Recent Advisories

Severity ID Title Vendor Product Date Type
NONE EEB1E980-0710-

Sql-injection-demo_EEB1E980-0710-5596-9408-D2B6931CF0DE

No description provided...

N/A N/A GITHUBEXPLOIT
NONE 6942BEF6-F3B9-

ghidra-12.1.2-rce-ace-calc-poc_6942BEF6-F3B9-5F95-986C-70DF7746686F

Ghidra 12.1.2 Conditional ACE/RCE Calc PoCs This repository packages the closest verified code-execution conditions found while reviewing Ghidra 12...

N/A N/A GITHUBEXPLOIT
NONE 2EE1B1CE-C7E1-

Exploit for CVE-2026-54337_2EE1B1CE-C7E1-5F5D-9FD6-5C929D87F183

-CVE-2026-54337-PoC CVE-2026-54337 - Unauthenticated File Write/Overwrite PoC...

N/A N/A GITHUBEXPLOIT
NONE 9BAD2D38-6083-

YHills-Internship-Projects_9BAD2D38-6083-56AE-9C84-7A8216491BA1

No description provided...

N/A N/A GITHUBEXPLOIT
HIGH 8.7 CVE-2026-56216

Capgo – Scope Escalation via API Key Creation in /functions/v1/apikey_CVE-2026-56216

Capgo before 12.128.2 contains a scope escalation vulnerability in the POST /functions/v1/apikey endpoint that allows app-limited API keys to mint ...

Capgo Capgo CVE
HIGH 8.7 CVE-2026-56215

Capgo – Account Merge via Poisoned public.users.email in SSO Provisioning_CVE-2026-56215

Capgo before 12.128.12 allows authenticated users to modify their mutable public.users.email to arbitrary addresses, which the SSO provisioning end...

Capgo Capgo CVE
HIGH 8.7 CVE-2026-56214

Capgo – Unauthenticated Organization Enumeration and Billing Status Disclosure via Supabase RPC_CVE-2026-56214

Capgo before 12.128.2 contains an information disclosure vulnerability in Supabase PostgREST RPC endpoints is_trial_org and is_paying_org that allo...

Capgo Capgo CVE
MEDIUM 6.9 CVE-2026-56213

Capgo – Unauthenticated Cross-Tenant Metrics Poisoning via upsert_version_meta RPC_CVE-2026-56213

Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.upsert_version_meta SECURITY DEFINER function exposed via PostgR...

Capgo Capgo CVE
MEDIUM 5.1 CVE-2026-56212

Capgo – Improper 2FA Enforcement Logic via Team Security Settings_CVE-2026-56212

Capgo before 12.128.2 contains an authentication logic flaw: a user with permission to manage team or organization security settings can enable man...

Capgo Capgo CVE
HIGH 8.1 CVE-2026-9843

Database for Contact Form 7, WPforms, Elementor forms <= 1.5.1 - Unauthenticated Arbitrary File Deletion via CF7 File Field POST Value_CVE-2026-9843

The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file pa...

crmperks Database for Contact Form 7, WPforms, Elementor forms CVE