Public disclosures of software vulnerabilities discovered and responsibly reported by Chandler Johnson. Includes CVEs, technical writeups, and proof-of-concepts.
- CVE-2026-26725: Print Shop Pro WebDesk Privilege Escalation
- CVE-2026-26722: Global Facilities Management Software Weak Authentication Mechanism
- CVE-2025-61548: Print Shop Pro WebDesk SQL Injection
- CVE-2026-26721: Global Facilities Management Software Session Identifier in Query String
- CVE-2026-26723: Global Facilities Management Software Reflective Cross-Site Scripting (XSS)
- CVE-2026-26724: Global Facilities Management Software Stored Cross-Site Scripting (XSS)
- CVE-2025-61547: Print Shop Pro WebDesk Cross-Site Request Forgery (CSRF)
- CVE-2025-61549: Print Shop Pro WebDesk Reflective Cross-Site Scripting (XSS)
- CVE-2025-61550: Print Shop Pro WebDesk Stored Cross-Site Scriping (XSS)