~/eslam.salem
  • Research
  • Talks
  • Open Source
  • Blog
  • Writing
  • About
  • EN AR
Research

// vulnerability_research

Vulnerability research, CVE disclosures, and security analyses.

CVE-2022-29078
EJS, Server side template injection RCE (CVE-2022-29078)

Note: The objective of this research or any similar researches is to improve the nodejs ecosystem security level.

Recently i was working on a related project …

CRITICAL Read writeup →
CVE-2020-8135
SSRF vulnerability in Uppy, Detected by Shieldfy

In this post, we will explain how Shieldfy detected an SSRF ( Server-side request forgery ) vulnerability in Uppy, one of the popular packages in NPM, diving …

HIGH Read writeup →
© 2026 Eslam Salem · Built with Hugo · Hosted on Cloudflare Pages
GitHub Twitter/X LinkedIn Security Labs