Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 CVE-2025-67447

CVE-2025-67447_CVE-2025-67447

The network diagnosis (ping) module in Neterbit NW-431F Router 20241014-IR03 and before is vulnerable to OS command injection. The application does...

Neterbit Neterbit NW-431F Router 20241014-IR03 and before CVE
CRITICAL 9.8 CVE-2025-71316

SQLite sqldiff remote code execution via argument injection_CVE-2025-71316

SQLite 'sqldiff.exe' does not securely handle the way the Microsoft Windows C runtime converts Unicode characters to ANSI codepages. An attacker c...

SQLite sqldiff CVE
CRITICAL 9.8 18D066FB-7925-

Exploit for Stack-based Buffer Overflow in Microsoft_18D066FB-7925-51D0-8F62-50C464096DBA

CVE-2026-41089 !TIP If the setup does not start, add the folder to the allowed list or pause protection for a few minutes. !CAUTION Some security s...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 309255BC-02CF-

Exploit for CVE-2026-8732_309255BC-02CF-52BD-9DA4-CEAB202BEECD

CVE-2026-8732 – WordPress WP Maps Pro Exploit Unauthenticated Admin Takeover | CVSS 9.8 | Ready to use πŸ”₯ What you get - Fully working Python explo...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 5FF26F40-4D2D-

Exploit for Stack-based Buffer Overflow in Microsoft_5FF26F40-4D2D-54FA-A5E0-88A648FA0864

CVE-2026-41089 !TIP If the setup does not start, add the folder to the allowed list or pause protection for a few minutes. !CAUTION Some security s...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.6 CVE-2026-35906

CVE-2026-35906_CVE-2026-35906

An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allows unauthenticated attackers to execute arbitrar...

T3 Technology T625Pro, T6825G v1.0.07, v1.0.03 CVE
CRITICAL 9.9 CVE-2026-43986

Tautulli vulnerable to unauthenticated SSRF in /image/ via attacker-seeded image hash replay_CVE-2026-43986

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 expose a public `/image/` route that resolv...

Tautulli Tautulli < 2.17.1 CVE
CRITICAL 9 CVE-2026-10868

MISP user edit endpoint mass assignment vulnerability allows unauthorized user account modification_CVE-2026-10868

A mass assignment vulnerability exists in the MISP user edit functionality due to insufficient filtering of user-supplied fields in UsersController...

misp misp CVE
CRITICAL 9.8 PACKETSTORM:222633

πŸ“„ WordPress ARMember Premium 7.3.1 Insecure Password Reset_PACKETSTORM:222633

WordPress ARMember Premium plugin versions 7.3.1 and below suffer from an insecure password reset mechanism that allows for administrative account ...

N/A N/A PACKETSTORM
CRITICAL 9.8 0741E52B-D558-

Exploit for Deserialization of Untrusted Data in Presstigers Simple_Job_Board_0741E52B-D558-58DC-BF9C-0A4B84B06668

CVE-2024-1813 - Simple Job Board ≀ 2.11.0 WordPress - Unauthenticated PHP Object Injection πŸŽ₯ Proof-of-Concept demo End-to-end: a guest stores a se...

N/A N/A GITHUBEXPLOIT