Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 A4F1D39D-10D1-

Exploit for CVE-2026-43503_A4F1D39D-10D1-581E-84B1-21CD3BF8EF3D

No description provided...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 030DAD67-A828-

Exploit for Deserialization of Untrusted Data in Splunk_030DAD67-A828-5EBE-BC28-DC3BB6C406CE

CVE-2026-20251 — Splunk Secure Gateway jsonpickle Deserialization RCE Researcher: Fady Oueslati · ReactiveZero Security Research Reference: 2026FO-...

N/A N/A GITHUBEXPLOIT
NONE MSF:EXPLOIT-WINDOWS-

Peyara Remote Mouse 1.0.1 Unauthenticated Remote Code Execution_MSF:EXPLOIT-WINDOWS-MISC-PEYARA_REMOTE_MOUSE_RCE-

This module exploits an unauthenticated remote code execution vulnerability in Peyara Remote Mouse 1.0.1. The application exposes a Socket.IO WebSo...

N/A N/A METASPLOIT
NONE BDDADE0B-C11C-

Exploit for CVE-2026-46331_BDDADE0B-C11C-55AD-AC1E-1C4477E65931

🚨 CVE-2026-46331 - Linux Kernel COW Bug Linux Kernel net/sched Partial Copy-on-Write COW Page Cache Corruption -orange?style=for-the-badge A Linux...

N/A N/A GITHUBEXPLOIT
NONE 5A30AF6D-A3F1-

MamaBaohe-ERP-SQLi_5A30AF6D-A3F1-5C05-9042-C5ED3EF4AAB8

MamaBaohe ERP Management Cloud Platform SQL Injection Overview | Field | Value | |-------|-------| | Product | Maternal and Child Health ERP Manage...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 C1779145-9574-

Exploit for OS Command Injection in Cacti_C1779145-9574-5457-B610-1891430BF6B2

CVE-2026-39938: Cacti " 3.2 Execute the Code by Including Log File bash curl -k -s "http://target-cacti/graphimage.php?action=view&localgraphid=1&g...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 2A8C8CE0-592F-

Exploit for Missing Authentication for Critical Function in Splunk_2A8C8CE0-592F-566A-AD1D-9DB21DEE0C60

CVE-2026-20253 - Splunk Enterprise Pre-Auth RCE PoC ⚠️ ADVERTENCIA: Este script es solo para fines educativos y de prueba en entornos autorizados. ...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.4 PACKETSTORM:224389

📄 Docmost Cross Site Scripting_PACKETSTORM:224389

Docmost versions prior to 0.71.0 suffer from a persistent cross site scripting vulnerability...

N/A N/A PACKETSTORM
HIGH 7.6 PACKETSTORM:224380

📄 TypeBot Server-Side Request Forgery_PACKETSTORM:224380

TypeBot versions prior to 3.16.0 suffer from a server-side request forgery vulnerability...

N/A N/A PACKETSTORM
MEDIUM 5.4 PACKETSTORM:224388

📄 Docmost 0.70.x Authorization Bypass_PACKETSTORM:224388

A low-privileged Docmost user could supply a victim attachmentId to the generic upload endpoint and overwrite another page's stored attachment insi...

N/A N/A PACKETSTORM