FreshRSS

๐Ÿ”’
โŒ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] FreeBSD rtsold 15.x - Remote Code Execution via DNSSL

โ€” December 25th 2025 at 00:00
FreeBSD rtsold 15.x - Remote Code Execution via DNSSL
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Chained Quiz 1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie

โ€” December 25th 2025 at 00:00
Chained Quiz 1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Quiz Maker 6.7.0.56 - SQL Injection

โ€” December 25th 2025 at 00:00
WordPress Quiz Maker 6.7.0.56 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Summar Employee Portal 3.98.0 - Authenticated SQL Injection

โ€” December 16th 2025 at 00:00
Summar Employee Portal 3.98.0 - Authenticated SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] esm-dev 136 - Path Traversal

โ€” December 16th 2025 at 00:00
esm-dev 136 - Path Traversal
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Pluck 4.7.7-dev2 - PHP Code Execution

โ€” December 8th 2025 at 00:00
Pluck 4.7.7-dev2 - PHP Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] MaNGOSWebV4 4.0.6 - Reflected XSS

โ€” December 3rd 2025 at 00:00
MaNGOSWebV4 4.0.6 - Reflected XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpMyFAQ 2.9.8 - Cross-Site Request Forgery(CSRF)

โ€” December 3rd 2025 at 00:00
phpMyFAQ 2.9.8 - Cross-Site Request Forgery(CSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpMyFAQ 2.9.8 - Cross-Site Request Forgery (CSRF)

โ€” December 3rd 2025 at 00:00
phpMyFAQ 2.9.8 - Cross-Site Request Forgery (CSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpMyFaq 2.9.8 - Cross Site Request Forgery (CSRF)

โ€” December 3rd 2025 at 00:00
phpMyFaq 2.9.8 - Cross Site Request Forgery (CSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Django 5.1.13 - SQL Injection

โ€” December 3rd 2025 at 00:00
Django 5.1.13 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpMyAdmin 5.0.0 - SQL Injection

โ€” December 3rd 2025 at 00:00
phpMyAdmin 5.0.0 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] OpenRepeater 2.1 - OS Command Injection

โ€” December 3rd 2025 at 00:00
OpenRepeater 2.1 - OS Command Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpIPAM 1.4 - SQL-Injection

โ€” December 3rd 2025 at 00:00
phpIPAM 1.4 - SQL-Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] MobileDetect 2.8.31 - Cross-Site Scripting (XSS)

โ€” December 3rd 2025 at 00:00
MobileDetect 2.8.31 - Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] openSIS Community Edition 8.0 - SQL Injection

โ€” December 3rd 2025 at 00:00
openSIS Community Edition 8.0 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] PluckCMS 4.7.10 - Unrestricted File Upload

โ€” December 3rd 2025 at 00:00
PluckCMS 4.7.10 - Unrestricted File Upload
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] RosarioSIS 6.7.2 - Cross-Site Scripting (XSS)

โ€” December 3rd 2025 at 00:00
RosarioSIS 6.7.2 - Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] RosarioSIS 6.7.2 - Cross Site Scripting (XSS)

โ€” December 3rd 2025 at 00:00
RosarioSIS 6.7.2 - Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpIPAM 1.6 - Reflected-Cross-Site Scripting (XSS)

โ€” December 2nd 2025 at 00:00
phpIPAM 1.6 - Reflected-Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Piwigo 13.6.0 - SQL Injection

โ€” December 2nd 2025 at 00:00
Piwigo 13.6.0 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpIPAM 1.6 - Reflected Cross-Site Scripting (XSS)

โ€” December 2nd 2025 at 00:00
phpIPAM 1.6 - Reflected Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpIPAM 1.5.1 - SQL Injection

โ€” December 2nd 2025 at 00:00
phpIPAM 1.5.1 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] phpMyFAQ 3.1.7 - Reflected Cross-Site Scripting (XSS)

โ€” December 2nd 2025 at 00:00
phpMyFAQ 3.1.7 - Reflected Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] YOURLS 1.8.2 - Cross-Site Request Forgery (CSRF)

โ€” December 2nd 2025 at 00:00
YOURLS 1.8.2 - Cross-Site Request Forgery (CSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Flowise 3.0.4 - Remote Code Execution (RCE)

โ€” October 31st 2025 at 00:00
Flowise 3.0.4 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Casdoor 2.95.0 - Cross-Site Request Forgery (CSRF)

โ€” October 29th 2025 at 00:00
Casdoor 2.95.0 - Cross-Site Request Forgery (CSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] HTTP/2 2.0 - Denial Of Service (DOS)

โ€” September 16th 2025 at 00:00
HTTP/2 2.0 - Denial Of Service (DOS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Concrete CMS 9.4.3 - Stored XSS

โ€” September 16th 2025 at 00:00
Concrete CMS 9.4.3 - Stored XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Mbed TLS 3.6.4 - Use-After-Free

โ€” September 16th 2025 at 00:00
Mbed TLS 3.6.4 - Use-After-Free
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] ELEX WooCommerce WordPress Plugin 1.4.3 - SQL Injection

โ€” September 16th 2025 at 00:00
ELEX WooCommerce WordPress Plugin 1.4.3 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] XWiki Platform 15.10.10 - Metasploit Module for Remote Code Execution (RCE)

โ€” September 16th 2025 at 00:00
XWiki Platform 15.10.10 - Metasploit Module for Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Casdoor 2.55.0 - Cross-Site Request Forgery (CSRF)

