Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.7 CVE-2026-12174

D-Link DCS-935L HTTP rhea snprintf format string_CVE-2026-12174

A security vulnerability has been detected in D-Link DCS-935L 1.10.01. This issue affects the function snprintf of the file /web/cgi-bin/greece/rhe...

D-Link DCS-935L 1.10.01 CVE
HIGH 7.5 EDEE9204-2DB4-

Exploit for Memory Allocation with Excessive Size Value in Apache Http_Server_EDEE9204-2DB4-5931-983F-6C7DB7FD4FB7

CVE-2026-49975 HTTP/2 Bomb Complete Reproduction Guide Based on QiAnXin CERT Advisory + Calif Original Research ===================================...

N/A N/A GITHUBEXPLOIT
HIGH 7.3 7080EC9F-850A-

Exploit for CVE-2026-11417_7080EC9F-850A-5CC6-A380-D0194CD3652B

CVE-2026-11417-AWS-CDK-RCE Technical writeup and Proof of Concept PoC for CVE-2026-11417: OS Command Injection / Remote Code Execution RCE in AWS C...

N/A N/A GITHUBEXPLOIT
HIGH 9 4E24BB50-8B91-

kit-exploits-prv_4E24BB50-8B91-5BD9-AB6E-3B7FFA3AB3B0

Information Exploit Title: Local Privilege Escalation in polkit's pkexec CVE-2021-4034 Date: 01/25/2022 Exploit Author: Qualys Research Team Tested...

N/A N/A GITHUBEXPLOIT
HIGH 7.8 5C60A3C3-5963-

pac-exploits-priv_5C60A3C3-5963-51F5-8E17-1AE76DE47DE5

CVE-2021-4034 PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec CVE-2021-4034 https://seclists.org/oss-sec/2022/q1/80...

N/A N/A GITHUBEXPLOIT
HIGH 9 17EC6402-3592-

Exploit for OS Command Injection in Paessler Prtg_Network_Monitor_17EC6402-3592-524E-855F-9BDAADA3BB88

CVE-2018-9276 — PRTG Network Monitor ⚠️ Disclaimer: This tool is intended for educational purposes and authorized penetration testing only. Use it ...

N/A N/A GITHUBEXPLOIT
HIGH 7.2 CVE-2026-5513

Online Scheduling and Appointment Booking System – Bookly <= 27.2 - Unauthenticated Stored Cross-Site Scripting via 'bookly-customer-full-name' Cookie_CVE-2026-5513

The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bookly-cus...

ladela Online Scheduling and Appointment Booking System – Bookly CVE
HIGH 7.8 A0F6718E-3F97-

Exploit for Code Injection in Exiftool_Project Exiftool_A0F6718E-3F97-524C-8420-8BD056FE6751

CVE-2021-22204 - ExifTool Arbitrary Code Execution An upgraded exploit for CVE-2021-22204, a vulnerability in ExifTool versions 7.44 through 12.23 ...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 F82812B2-209D-

Exploit for CVE-2026-11450_F82812B2-209D-560F-A047-2C5FA823E1FD

GL.iNet Beryl AX Triple RCE PoC PoC for three unauthenticated command injection vulnerabilities CVE-2026-11450, CVE-2026-11451, CVE-2026-11452 in t...

N/A N/A GITHUBEXPLOIT
HIGH 7.2 CVE-2026-9109

GPTranslate <= 2.31 - Unauthenticated Stored Cross-Site Scripting via REST API Translation Storage_CVE-2026-9109

The GPTranslate – Multilingual AI Translation for WordPress: Automatically Translate Websites plugin for WordPress is vulnerable to Stored Cross-Si...

john-dagelmore GPTranslate – Multilingual AI Translation for WordPress: Automatically Translate Websites CVE