Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 7494D4F4-A649-

Exploit for SQL Injection in Drupal_7494D4F4-A649-54A0-92A2-96DC1D8B29D1

CVE-2026-9082 Drupal PostgreSQL SQLi to RCE This repository contains a local lab and a short exploit for the Drupal JSON:API PostgreSQL SQL injecti...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 THN:7CA247FF7A5...

⚡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and More_THN:7CA247FF7A5A4532948A0B8472403FAD

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjFXmUW2VYnBd5oSyq6V328rZOIdanacqm-k4Wae2x53iAvPb7YvO7rqDcfWTklR_skhgLDVTThASQvf4UATg...

N/A N/A THN
CRITICAL 9.4 AAF2A134-2B57-

Exploit for CVE-2026-28496_AAF2A134-2B57-5561-9F7C-FCB30165A305

CVE-2026-28496 - FOSSBilling Server-Side Template Injection in Twig Rendering Executive Summary This repository contains a local Docker lab for rep...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 D6BE3E6D-83D1-

Exploit for Improper Authentication in Oracle Concurrent_Processing_D6BE3E6D-83D1-5B93-B9FA-A5D29193B757

markdown CVE-2025-61882 – Oracle E-Business Suite Remote Code Execution Unauthenticated Eksploitasi zero-click, pre-authentication pada Oracle E-Bu...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.9 CVE-2026-57331

WordPress Paid Videochat Turnkey Site plugin <= 7.4.8 - Arbitrary File Deletion vulnerability_CVE-2026-57331

Performer Arbitrary File Deletion in Paid Videochat Turnkey Site

videowhisper Paid Videochat Turnkey Site n/a CVE
CRITICAL 10 CVE-2026-56290

Joomla Extension – joomlack.fr – Unauthenticated file upload in Page Builder CK extension < 3.6.0_CVE-2026-56290

The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to ...

joomlack.fr JoomlaCK.fr Page Builder CK extension for Joomla 1.0-3.6.0 CVE
CRITICAL 9.8 CVE-2026-49048

Joomla Extension – joomcoder.com – Unauthenticated SQL Injection in JoomCCK extension for Joomla < 6.4.1_CVE-2026-49048

The Joomla extension JoomCCK exposes a front-end controller task, that builds two SQL statements by directly concatenating a user-supplied request ...

joomcoder.com JoomCCK extension for Joomla 1.0-6.4.0 CVE
CRITICAL 9.9 6B93F331-7356-

Exploit for Code Injection in Grafana_6B93F331-7356-5FFB-8194-53D20F47D624

CVE-2024-9264 CVE-2024-9264 취약점 실습 보고서 1. 취약점 요약 | 항목 | 내용 | |------|------| | CVE | CVE-2024-9264 | | 대상 | Grafana SQL Expressi...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 E89D406F-008C-

exploitarium-fork_E89D406F-008C-58C8-ABA8-2232A11F5655

If you wish to collaborate/discuss with me, contact me on discord @ashdfrkl Sharing this repo keeps me motivated to continue dropping 0-days for yo...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 1B3647FF-01BC-

Exploit for Integer Overflow to Buffer Overflow in Libssh2_1B3647FF-01BC-52E1-9CD0-11125CB023BD

CVE-2026-55200 - Critical libssh2 Remote Code Execution Vulnerability Critical Pre-Authentication Memory Corruption Vulnerability in libssh2 --- Ov...

N/A N/A GITHUBEXPLOIT