Recent Advisories

Severity ID Title Vendor Product Date Type
NONE E546C8C0-498D-

Exploit for CVE-2026-37072_E546C8C0-498D-59B6-84C9-0388422D0261

CVE-2026-37072 Veno File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access Control in admin-head-updates.php An una...

N/A N/A GITHUBEXPLOIT
HIGH 7.8 CVE-2026-50100

CVE-2026-50100_CVE-2026-50100

Multiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation vulnerability. If this vulne...

Ricoh Company, Ltd. Multiple printer drivers see the information provided by the vendor CVE
MEDIUM 5.3 CVE-2026-44188

Ansible-lightspeed: ansible lightspeed: session hijacking and unauthorized data access due to insufficient session expiration_CVE-2026-44188

A flaw was found in Ansible Lightspeed. This vulnerability, related to insufficient session expiration, allows a remote attacker to maintain persis...

Red Hat Red Hat Ansible Automation Platform 2.7 1781025813 CVE
HIGH 7.5 CVE-2026-11860

Insecure Deserialisation via Plaintext HTTP leading to Remote Code Execution in Quick.CMS_CVE-2026-11860

Quick.CMS deserializes user-controlled data received over plaintext HTTP without ensuring integrity or authenticity. This allows attackers to tampe...

OpenSolution Quick.CMS CVE
NONE 24D4A1C9-6687-

sql_injection_exploit.sh_24D4A1C9-6687-59B5-944C-CBC0F8CD1746

sqlinjectionexploit.sh SQL Injection attack on DVWA Low Security - Cybersecurity Internship Task 3...

N/A N/A GITHUBEXPLOIT
NONE MALWAREBYTES:A1...

A week in security (June 8 – June 14)_MALWAREBYTES:A1CEB0E4C217C2EBFF41B26DA0B035F9

Last week on Malwarebytes Labs: * Stolen iPhones could soon be worth a lot less to thieves * Fake verification pages are stealing Steam accoun...

N/A N/A MALWAREBYTES
MEDIUM 4.4 E2CF04E5-7B2B-

Exploit for CVE-2026-48849_E2CF04E5-7B2B-56AE-BB11-79D1448AB6ED

CVE-2026-48849 - Stored XSS, HTML Injection & CSS Injection in Roundcube Webmail Overview This repository contains a Proof-of-Concept PoC for CVE-2...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 FB7C6A6C-C89F-

Exploit for Reliance on Cookies without Validation and Integrity Checking in Paloaltonetworks Pan-Os_FB7C6A6C-C89F-5CF5-BC7F-79EAF5F42258

CVE-2026-0257 testing...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.2 90F0A8EE-51A7-

Exploit for CVE-2026-42945_90F0A8EE-51A7-5AC2-8C97-EEBEED5A9E9B

CVE-2026-42945 — NGINX Rift Critical heap buffer overflow in NGINX's ngxhttprewritemodule, present since 2008 version 0.6.27. Allows unauthenticate...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 THN:23F3604E6D0...

Palo Alto Warns of Active Exploitation of PAN-OS GlobalProtect VPN Flaw_THN:23F3604E6D0C0EDC18C5C8E4FF76DDC8

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiMFIs6j0CgFzSojDqSi_UsqRzjlbYcRsrJG714Yh40TZXU4ZzlB_Do-7nbx5WGGvOS7mV3TojQLTiHbFS57B...

N/A N/A THN