Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 PACKETSTORM:223516

📄 Apache Flink Kubernetes Operator 1.14.0 Server-Side Request Forgery_PACKETSTORM:223516

This is a Metasploit auxiliary module to demonstrate a service-side request forgery vulnerability in Apache Flink Kubernetes Operator version 1.14....

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:223514

📄 Apache 2.4.66 HTTP/2 mod_http2 Double-Free Denial of Service_PACKETSTORM:223514

This script is a multi-mode security tool that triggers a denial of service against Apache HTTP Server version 2.4.66 related to a double-free cond...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:223502

📄 HotelDruid 3.0.x Credential Exposure / Stress Tester_PACKETSTORM:223502

Proof of concept denial of service and credential disclosure exploit for HotelDruid versions 3.0.0 and 3.0.7...

N/A N/A PACKETSTORM
NONE PACKETSTORM:223513

📄 AnyDesk 9.7.5 Unquoted Service Path_PACKETSTORM:223513

AnyDesk version 9.7.5 unquoted service path privilege escalation to SYSTEM exploit...

N/A N/A PACKETSTORM
NONE B119ADEE-94DF-

TrustedRouter-ExploitBench_B119ADEE-94DF-5B44-A30E-35ED87AF168D

TrustedRouter-ExploitBench Notes, harness configs, and a runbook for driving ExploitBench the public V8-exploitation capability benchmark, exploitb...

N/A N/A GITHUBEXPLOIT
NONE HACKREAD:86B8C0...

Aembit Extends IAM for Agentic AI to Microsoft Copilot Studio_HACKREAD:86B8C04D8BF23758CDDED7D36B5C3B86

Las Vegas, USA / Nevada, 16th June 2026, CyberNewswire

N/A N/A HACKREAD
HIGH 7.5 9349E804-9874-

Exploit for Improper Access Control in Vitejs Vite_9349E804-9874-5D40-A4D5-7FAE1725C5AA

CVE-2025-30208 Using a special raw import query string on a vite dev server, a attacker can read arbitrary files Summary of the CVE Vite dev server...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 A34D1BC1-7B69-

Exploit for Code Injection in Apache Nifi_A34D1BC1-7B69-5F1F-A6EF-D572FB2CA379

CVE-2023-34468 PoC for Apache NiFi Educational proof-of-concept PoC for CVE-2023-34468 affecting Apache NiFi versions prior to 1.22.0. This reposit...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 CVE-2026-50887

CVE-2026-50887_CVE-2026-50887

A Server-Side Request Forgery (SSRF) in the automatic short URL title resolution component of shlink v5.0.1 allows attackers to scan internal resou...

shlink shlink v5.0.1 CVE
CRITICAL 9.1 CVE-2026-50886

CVE-2026-50886_CVE-2026-50886

Incorrect access control in the webhook management component of Project Firefly III v6.5.9 allows attackers to scan internal resources via a crafte...

Project Firefly Project Firefly III v6.5.9 CVE