CVE-2025-45809 — LiteLLM SQL Injection via /key/block Time-Based Blind SQLi LiteLLM v1.65.4(v1.81.0 之前版本)的 /key/block 和 /key/unblock 端点 ...
Bounty 295: Why ownPublicKey Can't Be Trusted for Access Control A Comprehensive Tutorial on ZK Circuit Access Control Vulnerabilities in Midnight ...
Zparty Automated web penetration testing framework with local AI, built in Python. Zparty runs a full black-box security audit in one command — rec...
CVE-2026-42945...
CVE-2025-11203 — LiteLLM Health Endpoint APIKEY Information Disclosure LiteLLM versions 未正确过滤敏感信息,导致已认证用户可获取其他模型配置中存储...
Exploit Intel Platform MCP Server Package/command: eip-mcp An MCP Model Context Protocol server that gives AI assistants access to the Exploit Inte...
Status trailing-byte log amplification MC-271325 Unauthenticated clients can make vanilla and Fabric Minecraft servers write large stack traces to ...
Dirty Frag - kernel Linux critical Vulnerability- CVE-2026-43284 :books: Introduction The exploit chain, classified as a Local Privilege Escalation...
CVE-2026-5203 — CMS Made Simple ≤ 2.2.22 RCE Path Traversal + Arbitrary File Upload Summary The UserGuide module's XML import functionality in CMS ...
🕷️ Bug Bounty & Pentest Web — Metodologia Completa "Script kiddies copiam comandos. Hackers leem o código fonte e entendem o protocolo." Repositóri...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.