Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.7 CVE-2026-12581

Digiwin|EasyFlow .NET – Session Fixation_CVE-2026-12581

EasyFlow .NET developed by Digiwin has a Session Fixation vulnerability. If unauthenticated remote attackers replace a specific session ID for a us...

Digiwin EasyFlow .NET CVE
MEDIUM 5.1 CVE-2026-12580

Digiwin|EasyFlow .NET – Stored Cross-Site Scripting_CVE-2026-12580

EasyFlow .NET developed by Digiwin has a Stored Cross-Site Scripting vulnerability, allowing authenticated remote attackers to inject persistent Ja...

Digiwin EasyFlow .NET CVE
HIGH 8.7 CVE-2025-4994

Authentication Bypass for SafeLine SL6 and SL6+_CVE-2025-4994

The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom systems are vulnerable to an authentication bypass. This vulnerabilit...

SafeLine SafeLine SL6/SL6+ 4.82 CVE
NONE WIRED:096FB8D75...

World Cup Scams Are Getting Harder to Spot_WIRED:096FB8D7590519B3E4B3B2CE7843F4F8

From fake tickets to cloned websites, AI is magnifying World Cup scams. Can fans distinguish between what’s real and what’s not?

N/A N/A WIRED
NONE A6877829-9466-

docker-vuln-lab-builder_A6877829-9466-5B2C-B246-8DFE2FEDAFC1

bash python scripts-exportcontainer.py \ --image-path rockmelodies/sqli-lab:latest \ --container-id vuln-lab-a1b2c : === Container exported as a t...

N/A N/A GITHUBEXPLOIT
NONE 9EF73DC0-C681-

red-specter-specter-foundry_9EF73DC0-C681-5C3C-ABD5-9E743077E08D

No description provided...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 40E52223-C309-

Log4J-PoC_40E52223-C309-5E07-BDDC-2B93D5BCEEEB

Log4Shell – Technical Overview & PoC Made in May 2026 by Robin Köhler and Darian Rashed as part of the lecture Secure Software Testing at Hochschul...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 A9AC151B-4017-

Exploit for CVE-2026-48908_A9AC151B-4017-55EC-996C-AB5AF8111575

CVE-2026-48908 — SP Page Builder Joomla Unauthenticated RCE Proof-of-concept exploit for CVE-2026-48908, a critical CVSS 4.0 = 10.0 unauthenticated...

N/A N/A GITHUBEXPLOIT
NONE A74D449F-7BD1-

cmc-poc_A74D449F-7BD1-5DF7-8B5B-5031AC3238E1

No description provided...

N/A N/A GITHUBEXPLOIT
MEDIUM 6.3 CVE-2026-54665

Apache NiFi: Missing Validation for Proxy Host Headers_CVE-2026-54665

Apache NiFi 0.0.1 through 2.9.0 support building qualified URLs from one of several HTTP request headers that provide an alternative to the standar...

Apache Software Foundation Apache NiFi 0.0.1 CVE