This Metasploit module exploits an unauthenticated remote code execution vulnerability in the Advanced Custom Fields: Extended ACF Extended WordPre...
LibreNMS version 24.9.1 suffers from a remote command execution vulnerability...
Lepton CMS version 7.4.0 has a vulnerability which allows for a persistent cross site scripting payload to escalate into PHP execution through the ...
Institute Admission Software version 2.5 fails to properly validate and restrict uploaded files in the gallery upload functionality within the admi...
This PHP proof-of-concept provides defensive tooling to analyze DH-P2P / Easy4IP behaviors observed during DFIR activities. It includes routines to...
Proof of concept exploit for a command injection vulnerability in Cisco ISE API version 3.2...
A local file inclusion vulnerability exists in the function kubiohybridthemeloadtemplate of the Kubio AI Page Builder plugin for WordPress versions...
A security issue was discovered in the in-cluster version of Headlamp where unauthenticated users may be able to reuse cached credentials to access...
Proof of concept exploit that demonstrates a user enumeration vulnerability via the JWT authentication API on Kalmia CMS version 0.2.0...
Proof of concept exploit written in PHP for Laravel Pulse version 1.3.1. This version of Laravel Pulse suffers from an arbitrary code injection vul...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.