Skip to content

AL-Cybision/AL-Cybision

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

21 Commits
 
 
 
 

Repository files navigation

👨🏻‍💼 Muhammad Noman Ilyas (AL-Cybision)

🛡️ Application Security & Vulnerability Researcher

GitHub Followers LinkedIn


OSWE Badge

🔍 SECURE CODE REVIEW    🛡️ VULNERABILITY RESEARCH    🤖 AI/ML MODEL FILE VULNS


Highlights

🪲 Vulnerabilities Discovered

CVE ID CVSS Project Summary References
CVE-2026-6691 🔴 8.6 High 🍃 MongoDB C Driver Cyrus SASL username canonicalization heap buffer overflow via unsafe string copy leads to RCE & DoS CDRIVER-6134
CVE-2025-11157 🔴 7.8 High 🍽️ Feast Unsafe PyYAML deserialization in Kubernetes materializer enables arbitrary code execution Fix PR #5643 / Huntr
CVE-2025-59420 🔴 7.5 High 🔐 Authlib JWT/JWS accepts unknown crit headers → possible authz bypass GHSA-9ggr-2464-2j32
CVE-2025-61920 🔴 7.5 High 🔐 Authlib DoS via oversized JOSE segments GHSA-pq5p-34cr-23v9
CVE-2025-62706 🟡 6.5 Medium 🔐 Authlib zip=DEF decompression bomb enables DoS GHSA-g7f3-828f-7h7m

🔒 Private Validated Findings

Status Area Public-safe summary
Private / Validated joblib model-file security Load-time model artifact deserialization issue leading to code-execution risk and scanner-evasion behavior. Technical details withheld until disclosure.
Private / Validated Keras .keras model-file security Safe-mode model-loading bypass class involving model configuration/data-loading behavior, aligned with later public Keras CVE-2025-12058 research. Technical details withheld until disclosure.

🤝 Contributions

Project Description Version Link
Go-Jose Fixed bug: b64 header ignored in unprotected header (now rejected). v4.1.3 PR #210
Authlib Collaborated on patch for critical header validation bypass. v1.6.4 PR #823

About

Application Security Researcher | Secure Code Review | Vulnerability Research

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors