Advanced Search
Search Filters
Results
CVE-2026-71518
CVE-2026-71518CVE-2026-71518 — Typemill 2.26.0 unauthenticated authorization bypass in media file download (path-equivalent URL variants). Advisory + PoC.
CVE-2026-20079
CVE-2026-20079Python proof of concept for CVE-2026-20079 affecting Cisco Secure Firewall Management Center.
CVE-2026-40345
CVE-2026-40345A poc and write-up for CVE-2026-40345
React2Shell
CVE-2025-55182Isolated Docker lab, static detection scanner, and PoC validation for React2Shell (CVE-2025-55182).
CVE-2026-68138
CVE-2026-68138CVE-2026-68138 Linux Local Privilege Escalation Exploit
cve-2018-8611
CVE-2018-8611CVE-2018-8611 PrivEsc Exploit
CVE-2026-76904
CVE-2026-76904GeoServer Unauthenticated SQL injection to complete RCE
CVE-2026-73678-PoC
CVE-2026-73678CVE-2026-73678 — MindsDB Minds Platform unauthenticated RCE via scratchpad exec (CVSS 10.0). Verified end-to-end with real LLM
CVE-2026-71206-PoC
CVE-2026-71206PoC: Shiori JWT CheckToken never re-validates account state (CVE-2026-71206, High 8.2)
CVE-2026-72585-PoC
CVE-2026-72585PoC: Grafana Editor role deletes protected contact points (CVE-2026-72585, Medium 6.5)
CVE-2026-71205-PoC
CVE-2026-71205PoC: changedetection.io unlimited login brute-force, no rate limiting (CVE-2026-71205, Medium 6.5)
CVE-2026-71204-PoC
CVE-2026-71204PoC: changedetection.io settings blind-merge mass assignment (CVE-2026-71204, Medium 6.3)
CVE-2026-71203-PoC
CVE-2026-71203PoC: changedetection.io unauthenticated OpenAPI schema disclosure (CVE-2026-71203, Medium 5.3)
CVE-2026-6837-zyxel-export-cgi-command-injection
CVE-2026-6837Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.
zyxel-social-login-bypass-cve-2026-8508
CVE-2026-8508Public writeup, PoC, and emulation materials for CVE-2026-8508 affecting Zyxel captive-portal social login.
cve-2025-5781_FreePBX
CVE-2025-5781In August 2025, a critical vulnerability was disclosed in the FreePBX Endpoint module. CVE-2025–57819 allows an unauthenticated attacker to exploit SQ...
CVE-2026-73519-WolfStack-PoC
CVE-2026-73519PoC for CVE-2026-73519 - WolfStack hardcoded cluster secret leads to unauthenticated RCE (CVSS 9.8)
CVE-2026-73847-emlog-PoC
CVE-2026-73847PoC for CVE-2026-73847 - emlog AI Assistant CSRF to SQL execution to admin takeover (CVSS 6.8)