Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 PACKETSTORM:215831

πŸ“„ SAP NetWeaver 7.20 Visual Composer Metadata Shell Upload_PACKETSTORM:215831

SAP NetWeaver Visual Composer contains an unauthenticated file upload vulnerability in the metadata uploader component that allows attackers to upl...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:215827

πŸ“„ Samsung QuramDNG Type Confusion Detector Vulnerability Scanner_PACKETSTORM:215827

This C++ scanner analyzes DNG Digital Negative files for the CVE-2025-58478 type confusion vulnerability in the libimagecodec.quram.so library used...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215818

πŸ“„ RuoYi 4.7.9 Advanced SQL Injection Exploitation Toolkit_PACKETSTORM:215818

This Python script is a sophisticated SQL injection exploitation tool that targets Java web applications specifically RuoYi framework, with additio...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:215823

πŸ“„ Samsung QuramDNG Heap Corruption_PACKETSTORM:215823

A vulnerability exists in Samsung's image decoding library libimagecodec.quram.so responsible for parsing Digital Negatives DNG. A malformed DNG co...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215819

πŸ“„ RustFly 2.0.0 Event Manipulation_PACKETSTORM:215819

The remote UI control mechanism of RustFly accepts raw hex-encoded instructions over UDP. Some sequences trigger execution of remote system-level o...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:215825

πŸ“„ Samsung QuramDng Malformed DNG TrimBounds Opcode Out‑Of‑Bounds Read_PACKETSTORM:215825

A vulnerability exists in the image decoding logic of Quram DNG parser within libimagecodec.quram.so. The flawed bounds validation in handling Trim...

N/A N/A PACKETSTORM
CRITICAL 9.3 PACKETSTORM:215742

πŸ“„ Pymatgen 2024.1 CIF Parser Reverse Shell_PACKETSTORM:215742

Pymatgen version 2024.1 contains a critical remote code execution vulnerability in its Crystallographic Information File CIF parser that allows att...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:215741

πŸ“„ Pterodactyl Panel Remote Code Execution_PACKETSTORM:215741

This Metasploit module exploits a remote code execution vulnerability in Pterodactyl Panel versions before 1.11.11. The vulnerability allows an att...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:215730

πŸ“„ n8n Workflow Automation Remote Configuration / Admin Data Extraction_PACKETSTORM:215730

This Metasploit module exploits multiple vulnerabilities in n8n workflow automation tool. It leverages a file read vulnerability to steal encryptio...

N/A N/A PACKETSTORM
HIGH 8.7 PACKETSTORM:215727

πŸ“„ MongoDB BSON Decompression OP_COMPRESSED Memory Disclosure_PACKETSTORM:215727

This Metasploit module demonstrates an educational memory leak in MongoDB BSON decompression. It sends malformed BSON in OPCOMPRESSED messages to t...

N/A N/A PACKETSTORM