CVE-2023-24329 – URL Blackslisting Bypass in Python's urllib.parse
A vulnerability in Python's urllib.parse module that allows attackers to bypass URL blocklists simply by adding leading whitespace before a URL.
A vulnerability in Python's urllib.parse module that allows attackers to bypass URL blocklists simply by adding leading whitespace before a URL.
Writeup for Reflective (Web) challenge from CrewCTF 2025 where I discussed two unintended solutions.
Writeup for My Flask App (Web) challenge from SekaiCTF 2025. 1st Place – SekaiCTF 2025 Writeup Contest.
A zero‑day remote code execution vulnerability in Microsoft SharePoint (on‑premises).
CVE‑2025‑29927 is a critical vulnerability (CVSS 9.1) in Next.js that allows attackers to bypass middleware‑based security checks.