skip to content

Léo Grambert · France

Web developer
& security researcher.

Currently exploring cybersecurity through vulnerability research, CTF competitions, and open-source security tools.

01 — Projects

Selected work

Loading contributions…

Less
More

02 — CVEs

Vulnerabilities reported

CVE-2026-32255

High · 8.6 Mar 2026

Kan is an open-source project management tool. In versions 0.5.4 and below, the /api/download/attatchment endpoint has no authentication and no URL validation. The Attachment Download endpoint accepts a user-supplied URL query parameter and passes it directly to fetch() server-side, and returns the full response body. An unauthenticated attacker can use this to make HTTP requests from the server to internal services, cloud metadata endpoints, or private network resources. This issue has been fixed in version 0.5.5. To workaround this issue, block or restrict access to /api/download/attatchment at the reverse proxy level (nginx, Cloudflare, etc.).

03 — Proof of concept

Public PoCs

04 — Open source

Contributions

05 — Writing

Publications

06 — Stack

Tools & technologies

Programming Languages
JavaScript, TypeScript, Python, PHP, Ruby
Web Frameworks
React, Next.js, Node.js, FastAPI, Ruby on Rails, Symfony, Hapi.js
Security
Vulnerability Research, CVE Analysis, CTF Challenges, Web Application Security
DevOps & Tools
Git, CI/CD, Docker, Linux, Shell Scripting

08 — Archive

Certificate archive

121 indexed