Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 CDF7493E-7394-

Exploit for Authentication Bypass Using an Alternate Path or Channel in Gitlab_CDF7493E-7394-51A6-B8C6-ED65CE3C2ED6

CVE-2025-4524 WordPress Madara Theme 2.2.2.1 - Local File Inclusion ---...

N/A N/A GITHUBEXPLOIT
NONE FB29A6F9-8FD2-

Exploit-Development-master_FB29A6F9-8FD2-5475-894F-D5F10F83FA22

Exploit-Development Weaponized Exploit and Proof of Concepts PoC...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.6 CVE-2026-6428

CVE-2026-6428_CVE-2026-6428

SQL Injection in reports/catalogue_out.pl in Koha Community Koha through 22.11.37, 23.x, 24.x before 24.11.16, 25.05.x before 25.05.11, 25.11.x bef...

Koha Community Koha CVE
CRITICAL 9.3 CVE-2026-12183

CVE-2026-12183_CVE-2026-12183

Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 through 2.10.2 on Linux contains an Improper Authentication vulnerability (CWE-28...

Nefteprodukttekhnika LLC BUK TS-G Gas Station Automation System 2.9.1, 2.10.2 CVE
CRITICAL 9.3 FD4AA5D0-761A-

Exploit for CVE-2026-42647_FD4AA5D0-761A-574B-BE76-55A50B193227

CVE-2026-42647 - JoomSport Unauthenticated Time-Based Blind SQL Injection via sortf Executive Summary This repository contains a local Docker lab f...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 EDEE9204-2DB4-

Exploit for Memory Allocation with Excessive Size Value in Apache Http_Server_EDEE9204-2DB4-5931-983F-6C7DB7FD4FB7

CVE-2026-49975 HTTP/2 Bomb Complete Reproduction Guide Based on QiAnXin CERT Advisory + Calif Original Research ===================================...

N/A N/A GITHUBEXPLOIT
NONE HACKREAD:64E286...

Extradited Ukrainian Man Admits Role in Conti Ransomware Attacks_HACKREAD:64E286FC57B32D2D654585E925DAF4F2

Ukrainian national Oleksii Lytvynenko has pleaded guilty in the US to wire fraud conspiracy linked to Conti ransomware, which hit more than 1,000 v...

N/A N/A HACKREAD
CRITICAL 10 548ECB08-BE83-

Exploit for Embedded Malicious Code in Tukaani Xz_548ECB08-BE83-5A35-9E83-965AB296DFB4

XZ Backdoor Labs CVE-2024-3094 Safe, hands-on labs for understanding the xz-utils supply-chain backdoor — built for defenders, students, and blue-t...

N/A N/A GITHUBEXPLOIT
HIGH 7.3 7080EC9F-850A-

Exploit for CVE-2026-11417_7080EC9F-850A-5CC6-A380-D0194CD3652B

CVE-2026-11417-AWS-CDK-RCE Technical writeup and Proof of Concept PoC for CVE-2026-11417: OS Command Injection / Remote Code Execution RCE in AWS C...

N/A N/A GITHUBEXPLOIT
HIGH 9 4E24BB50-8B91-

kit-exploits-prv_4E24BB50-8B91-5BD9-AB6E-3B7FFA3AB3B0

Information Exploit Title: Local Privilege Escalation in polkit's pkexec CVE-2021-4034 Date: 01/25/2022 Exploit Author: Qualys Research Team Tested...

N/A N/A GITHUBEXPLOIT