Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 8DE9243B-6A0A-

Exploit for Deserialization of Untrusted Data in Facebook React_8DE9243B-6A0A-594B-8B6F-C8166280CA2C

CVE-2025-55182-React2Shell-RCE React2Shell CVE-2025-55182 PoC...

N/A N/A GITHUBEXPLOIT
LOW 2.4 CVE-2026-13514

Chess Play and Learn App com.chess AndroidManifest.xml backup_CVE-2026-13514

A weakness has been identified in Chess Play and Learn App up to 4.9.42 on Android. This issue affects some unknown processing of the file AndroidM...

Chess Play and Learn App 4.9.0 CVE
LOW 2.3 CVE-2026-13513

MyScale MyScaleDB SegmentId.h getCacheKey data authenticity_CVE-2026-13513

A security flaw has been discovered in MyScale MyScaleDB up to 1.8.0. This vulnerability affects the function SegmentId::getCacheKey in the library...

MyScale MyScaleDB 1.0 CVE
CRITICAL 9.8 0A6C4271-3B76-

Exploitarium-Detections_0A6C4271-3B76-548A-927D-86B59EB92AA7

Exploitarium-Detections Exploitarium KQL Detection Coverage KQL detection rules for Microsoft Sentinel and Defender XDR covering the bikini/exploit...

N/A N/A GITHUBEXPLOIT
HIGH 8.7 A7634540-503D-

Exploit for SQL Injection in Devcode Openstamanager_A7634540-503D-5B85-9921-973A2342C332

CVE-2026-24418 OpenSTAManager --info Reconnaissance bash Database info + privileges + user credentials python3 exploit.py -t http://target.com -u a...

N/A N/A GITHUBEXPLOIT
NONE C4E774EC-C56C-

Exploit for CVE-2026-49048_C4E774EC-C56C-5FA2-B251-E7C102D32A61

CVE-2026-49048 — JoomCCK 6.4.0 Unauthenticated SQL Injection CVSS 9.8 CVE: CVE-2026-49048 Status: Public disclosure. Reported to Joomla Security St...

N/A N/A GITHUBEXPLOIT
LOW 2.3 CVE-2026-13507

volcengine OpenViking Local VectorDB Primary-key Label str_to_uint64.py str_to_uint64 data authenticity_CVE-2026-13507

A vulnerability was detected in volcengine OpenViking up to 0.3.21. This affects the function str_to_uint64 of the file openviking/storage/vectordb...

volcengine OpenViking 0.3.0 CVE
MEDIUM 5.3 CVE-2026-13509

RAGapp Knowledge File files.py FileHandler.remove_file path traversal_CVE-2026-13509

A vulnerability has been found in RAGapp up to 0.1.5. Affected is the function FileHandler.upload_file/FileHandler.remove_file of the file src/raga...

n/a RAGapp 0.1.0 CVE
MEDIUM 5.1 CVE-2026-13508

khoj-ai khoj Conversation Sharing api_chat.py authorization_CVE-2026-13508

A flaw has been found in khoj-ai khoj up to 2.0.0-beta.28. This impacts an unknown function of the file src/khoj/routers/api_chat.py of the compone...

khoj-ai khoj 2.0.0-beta.0 CVE
NONE 6EB6476B-341C-

websec-labs_6EB6476B-341C-526B-8B5F-5A6BD8C98646

🛡️ WebSec Labs A hands-on, level-based collection of intentionally vulnerable web labs covering the OWASP Top 10 and beyond. Every lab ships in thr...

N/A N/A GITHUBEXPLOIT