Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.1 CVE-2026-13558

CodeAstro Complaint Management System Report addreport cross site scripting_CVE-2026-13558

A security flaw has been discovered in CodeAstro Complaint Management System 1.0. This issue affects some unknown processing of the file /report/ad...

CodeAstro Complaint Management System 1.0 CVE
CRITICAL 9.9 6B93F331-7356-

Exploit for Code Injection in Grafana_6B93F331-7356-5FFB-8194-53D20F47D624

CVE-2024-9264 CVE-2024-9264 취약점 실습 보고서 1. 취약점 요약 | 항목 | 내용 | |------|------| | CVE | CVE-2024-9264 | | 대상 | Grafana SQL Expressi...

N/A N/A GITHUBEXPLOIT
NONE 4DBF28FA-FDA6-

bounthunt_4DBF28FA-FDA6-52EF-988B-BD48BB084F9C

Bountyhunt Automated recon and monitoring CLI for bug bounty programs. Bountyhunt is a CLI orchestrator that automates the routine of bug bounty re...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 E89D406F-008C-

exploitarium-fork_E89D406F-008C-58C8-ABA8-2232A11F5655

If you wish to collaborate/discuss with me, contact me on discord @ashdfrkl Sharing this repo keeps me motivated to continue dropping 0-days for yo...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 1B3647FF-01BC-

Exploit for Integer Overflow to Buffer Overflow in Libssh2_1B3647FF-01BC-52E1-9CD0-11125CB023BD

CVE-2026-55200 - Critical libssh2 Remote Code Execution Vulnerability Critical Pre-Authentication Memory Corruption Vulnerability in libssh2 --- Ov...

N/A N/A GITHUBEXPLOIT
NONE 48F10DC4-9D51-

libssh_48F10DC4-9D51-5138-BC0B-F2167DD40640

libssh this poc CV3 2026-552oo...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 02A60410-07D8-

COM_JCE_VANDA_02A60410-07D8-5EBE-8E81-621871683186

COMJCEVANDA - CVE-2026-48907 Exploit de upload de arquivo sem autenticação no componente JCE do Joomla. Porque aparentemente aplicar patch é opcion...

N/A N/A GITHUBEXPLOIT
CRITICAL 10 A2DC23CB-0791-

Exploit for CVE-2026-48939_A2DC23CB-0791-5A41-828F-25B34E8207C5

CVE-2026-48939 - iCagenda Unauthenticated File Upload to RCE Overview | Field | Value | |-------|-------| | CVE ID | CVE-2026-48939 | | CVSS 4.0 Sc...

N/A N/A GITHUBEXPLOIT
HIGH 7.1 CVE-2026-57346

WordPress Embed Privacy plugin <= 1.12.3 - Arbitrary File Deletion vulnerability_CVE-2026-57346

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This ...

Epiphyt Embed Privacy n/a CVE
HIGH 8.8 CVE-2026-25707

Handcrafted repo metadata may cause arbitrary local files to be overwritten by libzypp_CVE-2026-25707

A relative path traversal bug problem when processing repository metadata in libzypp before 17.38.10 could be used by remote attackers supplying re...

SUSE libzypp CVE