Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 CVE-2026-42680

WordPress Contest Gallery Pro plugin <= 29.0.1 - Privilege Escalation vulnerability_CVE-2026-42680

Incorrect Privilege Assignment vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery Pro allows Privilege Escalation. This ...

Wasiliy Strecker / ContestGallery developer Contest Gallery Pro n/a CVE
CRITICAL 9.2 CVE-2026-0826

Poly Voice – Possible Remote Control of Certain Poly Devices_CVE-2026-0826

In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could enable remote code execution ...

HP Inc. poly_trio_8300 CVE
CRITICAL 9.1 THN:711BE162D07...

⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AI-Powered Attacks, OAuth Phishing and More_THN:711BE162D073F1D187589FE4F3A55056

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiV-leTG-MQremNN5Ju342L6LQMn36xeD4jiS4YWT7EdYluHOtFDqIN8y3bQuV-A0D0wtsO5sRpG3Bpy5xdHh...

N/A N/A THN
CRITICAL 9.2 589E6F35-B762-

Exploit for Exposure of Sensitive Information to an Unauthorized Actor in Strapi_589E6F35-B762-5B4B-B0FB-962CF7D8A206

CVE-2026-27886 Strapi PoC For authorized security testing only. Strapi leaking sensitive data via relational filtering due to lack of query sanitiz...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.1 B28323F0-25A8-

Exploit for Reliance on Cookies without Validation and Integrity Checking in Paloaltonetworks Pan-Os_B28323F0-25A8-5DCC-8A76-D36777FF720C

CVE-2026-0257 - Palo Alto Networks GlobalProtect Authentication Override Cookie Forgery Overview CVE-2026-0257 is a medium-severity treat as critic...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.3 591AEE99-21FD-

Exploit for CVE-2026-29000_591AEE99-21FD-5A1C-8280-68F42EB93846

Lab Demo CVE-2026-29000: pac4j-jwt Authentication Bypass Môi trường Lab gọn nhẹ dùng để minh họa và học tập về lỗ hổng CVE-2026-29000 Authenticatio...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 E3EC58D4-B32D-

Exploit for CVE-2026-8732_E3EC58D4-B32D-56D8-A0BF-F264EC3BA024

CVE-2026-8732 - WordPress WP Google Map Pro Mass Scanner & Auto Admin Creator 📌 Description This tool exploits CVE-2026-8732, a vulnerability in t...

N/A N/A GITHUBEXPLOIT
CRITICAL 9.8 THN:0ACE1F8B00A...

Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts_THN:0ACE1F8B00AC011E78CEF054F3071566

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhR5AZVDVlhPdPOYO4FsyfLsBmtohzgdjmh688BLU6VRpwi-MaKq4XYgE5-ygnQtcUDMKcR8R4-f9IrfiSFpC...

N/A N/A THN
CRITICAL 9.8 CVE-2026-7858

Deserialization of Untrusted Data vulnerability affecting Teamwork Cloud from No Magic Release 2022x through No Magic Release 2026x and Magic Collaboration Studio from CATIA Magic Release 2022x through CATIA Magic Release 2026x_CVE-2026-7858

A Deserialization of Untrusted Data vulnerability affecting Teamwork Cloud from No Magic Release 2022x through No Magic Release 2026x and Magic Col...

Dassault Systèmes Teamwork Cloud - Standard Edition No Magic Release 2022x Golden CVE
CRITICAL 9.8 89AB48FD-87E9-

Exploit for Integer Overflow to Buffer Overflow in Perl_89AB48FD-87E9-5792-95CE-0C8F11CF7AA6

CVE-2026-8376-Perl-Heap-Buffer-Overflow-PoC-Exploit Perl versions through 5.43.10 contain an integer overflow in Perlstudychunk regcompstudy.c. Whe...

N/A N/A GITHUBEXPLOIT