Recent Advisories

Severity ID Title Vendor Product Date Type
NONE F03A36CE-08F4-

Exploit for CVE-2026-38427_F03A36CE-08F4-59DF-B4D9-99156AEA0C10

CVE-2026-38427: Integer Wraparound → Heap Buffer Overflow in Tasmota fetchjpg CVE: CVE-2026-38427 Severity: Critical CVSS 9.8 Product: Arendst Tasm...

N/A N/A GITHUBEXPLOIT
NONE 84594BC0-112E-

tplink-priv-zero_84594BC0-112E-58EE-90C3-101FA26C7276

TP-Link TL-WR841N v14 — Authenticated OS Command Injection RCE + CSRF Chain --- TL;DR The diagnostic module IPPINGDIAG / TRACEROUTEDIAG in TL-WR841...

N/A N/A GITHUBEXPLOIT
NONE THN:795D2B30266...

Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms_THN:795D2B30266C6F486E8831BCE35B39AA

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEinuOeS1qVC0UHhPnJ0jlSdfScsZDRtkI6VU366iePjKdNTqLiqHcqjRcGL-sNBdUkShUH71YDDVwavzXM1cI...

N/A N/A THN
NONE D7730908-0A42-

Exploit for CVE-2026-43494_D7730908-0A42-510D-B9EE-C4FC91E73D21

SLEY — PinTheft PoC CVE-2026-43494 Proof of concept — uid=1000raken → uid=0root after ./sley on WSL2 6.6.87.2-microsoft-standard-WSL2 Single-file p...

N/A N/A GITHUBEXPLOIT
NONE MALWAREBYTES:39...

A week in security (May 18 – May 24)_MALWAREBYTES:39B6F132FAAB7B7C24114FA07BFFFA87

Last week on Malwarebytes Labs: * Update Chrome now: Critical bugs could let attackers run code * Microsoft Defender vulnerabilities are being...

N/A N/A MALWAREBYTES
NONE THN:5A78D74D437...

TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO_THN:5A78D74D437AA99549A244FECBD74F10

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjOb58wXNPgRDazHcSLTObawPnMVsCDUEAoFclGVn3CC8qe6Pr_0-Gce-SxCO7FJ5HzU23WE_soU5iTc0zvLL...

N/A N/A THN
NONE 486C0AC5-4613-

netsec-agent_486C0AC5-4613-5BB2-A01C-57C320F5C264

NETSEC-AGENT Autonomous AI Penetration Testing Terminal — powered by Xiaomi MiMo V2.5 NETSEC-AGENT is a multi-agent offensive-security platform tha...

N/A N/A GITHUBEXPLOIT
NONE 5D30B3B5-EB47-

CVE-2026-X4992-Uniswap-PoC_5D30B3B5-EB47-5802-810C-946C66DDD919

CVE-2026-X4992: Uniswap V3 SwapRouter Reentrancy Vulnerability PoC Overview This repository contains the Proof of Concept PoC exploit for a newly d...

N/A N/A GITHUBEXPLOIT
NONE A3EE8424-882F-

security-writeups_A3EE8424-882F-5FDD-B041-CD99572A9218

security-writeups...

N/A N/A GITHUBEXPLOIT
NONE HACKREAD:A91B58...

Hacker Selling 340 Million OnlyFans User Records Built From Old Breaches_HACKREAD:A91B58CA97B2EA635D5C6DFE0507CF5E

A hacker is selling a 340M OnlyFans user database allegedly built by matching old breach data and public profiles to real OnlyFans accounts.

N/A N/A HACKREAD