Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 PACKETSTORM:212824

📄 FoxCMS 1.0 Code Injection_PACKETSTORM:212824

FoxCMS version 1.0 proof of concept remote code injection exploit...

N/A N/A PACKETSTORM
CRITICAL 9.4 PACKETSTORM:212820

📄 dotCMS 25.07.02-1 Security Scanner_PACKETSTORM:212820

dotCMS version 25.07.02-1 python scanning script that looks for remote SQL injection...

N/A N/A PACKETSTORM
HIGH 7.2 PACKETSTORM:212825

📄 GetSimple CMS 3.3.16 Cross Site Request Forgery_PACKETSTORM:212825

GetSimple CMS version 3.3.16 cross site request forgery proof of concept that deletes all backups without user confirmation...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:212821

📄 flatCore 1.5 Shell Upload_PACKETSTORM:212821

flatCore version 1.5 proof of concept remote shell upload exploit...

N/A N/A PACKETSTORM
HIGH 8.4 PACKETSTORM:212818

📄 Figma Desktop Application 125.6.5 Remote Code Execution_PACKETSTORM:212818

Figma Desktop Application version 125.6.5 proof of concept remote code execution exploit that leverages the plugin manifest...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212769

📄 Desktop XDG 1.0 Code Execution_PACKETSTORM:212769

This proof of concept generates a malicious file that allows for arbitrary code execution in Desktop XDG version 1.0...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:212768

📄 Azuriom CMS 1.2.6 Client-Side Template Injection_PACKETSTORM:212768

A client-side template injection vulnerability affects the Azuriom CMS Admin Dashboard in version 1.2.6. Several dashboard components widgets, plug...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212770

📄 dotCMS 24.04.24 Vulnerability Scanner_PACKETSTORM:212770

dotCMS version 24.04.24 advanced exploitation python scanning script that looks for local file inclusion, data exposure, SQL injection, and more...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:212774

📄 Eramba GRC 3.19.1 Command Injection_PACKETSTORM:212774

Eramba GRC platform version 3.19.1 proof of concept command injection exploit...

N/A N/A PACKETSTORM
MEDIUM 6.5 PACKETSTORM:212772

📄 EduplusCampus Student Portal 3.0.1 Insecure Direct Object Reference_PACKETSTORM:212772

EduplusCampus Student Portal version 3.0.1 suffers from an insecure direct object reference vulnerability...

N/A N/A PACKETSTORM