Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 PACKETSTORM:223236

๐Ÿ“„ Drupal core 10.5.5 JSON:API PostgreSQL Error-Based SQL Injection_PACKETSTORM:223236

This code demonstrates a research-oriented implementation targeting a reported SQL injection condition in Drupal JSON:API endpoints backed by Postg...

N/A N/A PACKETSTORM
CRITICAL 10 290D6A34-87D4-

Exploit for CVE-2026-48907_290D6A34-87D4-5C44-9D9F-381353970DEF

CVE-2026-48907 Educational PoC โš ๏ธ This repository is for educational and defensive security purposes only. Test only on systems you own or are expl...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.4 CVE-2026-4764

Privilege Escalation in Dialogflow CX via Playbook Import_CVE-2026-4764

A Missing Authorization vulnerability in the playbook import functionality in Dialogflow CX on Google Cloud Platform allows an authenticated user w...

Google Cloud Dialogflow CX CVE
CRITICAL 9.8 CVE-2026-7852

Unrestricted File Upload in Limatek’s LimRAD NAC_CVE-2026-7852

Unrestricted upload of file with dangerous type vulnerability in Limatek System Inc. LimRAD NAC allows Remote Code Inclusion. This issue affects L...

Limatek System Inc. LimRAD NAC before 5.5.7.3.9 CVE
CRITICAL 9.8 19E0D94A-E2E8-

Exploit for CVE-2026-7458_19E0D94A-E2E8-5EDF-91D0-9D413694423C

๐Ÿงจ CVE-2026-7458 โ€“ PickPlugins User Verification OTP Bypass Unauthenticated Authentication Bypass via Loose Comparison in OTP Verification REST API...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 79541384-47A5-

Exploit for CVE-2025-6440_79541384-47A5-592D-A5A6-0CDB62D82608

๐Ÿงจ CVE-2025-6440 โ€“ WooCommerce Designer Pro Unrestricted File Upload Unauthenticated Arbitrary File Upload via wcdpsavecanvasdesignajax WooCommerce...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 9DB3988A-A1AC-

Exploit for CVE-2026-23550_9DB3988A-A1AC-5A76-BAFF-A614766C18D9

๐Ÿงจ CVE-2026-23550 โ€“ Modular Connector Admin Bypass Unauthenticated WordPress Admin Login via origin=mo Parameter Modular Connector Plugin โ‰ค 2.5.1 -...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 3A214513-27F6-

Exploit for Code Injection in Phpunit_Project Phpunit_3A214513-27F6-566A-A861-1A2241A825C8

CVE-2017-9841 โ€” PHPUnit Remote Code Execution RCE PoC โš ๏ธ DISCLAIMER: This tool is intended solely for educational purposes and authorized security ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 1DB33557-ED5A-

Exploit for Code Injection in Phpunit_Project Phpunit_1DB33557-ED5A-5DFC-8001-A087CD793210

CVE-2017-9841 โ€” PHPUnit Remote Code Execution RCE PoC โš ๏ธ DISCLAIMER: This tool is intended solely for educational purposes and authorized security ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 CVE-2026-35273

CVE-2026-35273_CVE-2026-35273

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions...

Oracle Corporation PeopleSoft Enterprise PeopleTools 8.61, 8.62 CVE