Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.3 CDA85394-5DE8-

Exploit for CVE-2026-41490_CDA85394-5DE8-526C-A69E-987959729784

CVE-2026-41490 — SQL Injection in Dagster database I/O managers via dynamic partition keys Severity: High CVSS 8.x — AV:N/AC:L/PR:L/UI:N + C:H/I:H/...

N/A N/A GITHUBEXPLOIT
HIGH 9.3 29FDB8F1-C4A9-

AutoVAPT_29FDB8F1-C4A9-50FC-8CC7-D022D15622DD

█████╗ ██╗ ██╗████████╗ ██████╗ ██╗ ██╗ █████╗ ██████╗ ████████╗ ██╔══██╗██║ ██║╚══██╔══╝██╔═══██╗██║ ██║██╔══██╗██╔══██╗╚══██╔══╝ ███████║██║ ██║ ...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 2B7EC0E8-7984-

Exploit for CVE-2026-22356_2B7EC0E8-7984-5387-91E5-615EAC92E0E1

CVE-2026-22356 CVE-2026-22356: Jetpack CRM Path Traversal Vulnerability and RCE Kullanım Kılavuzu Aşağıdaki kullanım örneklerini yalnızca yetkili t...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 C2EB4AA1-0C70-

Exploit for Memory Allocation with Excessive Size Value in Apache Http_Server_C2EB4AA1-0C70-5104-AF4C-BC274F5A5B7A

http2-bomb-detector HTTP/2 Bomb CVE-2026-49975 Non-destructive vulnerability detection tool — for Nginx / Apache httpd Vulnerability Background CVE...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 CVE-2026-9848

WP Ticket <= 6.0.4 - Unauthenticated SQL Injection via WordPress Search 's' Parameter_CVE-2026-9848

The WP Ticket plugin for WordPress is vulnerable to SQL Injection via the WordPress search query parameter (`s`) in versions up to, and including, ...

emarket-design Customer Support Ticket System & Helpdesk CVE
HIGH 7 CVE-2026-54230

Abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwrites_CVE-2026-54230

A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts write output files using shel...

Red Hat Red Hat Enterprise Linux 6 CVE
HIGH 7 CVE-2026-54229

Abrt: chownproblemdir succeeds during active post-create event processing due to inadequate locking_CVE-2026-54229

A race condition was found in the abrt-dbus D-Bus service's ChownProblemDir method. ChownProblemDir opens the dump directory with DD_OPEN_READONLY ...

Red Hat Red Hat Enterprise Linux 6 CVE
HIGH 7.8 CVE-2026-54228

Abrt: toctou race condition in abrt-dbus setelement allows arbitrary file writes to dump directories_CVE-2026-54228

A time-of-check time-of-use (TOCTOU) race condition was found in the abrt-dbus D-Bus service's SetElement method. Between dump directory creation a...

Red Hat Red Hat Enterprise Linux 6 CVE
HIGH 8.7 CVE-2026-53868

Capgo < 12.128.2 - Denial of Service via Unverified Email Account Registration and Deletion_CVE-2026-53868

Capgo before 12.128.2 contains a denial of service vulnerability allowing attackers to register accounts using arbitrary email addresses without ve...

Capgo Capgo CVE
HIGH 8.7 CVE-2026-53836

OpenClaw < 2026.5.12 - Allowlist Bypass via PowerShell Encoded-Command Aliases_CVE-2026-53836

OpenClaw before 2026.5.12 contains an allowlist bypass vulnerability in PowerShell encoded-command handling that allows attackers to execute encode...

OpenClaw OpenClaw CVE