Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 10 PACKETSTORM:213043

📄 Xiongmai XM530 IP Camera Hardcoded RTSP Credential Exposure_PACKETSTORM:213043

The GetStreamUri ONVIF endpoint in Xiongmai XM530-series IP cameras exposes RTSP URIs containing hardcoded credentials, enabling direct unauthorize...

N/A N/A PACKETSTORM
HIGH 10 PACKETSTORM:213001

📄 Juniper ScreenOS 6.2.0r15 Backdoor Scanner_PACKETSTORM:213001

Juniper ScreenOS version 6.2.0r15 SSH backdoor scanner written in PHP...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:213036

📄 Mantis Bug Tracker 2.3.0 Remote Code Execution_PACKETSTORM:213036

Mantis Bug Tracker version 2.3.0 unauthenticated remote code execution exploit that chains together two vulnerabilities. The exploit resets the adm...

N/A N/A PACKETSTORM
HIGH 10 PACKETSTORM:213044

📄 Xiongmai XM530 IP Camera ONVIF Complete Authentication Bypass_PACKETSTORM:213044

There is a complete authentication bypass in the ONVIF implementation of Xiongmai XM530-series IP cameras that allows unauthenticated remote access...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213025

📄 AVAST Antivirus 25.11 Unquoted Service Path_PACKETSTORM:213025

AVAST Antivirus version 25.11 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code wi...

N/A N/A PACKETSTORM
MEDIUM 4.8 PACKETSTORM:213014

📄 Keras 2.15 Insecure Deserialization_PACKETSTORM:213014

Keras version 2.15 insecure deserialization proof of concept exploit. A security issue in certain versions of Keras allows attackers to craft a mal...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:213029

📄 Langflow 1.3.0 Remote Code Execution_PACKETSTORM:213029

A critical remote code execution vulnerability exists in Langflow that allows unauthenticated attackers to execute arbitrary system commands via th...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212953

📄 Jenkins 2.441 Arbitrary File Read_PACKETSTORM:212953

Jenkins version 2.441 proof of concept arbitrary file read exploit...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212982

📄 JSONPath Plus Remote Code Execution_PACKETSTORM:212982

This Metasploit module exploits a remote code execution vulnerability in JSONPath Plus library versions prior to 10.3.0 The vulnerability allows ar...

N/A N/A PACKETSTORM
MEDIUM 5.3 PACKETSTORM:212971

📄 js2py 0.74 Automated Sandbox Escape / Code Execution_PACKETSTORM:212971

js2py version 0.74 automated sandbox escape and remote code execution exploit with a reverse shell...

N/A N/A PACKETSTORM