Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 PACKETSTORM:222614

📄 MCPJam Inspector 1.4.2 Command Injection_PACKETSTORM:222614

This is an advanced Python proof of concept for CVE-2026-23744 demonstrating command injection through a vulnerable MCP API endpoint, leading to re...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222620

📄 Gogs Git Rebase Argument Injection / Remote Code Execution_PACKETSTORM:222620

This Metasploit module exploits an argument injection vulnerability in the pull request merge flow of Gogs versions less than or equal to 0.14.2 an...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:222473

📄 WordPress OrderConvo 13.5 Path Traversal_PACKETSTORM:222473

Proof of concept exploit that demonstrates a path traversal vulnerability in WordPress OrderConvo plugin version 13.5...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:222477

📄 Samba SMB Printer Queue Command Injection / Remote Task Delivery_PACKETSTORM:222477

This Python script is a structured exploitation framework targeting Samba print services exposed over SMB port 445. It focuses on printer-share int...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222526

📄 WebRemoteControl Unauthenticated Remote Filesystem Access_PACKETSTORM:222526

Proof of concept tool that demonstrates how WebRemoteControl suffers from unauthenticated remote filesystem access and potential remote code execut...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222478

📄 Samba Print Command Injection_PACKETSTORM:222478

This Python proof of concept framework analyzes Samba printing configurations for unsafe print command usage involving the %J variable and demonstr...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:222450

📄 Drupal core 10.5.5 SQL Injection_PACKETSTORM:222450

This proof of concept demonstrates an error-based remote SQL injection vulnerability in Drupal core version 10.5.5 PostgreSQL. User-controlled JSON...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222452

📄 dcontrol 1.0.9 Screen Capture_PACKETSTORM:222452

The script is a fully featured remote screen-capture client targeting an exposed WebSocket service /ws associated with a dcontrol deployment. It in...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:222403

📄 Mennekes Amtron Series and Smart-T PnC 5.22.3 Authentication Bypass / Privilege Escalation_PACKETSTORM:222403

Mennekes Amtron Series and Smart-T PnC version 5.22.3 suffers from authentication bypass and privilege escalation vulnerabilities...

N/A N/A PACKETSTORM
NONE PACKETSTORM:222366

📄 Espanso 2.3.0 Configuration Injection_PACKETSTORM:222366

This Python script is a configuration manipulation tool for Espanso version 2.3.0 that modifies its YAML configuration file base.yml to add new tex...

N/A N/A PACKETSTORM