons Stored cross-site scripting 6.4
CVE-2026-8607 myCred Stored cross-site scripting 6.4
CVE-2026-8613 aThemes Addons Stored cross-site scripting 6.4
CVE-2026-8677 Prime Elementor Addons Stored cross-site scripting 6.4
CVE-2026-6504 Royal Addons Stored cross-site scripting 6.4
CVE-2026-84191 LibreNMS Stored cross-site scripting via SNMP data 6.1
CVE-2026-40864 JupyterHub Cross-site request forgery 5.4
CVE-2026-34049 Coolify OS command injection 3.3

Also credited on GHSA-wg9g-w2j2-8pgr, an unsafe deserialization issue in MONAI (CVSS 7.8).

Publications

Background

Contact

LinkedIn · Email

Pinned Loading

  1. CVE-2026-32247 CVE-2026-32247 Public

    Cypher injection in Graphiti via unsanitized node_labels — CVE-2026-32247 / CVSS 8.1

    Python 1

  2. CVE-2026-33980 CVE-2026-33980 Public

    KQL injection in adx-mcp-server via table_name — CVE-2026-33980 / CVSS 8.3

    Python

  3. CVE-2026-34940 CVE-2026-34940 Public

    OS command injection in KubeAI via an Ollama model URL — CVE-2026-34940 / CVSS 8.7

  4. CVE-2026-34975 CVE-2026-34975 Public

    CRLF email header injection in Plunk raw MIME construction — CVE-2026-34975 / CVSS 8.5

    Python