About
Hi, I’m Henry Scott aka t3l3sc0p3. I’m a cybersecurity enthusiast with a deep passion for web exploitation and bug bounty hunting. My ultimate goal is to become a Security Researcher and get my name on the Hall of Fame for companies like Google, Meta,…
I started my cybersecurity journey back in 2020, exploring the world of web security, and have been hooked ever since. Currently I’m pursuing my studies at university, where I continue to sharpen my skills in offensive security and vulnerability research
Hope you will enjoy my content!
List of CVEs (5)
| CVE ID | Severity | Target | Description |
|---|---|---|---|
| CVE-2026-58503 | Medium | Frappe | Unauthenticated User Enumeration via reset_password |
| CVE-2026-41430 | Medium | Frappe Press | Reflected XSS on login redirection |
| CVE-2026-41317 | High | Frappe Press | Unsafe HTTP method / CSRF-adjacent issue on API secret generation |
| CVE-2025-22601 | Low | Discourse | Client Side Path Traversal using activate account route |
| CVE-2024-27105 | High | Frappe | File Permissions can by bypassed using certain endpoints |
Achievements
-
13th place as 3r0th3rH00d in CSCV 2025 A division (consolation prize)
-
6th place as 3r0th3rH00d in Digital Dragons CTF 2025 (consolation prize)






