Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.1 PACKETSTORM:212671

📄 Xorcom CompletePBX 5.2.35 Remote Code Execution_PACKETSTORM:212671

Xorcom CompletePBX suffers from an authenticated command injection vulnerability within the Task Scheduler subsystem. An attacker with valid supera...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212663

📄 Chromodo Browser 45.8.12.391 Same Origin Policy Weakness_PACKETSTORM:212663

This proof of concept demonstrates message passing between two browser windows when opened under the same logical context same origin. It affect Ch...

N/A N/A PACKETSTORM
HIGH 7.8 PACKETSTORM:212601

📄 Android 7 / 8 / 8.1 Pointer Disclosure_PACKETSTORM:212601

A flaw in Android's Binder IPC allowed applications to craft Parcels where binder-object metadata overlapped with string data. When unmarshalling, ...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212598

📄 Pluck 4.7.7-dev2 Remote Code Execution_PACKETSTORM:212598

Pluck version 4.7.7-dev2 suffers from a remote code execution vulnerability...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212599

📄 React / Next.js Unauthenticated Remote Code Execution_PACKETSTORM:212599

A critical unauthenticated remote code execution vulnerability exists in React Server Components RSC Flight protocol. The vulnerability allows atta...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212600

📄 Adobe Acrobat Chrome 1.41.100 Cross Site Scripting_PACKETSTORM:212600

Adobe Acrobat Chrome extension version 1.41.100 suffers from a cross site scripting vulnerability...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212606

📄 React 19.2.0 PHP Scanner / Remote Code Execution_PACKETSTORM:212606

This project delivers a PHP-based vulnerability scanner and remote code execution exploit for CVE‑2025‑55182 affecting React Server Components. It ...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212608

📄 WordPress StoryChief 1.0.42 Remote Code Execution_PACKETSTORM:212608

A critical security vulnerability exists in WordPress Story Chief plugin version 1.0.42 that allows unauthenticated attackers to achieve remote cod...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212604

📄 Cloudflare Memory Leak_PACKETSTORM:212604

A Python-based scanner imitates CloudBleed-style leakage detection by fetching raw HTTP response data from a target website, converting it to hexad...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212602

📄 Beego 1.12.3 Directory Traversal / Local File Disclosure_PACKETSTORM:212602

Beego version 1.12.3 suffers from a directory traversal vulnerability that allows for local file disclosure...

N/A N/A PACKETSTORM