Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MSF:EXPLOIT-MULTI-

Xerte Online Toolkits Arbitrary File Upload – Unauthenticated Media Upload_MSF:EXPLOIT-MULTI-HTTP-XERTE_UNAUTHENTICATED_MEDIAUPLOAD-

This module bypasses authentication failure, extension blacklist, and path traversal vulnerabilities in the /editor/elfinder/php/connector.php endp...

N/A N/A METASPLOIT
HIGH 7.1 MSF:POST-LINUX-

Linux Kernel __ptrace_may_access() Exit Race chage File Disclosure_MSF:POST-LINUX-GATHER-CVE_2026_46333_CHAGE-

This module exploits a race condition in the Linux kernel doexit teardown path affecting ptracemayaccess. During process termination, privileged fi...

N/A N/A METASPLOIT
NONE BDAE3A4F-7E46-

opencode-apk-forge_BDAE3A4F-7E46-5641-BB94-113CAA610923

APKForge - The Dark Version of OpenCode ███╗ ███╗ ██╗ ██╗ ███████╗ ██████╗ ███████╗ ████╗ ████║ ██║ ██╔╝ ██╔════╝ ██╔═══██╗ ██╔════╝ ██╔████╔██║ ██...

N/A N/A GITHUBEXPLOIT
NONE ADE8E0AB-8030-

vulnerability-scanner_ADE8E0AB-8030-5810-ACB5-37D6ED098B49

vulnerability-scanner Automated detection of SQL Injection and Cross-Site Scripting XSS vulnerabilities in web applications...

N/A N/A GITHUBEXPLOIT
NONE C3D0F122-BC3F-

Grimoire_C3D0F122-BC3F-5AAC-9F18-FA8CB3F96BF4

書 — The Pentesterʼs Spellbook Answer the questions. Unleash the test cases. --- What is Grimoire? A grimoire is a spellbook — a compendium of know...

N/A N/A GITHUBEXPLOIT
NONE 415A117B-A28B-

OffSploit_415A117B-A28B-5B94-A898-C38DDF911AB1

🤖 OffSploit - Automate your security testing tasks effectively OffSploit helps you perform security tests on your own systems. This tool uses loca...

N/A N/A GITHUBEXPLOIT
MEDIUM 6.5 PACKETSTORM:223516

📄 Apache Flink Kubernetes Operator 1.14.0 Server-Side Request Forgery_PACKETSTORM:223516

This is a Metasploit auxiliary module to demonstrate a service-side request forgery vulnerability in Apache Flink Kubernetes Operator version 1.14....

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:223514

📄 Apache 2.4.66 HTTP/2 mod_http2 Double-Free Denial of Service_PACKETSTORM:223514

This script is a multi-mode security tool that triggers a denial of service against Apache HTTP Server version 2.4.66 related to a double-free cond...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:223502

📄 HotelDruid 3.0.x Credential Exposure / Stress Tester_PACKETSTORM:223502

Proof of concept denial of service and credential disclosure exploit for HotelDruid versions 3.0.0 and 3.0.7...

N/A N/A PACKETSTORM
NONE PACKETSTORM:223513

📄 AnyDesk 9.7.5 Unquoted Service Path_PACKETSTORM:223513

AnyDesk version 9.7.5 unquoted service path privilege escalation to SYSTEM exploit...

N/A N/A PACKETSTORM