Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.3 80DB2B91-72D2-

Exploit for Exposure of Sensitive Information to an Unauthorized Actor in Microsoft_80DB2B91-72D2-5072-AE04-E22E0DB8B481

CVE-2026-33829 - Security Vulnerability Quick Usage bash python3 exploit.py -t "C:\\Path\\To\\Target" -o demo.zip --data-file payload.exe Exploitat...

N/A N/A GITHUBEXPLOIT
HIGH 7.7 86F57F94-F26C-

Exploit for Exposure of Sensitive Information to an Unauthorized Actor in Tuzitio Camaleon_Cms_86F57F94-F26C-5EF7-904A-939B135AA64E

HTB Facts — Full Writeup Difficulty: Medium OS: Linux Tags: Web, MinIO, Camaleon CMS, Path Traversal, SSTI, Privilege Escalation --- Table of Conte...

N/A N/A GITHUBEXPLOIT
NONE 703E10A3-ED31-

wined_703E10A3-ED31-56A2-9A78-122264BCF6E9

Windows Exploitation wined Tools The following scripts were used to automate Windows x86 32-bit / x8664 64-bit Exploitation Development. Feel free ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 3BCADBAC-E6C7-

Exploit for Prototype Pollution in Cure53 Dompurify_3BCADBAC-E6C7-5B3A-84E1-6938398220F9

DOMPurify re-clone bypass. Instead of relying on easily stripped source comments or version variables, this tool performs logic fingerprinting on m...

N/A N/A GITHUBEXPLOIT
NONE MSF:EXPLOIT-MULTI-

Gogs Git Rebase Argument Injection RCE_MSF:EXPLOIT-MULTI-HTTP-GOGS_REBASE_RCE-

This module exploits an argument injection vulnerability in the pull request merge flow of Gogs is parsed by Git as the --exec flag rather than a p...

N/A N/A METASPLOIT
CRITICAL 9.2 8AD1A192-E34A-

Exploit for CVE-2026-42945_8AD1A192-E34A-5E8C-A3B9-4AAECCED2A20

No description provided...

N/A N/A GITHUBEXPLOIT
MEDIUM 6.5 243CDB42-BE28-

Exploit for CVE-2026-2256_243CDB42-BE28-5810-BB45-078630950EB9

CVE-2026-2256-Threat-Model----ms-agent-Command-Injection...

N/A N/A GITHUBEXPLOIT
NONE 420BEB65-BD63-

Exploit for CVE-2026-26897_420BEB65-BD63-521E-90B1-5065E05B96C0

EcoOnline EHS Android — Deep Link Validation Bypass → WebView Open Redirect CVE-2026-26897 Public disclosure / advisory for CVE-2026-26897, a deep ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 PACKETSTORM:222614

📄 MCPJam Inspector 1.4.2 Command Injection_PACKETSTORM:222614

This is an advanced Python proof of concept for CVE-2026-23744 demonstrating command injection through a vulnerable MCP API endpoint, leading to re...

N/A N/A PACKETSTORM
CRITICAL 9.8 7FE5A510-990A-

Exploit for Prototype Pollution in Cure53 Dompurify_7FE5A510-990A-5CCB-9427-6AA5D7B10937

No description provided...

N/A N/A GITHUBEXPLOIT