Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:223853

📄 Veno File Manager 4.4.9 Log Disclosure_PACKETSTORM:223853

This Metasploit module allows unauthenticated attackers to download application logs from Veno File Manager version 4.4.9 by exploiting the save-cs...

N/A N/A PACKETSTORM
NONE PACKETSTORM:223857

📄 Veno File Manager 4.4.9 Arbitrary File Read / Log Disclosure_PACKETSTORM:223857

Veno File Manager version 4.4.9 proof of concept exploit that demonstrates file and log disclosure vulnerabilities...

N/A N/A PACKETSTORM
NONE 6942BEF6-F3B9-

ghidra-12.1.2-rce-ace-calc-poc_6942BEF6-F3B9-5F95-986C-70DF7746686F

Ghidra 12.1.2 Conditional ACE/RCE Calc PoCs This repository packages the closest verified code-execution conditions found while reviewing Ghidra 12...

N/A N/A GITHUBEXPLOIT
NONE EEB1E980-0710-

Sql-injection-demo_EEB1E980-0710-5596-9408-D2B6931CF0DE

No description provided...

N/A N/A GITHUBEXPLOIT
NONE 2EE1B1CE-C7E1-

Exploit for CVE-2026-54337_2EE1B1CE-C7E1-5F5D-9FD6-5C929D87F183

-CVE-2026-54337-PoC CVE-2026-54337 - Unauthenticated File Write/Overwrite PoC...

N/A N/A GITHUBEXPLOIT
NONE 9BAD2D38-6083-

YHills-Internship-Projects_9BAD2D38-6083-56AE-9C84-7A8216491BA1

No description provided...

N/A N/A GITHUBEXPLOIT
HIGH 8.7 CVE-2026-56216

Capgo – Scope Escalation via API Key Creation in /functions/v1/apikey_CVE-2026-56216

Capgo before 12.128.2 contains a scope escalation vulnerability in the POST /functions/v1/apikey endpoint that allows app-limited API keys to mint ...

Capgo Capgo CVE
HIGH 8.7 CVE-2026-56215

Capgo – Account Merge via Poisoned public.users.email in SSO Provisioning_CVE-2026-56215

Capgo before 12.128.12 allows authenticated users to modify their mutable public.users.email to arbitrary addresses, which the SSO provisioning end...

Capgo Capgo CVE
HIGH 8.7 CVE-2026-56214

Capgo – Unauthenticated Organization Enumeration and Billing Status Disclosure via Supabase RPC_CVE-2026-56214

Capgo before 12.128.2 contains an information disclosure vulnerability in Supabase PostgREST RPC endpoints is_trial_org and is_paying_org that allo...

Capgo Capgo CVE
MEDIUM 6.9 CVE-2026-56213

Capgo – Unauthenticated Cross-Tenant Metrics Poisoning via upsert_version_meta RPC_CVE-2026-56213

Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.upsert_version_meta SECURITY DEFINER function exposed via PostgR...

Capgo Capgo CVE