Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.4 870BAA59-CF95-

Exploit for Improper Authentication in Litellm_870BAA59-CF95-5581-8FCA-FB8BCC6CD2A7

CVE-2026-35030 — LiteLLM Authentication Bypass via OIDC Userinfo Cache Key Collision LiteLLM OIDC userinfo cache uses token:20 as the cache key. Tw...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.2 F8BA6D01-09BC-

Exploit for CVE-2026-42945_F8BA6D01-09BC-5DB0-A42B-4E563D68898E

CVE-2026-42945 PoC(Go) 针对 nginx HTTP/2 实现(CVE-2026-42945) 的探测与利用辅助工具,用于在授权环境中验证漏洞是否存在、对照修复效果,并在可控实...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 B9009423-F20C-

Exploit for CVE-2026-8838_B9009423-F20C-54E6-B797-9F3182A59F55

CVE-2026-8838 — Amazon Redshift Python Driver: Remote Code Execution via eval Recherche en sécurité offensive — À des fins éducatives uniquement. T...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 F96B9910-C05E-

Exploit for Deserialization of Untrusted Data in Facebook React_F96B9910-C05E-5CD4-BA02-805BE54C3CA3

CVE-2025-55182-React2Shell xpl0ited by infrar3d A 10.0 critical severity vulnerablility affecting server-side use of React.js, tracked as CVE-2025-...

N/A N/A GITHUBEXPLOIT
NONE A3320C92-4D04-

EternalBlue_A3320C92-4D04-58AB-90D6-E709AD77310A

EternalBlue MS17-010 Exploitation Lab A professional, end-to-end technical guide for demonstrating the exploitation of the MS17-010 "EternalBlue" v...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 95858B59-5BDC-

Exploit for Type Confusion in Apple Safari_95858B59-5BDC-5979-AB5D-A6CA37D89350

CVE-2024-23222 — WebKit Type Confusion → iOS 16.4.1 Sandbox Escape Full exploit chain for iPhone X A11, no PAC running iOS 16.4.1 palera1n jailbrok...

N/A N/A GITHUBEXPLOIT
HIGH 7.8 9CD08C86-0362-

Exploit for Incorrect Resource Transfer Between Spheres in Linux Linux_Kernel_9CD08C86-0362-5F12-99A2-6A9AA71E2B46

CVE-2026-31431 "Copy Fail" — Vulnerability Detection Script Shell-based scanner for CVE-2026-31431 "Copy Fail", a local privilege escalation vulner...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 1342A5F1-91D3-

Exploit for Incorrect Authorization in Litellm_1342A5F1-91D3-5C8E-BB29-7C09A496BF3B

CVE-2026-35029 — LiteLLM /config/update 越权访问漏洞 Broken Access Control LiteLLM 的 /config/update 端点未检查调用者的角色权限。任何持有有效 API K...

N/A N/A GITHUBEXPLOIT
NONE A140EAE9-5FAB-

xiangshan-bpu-asid-poc_A140EAE9-5FAB-54CB-9BD1-1DCA09D8F35A

XiangShan Cross-ASID BPU Leak PoC Minimal proof of concept for a cross-ASID branch predictor state leak in OpenXiangShan XiangShan. The PoC demonst...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 1618F62E-A6A1-

Exploit for Injection in Flowiseai Flowise_1618F62E-A6A1-5B52-815D-06BD4210A5B9

POCCVE-2024-36420 Local reproduction lab and nuclei template draft for CVE-2024-36420 affecting Flowise. Summary CVE-2024-36420 is an arbitrary fil...

N/A N/A GITHUBEXPLOIT