โ€” September 16th 2025 at 00:00
Casdoor 2.55.0 - Cross-Site Request Forgery (CSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] dotCMS 25.07.02-1 - Authenticated Blind SQL Injection

โ€” September 16th 2025 at 00:00
dotCMS 25.07.02-1 - Authenticated Blind SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Tourism Management System 2.0 - Arbitrary Shell Upload

โ€” September 16th 2025 at 00:00
Tourism Management System 2.0 - Arbitrary Shell Upload
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] ClipBucket 5.5.2 Build #90 - Server-Side Request Forgery (SSRF)

โ€” September 16th 2025 at 00:00
ClipBucket 5.5.2 Build #90 - Server-Side Request Forgery (SSRF)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] ClipBucket 5.5.0 - Arbitrary File Upload

โ€” September 16th 2025 at 00:00
ClipBucket 5.5.0 - Arbitrary File Upload
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Windows Server 2025 Hyper-V NT Kernel Integration VSP - Elevation of Privilege

โ€” September 16th 2025 at 00:00
Microsoft Windows Server 2025 Hyper-V NT Kernel Integration VSP - Elevation of Privilege
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] HTMLDOC 1.9.13 - Stack Buffer Overflow

โ€” September 16th 2025 at 00:00
HTMLDOC 1.9.13 - Stack Buffer Overflow
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Ilevia EVE X1/X5 Server 4.7.18.0.eden - Reverse Rootshell

โ€” September 16th 2025 at 00:00
Ilevia EVE X1/X5 Server 4.7.18.0.eden - Reverse Rootshell
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Lingdang CRM 8.6.4.7 - SQL Injection

โ€” August 26th 2025 at 00:00
Lingdang CRM 8.6.4.7 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Ivanti Endpoint Manager Mobile 12.5.0.0 - Authentication Bypass

โ€” August 26th 2025 at 00:00
Ivanti Endpoint Manager Mobile 12.5.0.0 - Authentication Bypass
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Birth Chart Compatibility WordPress Plugin 2.0 - Full Path Disclosure

โ€” August 26th 2025 at 00:00
Birth Chart Compatibility WordPress Plugin 2.0 - Full Path Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] StoryChief Wordpress Plugin 1.0.42 - Arbitrary File Upload

โ€” August 26th 2025 at 00:00
StoryChief Wordpress Plugin 1.0.42 - Arbitrary File Upload
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] GeoVision ASManager Windows Application 6.1.2.0 - Credentials Disclosure

โ€” August 26th 2025 at 00:00
GeoVision ASManager Windows Application 6.1.2.0 - Credentials Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] GeoVision ASManager Windows Application 6.1.2.0 - Remote Code Execution (RCE)

โ€” August 26th 2025 at 00:00
GeoVision ASManager Windows Application 6.1.2.0 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] RiteCMS 3.0.0 - Reflected Cross Site Scripting (XSS)

โ€” August 18th 2025 at 00:00
RiteCMS 3.0.0 - Reflected Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Lantronix Provisioning Manager 7.10.3 - XML External Entity Injection (XXE)

โ€” August 18th 2025 at 00:00
Lantronix Provisioning Manager 7.10.3 - XML External Entity Injection (XXE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] BigAnt Office Messenger 5.6.06 - SQL Injection

โ€” August 18th 2025 at 00:00
BigAnt Office Messenger 5.6.06 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] PHPMyAdmin 3.0 - Bruteforce Login Bypass

โ€” August 18th 2025 at 00:00
PHPMyAdmin 3.0 - Bruteforce Login Bypass
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft Windows 10.0.19045 - NTLMv2 Hash Disclosure

โ€” August 18th 2025 at 00:00
Microsoft Windows 10.0.19045 - NTLMv2 Hash Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Soosyze CMS 2.0 - Brute Force Login

โ€” August 18th 2025 at 00:00
Soosyze CMS 2.0 - Brute Force Login
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Tenda AC20 16.03.08.12 - Command Injection

โ€” August 18th 2025 at 00:00
Tenda AC20 16.03.08.12 - Command Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] atjiu pybbs 6.0.0 - Cross Site Scripting (XSS)

โ€” August 11th 2025 at 00:00
atjiu pybbs 6.0.0 - Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Windows - Storage QoS Filter Driver Checker

โ€” August 11th 2025 at 00:00
Microsoft Windows - Storage QoS Filter Driver Checker
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Grav CMS 1.7.48 - Remote Code Execution (RCE)

โ€” August 11th 2025 at 00:00
Grav CMS 1.7.48 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Citrix NetScaler ADC/Gateway 14.1 - Memory Disclosure

โ€” August 11th 2025 at 00:00
Citrix NetScaler ADC/Gateway 14.1 - Memory Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Tigo Energy Cloud Connect Advanced (CCA) 4.0.1 - Command Injection

โ€” August 11th 2025 at 00:00
Tigo Energy Cloud Connect Advanced (CCA) 4.0.1 - Command Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Microsoft Edge Renderer Process (Mojo IPC) 134.0.6998.177 - Sandbox Escape

โ€” August 11th 2025 at 00:00
Microsoft Edge Renderer Process (Mojo IPC) 134.0.6998.177 - Sandbox Escape
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] VMware vSphere Client 8.0.3.0 - Reflected Cross-Site Scripting (XSS)

โ€” August 11th 2025 at 00:00
VMware vSphere Client 8.0.3.0 - Reflected Cross-Site Scripting (XSS)
โŒ