Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 BC1EFC7B-C6E0-

Exploit for Authentication Bypass by Spoofing in Zabbix_BC1EFC7B-C6E0-528C-BD5D-A2D2ECE15187

CVE-2022-23131 - Zabbix SAML SSO Authentication Bypass + RCE Overview When SAML SSO is enabled, Zabbix stores session data in a client-side cookie ...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 2B539108-1D8B-

Exploit for Deserialization of Untrusted Data in Facebook React_2B539108-1D8B-56B5-A8AC-B8E1E8E96640

CVE-2025-55182-POC React2Shell POC Usage: bash sudo python3 hehe.py -t -c Example: bash ❯ sudo python3 hehe-t 12.05.12.05 -c "id" . .. . | \ | | / ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.4 CVE-2026-11746

CVE-2026-11746_CVE-2026-11746

A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling ZooKeeper replication without setting replicati...

LY Corporation Central Dogma 0.84.0 CVE
CRITICAL 10 B7F801C4-FDDA-

Exploit for Improper Access Control in Widgetfactorylimited Jce_B7F801C4-FDDA-59AF-ABB0-97DF5CB9FFFD

No description provided...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.9 9884B1E8-28B5-

Exploit for Improper Control of Dynamically-Managed Code Resources in N8N_9884B1E8-28B5-5EF2-85C0-874B02C19650

No description provided...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.5 63040014-95CF-

Exploit for CVE-2026-48909_63040014-95CF-53D4-BB60-351E8E8012A4

CVE-2026-48909 — SP LMS PHP Object Injection → RCE Unauthenticated Remote Code Execution via PHP Object Injection in JoomShaper SP LMS comsplms ≤ 4...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 6DFCF1F8-508C-

Exploit for CVE-2026-10735_6DFCF1F8-508C-5B6F-9973-9B8DDDDF9686

CVE-2026-49777-CVE-2026-10735 TELEGRAM GROUP ADRESS: https://t.me/toolsandpoc...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 C558BD70-1D0A-

Exploit for Eval Injection in Xwiki_C558BD70-1D0A-5175-B681-DC19927F031B

CVE-2025-24893 - XWiki Unauthenticated RCE Exploit POC ⚠️ Unauthenticated Remote Code Execution in XWiki 🛠️ PoC implementation by @dollarboysushil ...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 D93E90BB-2B9E-

Exploit for Out-of-bounds Write in Tenda Ac9_Firmware_D93E90BB-2B9E-5BD6-A00A-62EF1D546898

CVE-2025-29384 Proof-of-Concept Exploit Overview This repository contains an advanced proof-of-concept PoC exploit for CVE-2025-29384, a critical s...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 8FE1D006-969F-

Exploit for Improper Authorization in Vercel Next.Js_8FE1D006-969F-54DD-8019-0A83146AD040

CVE-2025-29927-PoC-Exploit Proof-of-Concept for Authorization Bypass in Next.js Middleware You can run this against a vulnerable version here: http...

N/A N/A GITHUBEXPLOIT