Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:220962

📄 Event Booking Calendar 5.0 Cross Site Scripting_PACKETSTORM:220962

Event Booking Calendar version 5.0 suffers from a cross site scripting vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:220990

📄 Espanso 2.3.0 Shell and Script Extension Arbitrary Command Execution_PACKETSTORM:220990

The Shell and Script extensions in Espanso version 2.3.0 allow arbitrary command execution. No restart required. Config changes take effect immedia...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:220959

📄 Flowise Missing Authentication_PACKETSTORM:220959

Proof of concept for Flowise versions prior to 3.0.5 that suffer from a missing authentication vulnerability...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:220896

📄 WordPress Ninja Forms – File Uploads 3.3.26 Shell Upload / Traversal_PACKETSTORM:220896

WordPress Ninja Forms - File Uploads plugin versions 3.3.26 and below arbitrary file upload exploit...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:220776

📄 WordPress Madera 2.2.2 Local File Inclusion_PACKETSTORM:220776

This Python script exploits a local file inclusion vulnerability in the WordPress Madara theme. It interacts with the admin-ajax.php endpoint to lo...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:220781

📄 CairoSVG Denial of Service_PACKETSTORM:220781

CairoSVG versions prior to 2.9.0 suffer from a recursive denial of service vulnerability...

N/A N/A PACKETSTORM
HIGH 7.6 PACKETSTORM:220740

📄 Grafana 11.2.0 Server-Side Request Forgery_PACKETSTORM:220740

This Python script targets a server-side request forgery vulnerability in Grafana version 11.2.0. It abuses a path traversal flaw in the /render en...

N/A N/A PACKETSTORM
NONE PACKETSTORM:220754

📄 S2M Forgot Password Endpoint Token Exposure_PACKETSTORM:220754

This Python script demonstrates a security assessment targeting a forgot-password API endpoint in a digital payment platform operated by S2M, a com...

N/A N/A PACKETSTORM
MEDIUM 5.5 PACKETSTORM:220736

📄 Adobe DNG SDK Integer Overflow Proof of Concept Generator_PACKETSTORM:220736

This is a proof of concept tool to generate an integer overflow condition in the Adobe DNG SDK to achieve arbitrary code execution. integer overflo...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:220737

📄 Cisco ISE 2.2 Remote Code Execution_PACKETSTORM:220737

This Metasploit module exploits an unauthorized file upload vulnerability in Cisco ISE. A ZIP file containing a JSP file with a manipulated path pa...

N/A N/A PACKETSTORM