Security Vulnerabilities & Exploits

[webapps] CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)

The Exploit Database - 29 Květen, 2026 - 02:00
CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)

[remote] strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow

The Exploit Database - 29 Květen, 2026 - 02:00
strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow

[dos] strongSwan 5.9.13 - DoS

The Exploit Database - 29 Květen, 2026 - 02:00
strongSwan 5.9.13 - DoS

[local] Linux Kernel - Local Privilege Escalation

The Exploit Database - 27 Květen, 2026 - 02:00
Linux Kernel - Local Privilege Escalation

[webapps] Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

The Exploit Database - 27 Květen, 2026 - 02:00
Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

[webapps] EspoCRM 9.3.3 - SSRF

The Exploit Database - 27 Květen, 2026 - 02:00
EspoCRM 9.3.3 - SSRF

[webapps] scramble - Remote Code Execution

The Exploit Database - 27 Květen, 2026 - 02:00
scramble - Remote Code Execution

[hardware] MeiG Smart FORGE_SLT711 - OS Command Injection

The Exploit Database - 27 Květen, 2026 - 02:00
MeiG Smart FORGE_SLT711 - OS Command Injection

[local] Realtek rtl819x - Local Privilege

The Exploit Database - 27 Květen, 2026 - 02:00
Realtek rtl819x - Local Privilege

[webapps] OpenCATS 0.9.7.4 - SQL Injection

The Exploit Database - 27 Květen, 2026 - 02:00
OpenCATS 0.9.7.4 - SQL Injection

[webapps] Grav CMS 2.0.0-beta.2 - Remote Code Execution

The Exploit Database - 26 Květen, 2026 - 02:00
Grav CMS 2.0.0-beta.2 - Remote Code Execution

[webapps] Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

The Exploit Database - 26 Květen, 2026 - 02:00
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

[hardware] D-Link DSL2600U - 'rom-0' Admin Password Disclosure

The Exploit Database - 26 Květen, 2026 - 02:00
D-Link DSL2600U - 'rom-0' Admin Password Disclosure

[webapps] Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

The Exploit Database - 26 Květen, 2026 - 02:00
Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

[webapps] cPanel - CRLF Injection

The Exploit Database - 26 Květen, 2026 - 02:00
cPanel - CRLF Injection

[local] Linux Kernel 6.8 - Local Privilege Escalation

The Exploit Database - 26 Květen, 2026 - 02:00
Linux Kernel 6.8 - Local Privilege Escalation

DSA-5555 openvpn

Debian.org [Security] - 15 Listopad, 2023 - 01:00
security update

DSA-5552 ffmpeg

Debian.org [Security] - 12 Listopad, 2023 - 01:00
security update
Syndikovat obsah