Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 CVE-2025-55730

XWiki Remote Macros vulnerable to remote code execution using the confluence paste code macro_CVE-2025-55730

XWiki Remote Macros provides XWiki rendering macros that are useful when migrating content from Confluence. Starting in version 1.0 and prior to ve...

xwikisas xwiki-pro-macros >= 1.0, < 1.26.5 CVE
CRITICAL 10 PACKETSTORM:209296

📄 Sawtooth Software Lighthouse Studios Template Injection_PACKETSTORM:209296

This Metasploit module exploits a template injection...

N/A N/A PACKETSTORM
CRITICAL 9.6 CVE-2025-58997

WordPress Mow Theme <= 4.10 - Cross Site Request Forgery (CSRF) Vulnerability_CVE-2025-58997

Cross-Site Request Forgery (CSRF) vulnerability in Frenify Mow allows Code Injection. This issue affects Mow: from n/a through 4.10.

Frenify Mow n/a CVE
CRITICAL 9.8 41A8EBD8-0A72-

Exploit for Deserialization of Untrusted Data in Linuxfoundation Pytorch_41A8EBD8-0A72-53D7-89B0-5CD82924CA36

CVE-2025-32434.....................................................................

N/A N/A GITHUBEXPLOIT
CRITICAL 10 3CAFA0CD-5848-

Exploit for Deserialization of Untrusted Data in Siemens 6Bk1602-0Aa12-0Tp0_Firmware_3CAFA0CD-5848-5050-B308-F870F484DBE4

Log4Shell (CVE-2021-44228) ☠️ Log4Shell PoC (CVE-2021-44228) Exploit de prueba para la...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 CVE-2025-10183

XML External Entity Injection in TecConnect 4.1_CVE-2025-10183

A blind XML External Entity (XXE) injection in the OpenMessaging webservice in TecCom TecConnect 4.1 allows an unauthenticated attacker to exfiltra...

TecCom TecConnect 4.1 CVE
CRITICAL 9.1 CVE-2025-54236

Adobe Commerce | Improper Input Validation (CWE-20)_CVE-2025-54236

Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an Improper Input Validation ...

Adobe Adobe Commerce CVE
CRITICAL 10 3F981DB5-D897-

Exploit for CVE-2020-1472_3F981DB5-D897-5E8F-9DF1-3B4908EB0829

![Python][python-shield] CVE-2020-1472 CVE-2020-1472 - Zero Logon vulnerability Python...

N/A N/A GITEE
CRITICAL 9.8 14E587AE-B43D-

Exploit for OS Command Injection in Sixapart Movable_Type_14E587AE-B43D-52DA-A34A-BA2F6DEEDF82

cve-2021-20837-poc PoC for...

N/A N/A GITEE
CRITICAL 10 6E40BDD2-C344-

Exploit for Deserialization of Untrusted Data in Siemens 6Bk1602-0Aa12-0Tp0_Firmware_6E40BDD2-C344-5143-A913-B79939920FD1

log4j-shell-poc A Proof-Of-Concept for the recently found CVE-2021-44228 vulnerability. Recently there was...

N/A N/A GITEE