Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MSF:EXPLOIT-WINDOWS-

Peyara Remote Mouse 1.0.1 Unauthenticated Remote Code Execution_MSF:EXPLOIT-WINDOWS-MISC-PEYARA_REMOTE_MOUSE_RCE-

This module exploits an unauthenticated remote code execution vulnerability in Peyara Remote Mouse 1.0.1. The application exposes a Socket.IO WebSo...

N/A N/A METASPLOIT
NONE BDDADE0B-C11C-

Exploit for CVE-2026-46331_BDDADE0B-C11C-55AD-AC1E-1C4477E65931

๐Ÿšจ CVE-2026-46331 - Linux Kernel COW Bug Linux Kernel net/sched Partial Copy-on-Write COW Page Cache Corruption -orange?style=for-the-badge A Linux...

N/A N/A GITHUBEXPLOIT
NONE 5A30AF6D-A3F1-

MamaBaohe-ERP-SQLi_5A30AF6D-A3F1-5C05-9042-C5ED3EF4AAB8

MamaBaohe ERP Management Cloud Platform SQL Injection Overview | Field | Value | |-------|-------| | Product | Maternal and Child Health ERP Manage...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 C1779145-9574-

Exploit for OS Command Injection in Cacti_C1779145-9574-5457-B610-1891430BF6B2

CVE-2026-39938: Cacti " 3.2 Execute the Code by Including Log File bash curl -k -s "http://target-cacti/graphimage.php?action=view&localgraphid=1&g...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 2A8C8CE0-592F-

Exploit for Missing Authentication for Critical Function in Splunk_2A8C8CE0-592F-566A-AD1D-9DB21DEE0C60

CVE-2026-20253 - Splunk Enterprise Pre-Auth RCE PoC โš ๏ธ ADVERTENCIA: Este script es solo para fines educativos y de prueba en entornos autorizados. ...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.4 PACKETSTORM:224389

๐Ÿ“„ Docmost Cross Site Scripting_PACKETSTORM:224389

Docmost versions prior to 0.71.0 suffer from a persistent cross site scripting vulnerability...

N/A N/A PACKETSTORM
HIGH 7.6 PACKETSTORM:224380

๐Ÿ“„ TypeBot Server-Side Request Forgery_PACKETSTORM:224380

TypeBot versions prior to 3.16.0 suffer from a server-side request forgery vulnerability...

N/A N/A PACKETSTORM
MEDIUM 5.4 PACKETSTORM:224388

๐Ÿ“„ Docmost 0.70.x Authorization Bypass_PACKETSTORM:224388

A low-privileged Docmost user could supply a victim attachmentId to the generic upload endpoint and overwrite another page's stored attachment insi...

N/A N/A PACKETSTORM
HIGH 8.6 PACKETSTORM:224376

๐Ÿ“„ Yeoman Environment 6.0.0 Code Execution_PACKETSTORM:224376

Yeoman Environment versions 2.9.0 through 6.0.0 have an issue where missing generators can be installed without user confirmation, turning attacker...

N/A N/A PACKETSTORM
NONE PACKETSTORM:224373

๐Ÿ“„ Penpot Server-Side Request Forgery_PACKETSTORM:224373

Penpot's remote image import let an authenticated file editor turn a normal media convenience feature into backend-origin server-side request forge...

N/A N/A PACKETSTORM