Recent Advisories

Severity ID Title Vendor Product Date Type
NONE A140EAE9-5FAB-

xiangshan-bpu-asid-poc_A140EAE9-5FAB-54CB-9BD1-1DCA09D8F35A

XiangShan Cross-ASID BPU Leak PoC Minimal proof of concept for a cross-ASID branch predictor state leak in OpenXiangShan XiangShan. The PoC demonst...

N/A N/A GITHUBEXPLOIT
NONE C6C4ADAA-6DFB-

ExploitWorkbench_C6C4ADAA-6DFB-55C3-B297-5744E5FDFC3B

No description provided...

N/A N/A GITHUBEXPLOIT
NONE D474F0DF-490C-

Magento-Exploit_D474F0DF-490C-5991-81F0-4851DF05F42D

Magento-Exploit Magento CE 1.9.0.1 - RCE remade in Python3...

N/A N/A GITHUBEXPLOIT
NONE EDA1FD8B-DB94-

offensive-claude_EDA1FD8B-DB94-5400-9A82-50F0194966A6

Offensive Security Research Config for Claude Code A comprehensive Claude Code configuration tailored for security researchers, red teamers, and vu...

N/A N/A GITHUBEXPLOIT
NONE E07F5024-E3D1-

owasp-web-pentest-tools_E07F5024-E3D1-5632-9244-27E181873CF1

OWASP Web Pentest Tools CLI toolkit para suporte em testes de penetração em aplicações web, cobrindo as principais vulnerabilidades do OWASP Top 10...

N/A N/A GITHUBEXPLOIT
NONE THN:4A1D4C8F1F4...

GitHub Actions Supply Chain Attack Redirects Tags to Steal CI/CD Credentials_THN:4A1D4C8F1F41BDB4260E5E273EC4557E

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgc7jpVO6HhBuEBTjkwmNjYhKlFmhhmytOqNZHYuGP-dNWrf3AoyE68yoKj77elddOX4Ps2x9jSuwhi5sE-Qj...

N/A N/A THN
NONE THN:52FFF2D015B...

Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer Account_THN:52FFF2D015B90EFF3BB99C75AD03B66B

![Mini Shai-Hulud](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjpyJDg_FqUDfeOeVX8IyhBHj9HqwkGZ-hV7b998CMLiBK2uPpmuQEN1cv1xYXJzRiznN6...

N/A N/A THN
NONE EA07DF38-4382-

MC-271325-DoS-PoC_EA07DF38-4382-540C-BCF4-9229CE91EBBA

Log amplification based denial for service for vanilla Minecraft MC-271325 Unauthenticated clients can make vanilla and Fabric Minecraft servers wr...

N/A N/A GITHUBEXPLOIT
NONE AECD405E-97C0-

midnight-ownpublickey-attack_AECD405E-97C0-50FA-BD41-7673DAB158A7

Bounty 295: Why ownPublicKey Can't Be Trusted for Access Control A Comprehensive Tutorial on ZK Circuit Access Control Vulnerabilities in Midnight ...

N/A N/A GITHUBEXPLOIT
NONE BA6E6A92-D62E-

zparty_BA6E6A92-D62E-5A18-A900-CDEE3CAF577A

Zparty Automated web penetration testing framework with local AI, built in Python. Zparty runs a full black-box security audit in one command — rec...

N/A N/A GITHUBEXPLOIT