Security Vulnerabilities & Exploits

[webapps] Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

The Exploit Database - 27 Květen, 2026 - 02:00
Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

[webapps] EspoCRM 9.3.3 - SSRF

The Exploit Database - 27 Květen, 2026 - 02:00
EspoCRM 9.3.3 - SSRF

[webapps] scramble - Remote Code Execution

The Exploit Database - 27 Květen, 2026 - 02:00
scramble - Remote Code Execution

[hardware] MeiG Smart FORGE_SLT711 - OS Command Injection

The Exploit Database - 27 Květen, 2026 - 02:00
MeiG Smart FORGE_SLT711 - OS Command Injection

[local] Realtek rtl819x - Local Privilege

The Exploit Database - 27 Květen, 2026 - 02:00
Realtek rtl819x - Local Privilege

[webapps] OpenCATS 0.9.7.4 - SQL Injection

The Exploit Database - 27 Květen, 2026 - 02:00
OpenCATS 0.9.7.4 - SQL Injection

[webapps] Grav CMS 2.0.0-beta.2 - Remote Code Execution

The Exploit Database - 26 Květen, 2026 - 02:00
Grav CMS 2.0.0-beta.2 - Remote Code Execution

[webapps] Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

The Exploit Database - 26 Květen, 2026 - 02:00
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

[hardware] D-Link DSL2600U - 'rom-0' Admin Password Disclosure

The Exploit Database - 26 Květen, 2026 - 02:00
D-Link DSL2600U - 'rom-0' Admin Password Disclosure

[webapps] Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

The Exploit Database - 26 Květen, 2026 - 02:00
Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

[webapps] cPanel - CRLF Injection

The Exploit Database - 26 Květen, 2026 - 02:00
cPanel - CRLF Injection

[local] Linux Kernel 6.8 - Local Privilege Escalation

The Exploit Database - 26 Květen, 2026 - 02:00
Linux Kernel 6.8 - Local Privilege Escalation

[webapps] Cockpit 359 - RCE

The Exploit Database - 21 Květen, 2026 - 02:00
Cockpit 359 - RCE

[webapps] BookStack 25.12.1 - Denial of Service

The Exploit Database - 21 Květen, 2026 - 02:00
BookStack 25.12.1 - Denial of Service

[local] Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path

The Exploit Database - 21 Květen, 2026 - 02:00
Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path

[webapps] solaredge - (CSRF-OOB-Injection)

The Exploit Database - 21 Květen, 2026 - 02:00
solaredge - (CSRF-OOB-Injection)

[webapps] FUXA 1.2.9 - RCE

The Exploit Database - 21 Květen, 2026 - 02:00
FUXA 1.2.9 - RCE

[local] Windows Snipping Tool - NTLMv2 Hash Hijack

The Exploit Database - 15 Květen, 2026 - 02:00
Windows Snipping Tool - NTLMv2 Hash Hijack

[local] Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing

The Exploit Database - 15 Květen, 2026 - 02:00
Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing

[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution

The Exploit Database - 15 Květen, 2026 - 02:00
Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution
Syndikovat obsah