03 CVE Research

Disclosed

Vulnerabilities I found, reported privately to the vendor and published only once a fix was available.

CVE-2026-30332 High TOCTOU race condition

TOCTOU Privilege Escalation in Balena Etcher

Balena Etcher versions prior to v2.1.4 on Windows are affected by a Time-of-Check to Time-of-Use (TOCTOU) race condition in the temporary file handling. A medium integrity process can modify the auto-generated .cmd script before it is executed with elevated privileges via UAC, leading to privilege escalation to high integrity.

CVE-2025-56795 Critical Stored XSS

Stored Cross-Site Scripting (XSS) in Mealie

Mealie versions up to 3.0.1 are affected by a Stored XSS vulnerability in the recipe creation functionality. The issue arises due to insufficient sanitization of the note and text fields, enabling the injection of malicious JavaScript that executes when viewing the recipe.

CVE-2025-48708 Medium Information disclosure

Artifex Ghostscript PDF Password Leakage

A vulnerability in Artifex Ghostscript before version 10.05.1 causes plaintext passwords used to protect PDF files to be embedded in the output. The issue is due to lack of argument sanitization in gs_lib_ctx_stash_sanitized_arg for the # case, allowing password extraction using simple tools.