Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:219287

📄 dwatch 0.0.2 Server-Side Request Forgery_PACKETSTORM:219287

dwatch version 0.0.2 allows unauthenticated users to create monitoring tasks via the /api/task/save endpoint. The url parameter accepts arbitrary U...

N/A N/A PACKETSTORM
NONE PACKETSTORM:219192

📄 Remote Sunrise Helper for Windows 2026.14 Remote Code Execution_PACKETSTORM:219192

Remote Sunrise Helper for Windows 2026.14 suffers from an unauthenticated remote code execution vulnerability...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:219170

📄 WordPress Kali Forms 2.4.9 Remote Code Execution_PACKETSTORM:219170

WordPress Kali Forms plugin version 2.4.9 suffers from a remote code execution vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:219191

📄 dcontrol 1.0.9 Remote Code Execution_PACKETSTORM:219191

dcontrol version 1.0.9 suffers from an unauthenticated remote code execution vulnerability via the /control-api/monitor/open endpoint...

N/A N/A PACKETSTORM
MEDIUM 6.5 PACKETSTORM:219062

📄 Activitypub-federation-rust 0.7.1 Server-Side Request Forgery_PACKETSTORM:219062

This is a server-side request forgery scanner for Activitypub-federation-rust version 0.7.1...

N/A N/A PACKETSTORM
NONE PACKETSTORM:219085

📄 EspoCRM 9.3.3 Remote Code Execution_PACKETSTORM:219085

This Metasploit module targets an authenticated remote code execution vulnerability in EspoCRM versions 9.3.3 and below...

N/A N/A PACKETSTORM
NONE PACKETSTORM:219071

📄 ddev ZipSlip Path Traversal_PACKETSTORM:219071

A ZipSlip path traversal vulnerability exists in the ddev/ddev project, affecting archive extraction routines. The issue allows a crafted ZIP archi...

N/A N/A PACKETSTORM
NONE PACKETSTORM:219154

📄 PCLink 4.1.1 Authentication Bypass / Code Execution_PACKETSTORM:219154

PCLink version 4.1.1 trusts localhost requests with the "X-Internal-Auth: true" header, bypassing all authentication. Combined with unrestricted ex...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:219120

📄 MCPJam Inspector 1.4.2 Remote Code Execution_PACKETSTORM:219120

This Metasploit auxiliary module targets a remote code execution vulnerability in MCPJam Inspector version 1.4.2. The flaw exists in the /api/mcp/c...

N/A N/A PACKETSTORM
NONE PACKETSTORM:219160

📄 V8 Sandbox Bypass: BigInt Division Memory Corruption_PACKETSTORM:219160

This is a variant of crbug.com/474041332. The issue there was that MultiplyFFT, an optimized version of integer multiplication for very large input...

N/A N/A PACKETSTORM