Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.5 33EE0937-5E4A-

Exploit for Infinite Loop in Dbgpt Db-Gpt_33EE0937-5E4A-5218-B29B-E8409CBA9ED5

POCCVE-2024-36420 Local reproduction lab and nuclei template draft for CVE-2024-36420 affecting Flowise. Summary CVE-2024-36420 is an arbitrary fil...

N/A N/A GITHUBEXPLOIT
NONE A4DE2B37-A9D8-

Exploit for CVE-2026-38426_A4DE2B37-A9D8-5F7F-AA2C-E1454B6039E5

CVE-2026-38426: strcpy Stack Buffer Overflow in Tasmota fetchjpg boundary40 CVE: CVE-2026-38426 Severity: Critical CVSS 9.8 Product: Arendst Tasmot...

N/A N/A GITHUBEXPLOIT
NONE F03A36CE-08F4-

Exploit for CVE-2026-38427_F03A36CE-08F4-59DF-B4D9-99156AEA0C10

CVE-2026-38427: Integer Wraparound → Heap Buffer Overflow in Tasmota fetchjpg CVE: CVE-2026-38427 Severity: Critical CVSS 9.8 Product: Arendst Tasm...

N/A N/A GITHUBEXPLOIT
NONE 84594BC0-112E-

tplink-priv-zero_84594BC0-112E-58EE-90C3-101FA26C7276

TP-Link TL-WR841N v14 — Authenticated OS Command Injection RCE + CSRF Chain --- TL;DR The diagnostic module IPPINGDIAG / TRACEROUTEDIAG in TL-WR841...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.2 B7AC5919-D76A-

Exploit for CVE-2026-42945_B7AC5919-D76A-529B-8E1B-78178908C977

NGINX Rift — CVE-2026-42945 漏洞扫描与验证工具 NGINX Rift 是一款针对 CVE-2026-42945(NGINX ngxhttprewritemodule 堆溢出漏洞)的开源扫描与验证工具。...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 B89C55B6-BB97-

Exploit for CVE-2026-47101_B89C55B6-BB97-51C5-8FE2-2043E73BE1A8

CVE-2026-47101 — LiteLLM Privilege Escalation via /key/generate + /user/update LiteLLM v1.82.6(v1.83.14 之前版本)的 /key/generate 端点允许低权限...

N/A N/A GITHUBEXPLOIT
NONE D7730908-0A42-

Exploit for CVE-2026-43494_D7730908-0A42-510D-B9EE-C4FC91E73D21

SLEY — PinTheft PoC CVE-2026-43494 Proof of concept — uid=1000raken → uid=0root after ./sley on WSL2 6.6.87.2-microsoft-standard-WSL2 Single-file p...

N/A N/A GITHUBEXPLOIT
MEDIUM 6.8 77F3CAC1-D4FD-

Exploit for Prototype Pollution in Substack Minimist_77F3CAC1-D4FD-528E-BB22-DF4658372850

CVE-2020-7598 - Prototype Pollution in minimist Disclaimer Project ini dibuat hanya untuk: - pembelajaran, - penelitian keamanan, - dan lab lokal p...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 21FCB4B6-987D-

Exploit for Command Injection in Github Enterprise_Server_21FCB4B6-987D-5081-8F56-7ACE8ABE5901

CVE-2026-3854 - GitHub Enterprise Server that allowed an Remote Code Execution Severity: HIGH CVSS: 8.8 Impact: Confidentiality, Integrity, Availab...

N/A N/A GITHUBEXPLOIT
NONE 486C0AC5-4613-

netsec-agent_486C0AC5-4613-5BB2-A01C-57C320F5C264

NETSEC-AGENT Autonomous AI Penetration Testing Terminal — powered by Xiaomi MiMo V2.5 NETSEC-AGENT is a multi-agent offensive-security platform tha...

N/A N/A GITHUBEXPLOIT