FreshRSS

๐Ÿ”’
โŒ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft Edge (Chromium-based) 135.0.7049.114/.115 - Information Disclosure

โ€” August 3rd 2025 at 00:00
Microsoft Edge (Chromium-based) 135.0.7049.114/.115 - Information Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Gandia Integra Total 4.4.2236.1 - SQL Injection

โ€” August 3rd 2025 at 00:00
Gandia Integra Total 4.4.2236.1 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Copyparty 1.18.6 - Reflected Cross-Site Scripting (XSS)

โ€” August 3rd 2025 at 00:00
Copyparty 1.18.6 - Reflected Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LPAR2RRD 8.04 - Remote Code Execution (RCE)

โ€” August 3rd 2025 at 00:00
LPAR2RRD 8.04 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Swagger UI 1.0.3 - Cross-Site Scripting (XSS)

โ€” August 3rd 2025 at 00:00
Swagger UI 1.0.3 - Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Ultimate Member WordPress Plugin 2.6.6 - Privilege Escalation

โ€” August 3rd 2025 at 00:00
Ultimate Member WordPress Plugin 2.6.6 - Privilege Escalation
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Virtual Hard Disk (VHDX) 11 - Remote Code Execution (RCE)

โ€” August 3rd 2025 at 00:00
Microsoft Virtual Hard Disk (VHDX) 11 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Linux PAM Environment - Variable Injection Local Privilege Escalation

โ€” July 28th 2025 at 00:00
Linux PAM Environment - Variable Injection Local Privilege Escalation
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Mezzanine CMS 6.1.0 - Stored Cross Site Scripting (XSS)

โ€” July 28th 2025 at 00:00
Mezzanine CMS 6.1.0 - Stored Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Adobe ColdFusion 2023.6 - Remote File Read

โ€” July 28th 2025 at 00:00
Adobe ColdFusion 2023.6 - Remote File Read
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Invision Community 4.7.20 - (calendar/view.php) SQL Injection

โ€” July 28th 2025 at 00:00
Invision Community 4.7.20 - (calendar/view.php) SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] XWiki 14 - SQL Injection via getdeleteddocuments.vm

โ€” July 28th 2025 at 00:00
XWiki 14 - SQL Injection via getdeleteddocuments.vm
โ˜ โ˜† โœ‡ Exploit-DB Updates

[dos] Xlight FTP 1.1 - Denial Of Service (DOS)

โ€” July 28th 2025 at 00:00
Xlight FTP 1.1 - Denial Of Service (DOS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft Edge Windows 10 Version 1511 - Cross Site Scripting (XSS)

โ€” July 22nd 2025 at 00:00
Microsoft Edge Windows 10 Version 1511 - Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Tenda FH451 1.0.0.9 Router - Stack-based Buffer Overflow

โ€” July 22nd 2025 at 00:00
Tenda FH451 1.0.0.9 Router - Stack-based Buffer Overflow
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Joomla JS Jobs plugin 1.4.2 - SQL injection

โ€” July 22nd 2025 at 00:00
Joomla JS Jobs plugin 1.4.2 - SQL injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Telegram Bot Username

โ€” July 22nd 2025 at 00:00
LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Telegram Bot Username
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Discourse 3.1.1 - Unauthenticated Chat Message Access

โ€” July 22nd 2025 at 00:00
Discourse 3.1.1 - Unauthenticated Chat Message Access
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Operator Surname

โ€” July 22nd 2025 at 00:00
LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Operator Surname
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Facebook Integration Page Name Field

โ€” July 22nd 2025 at 00:00
LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Facebook Integration Page Name Field
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Personal Canned Messages

โ€” July 22nd 2025 at 00:00
LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Personal Canned Messages
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Simple File List WordPress Plugin 4.2.2 - File Upload to RCE

โ€” July 22nd 2025 at 00:00
Simple File List WordPress Plugin 4.2.2 - File Upload to RCE
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Pie Register WordPress Plugin 3.7.1.4 - Authentication Bypass to RCE

โ€” July 22nd 2025 at 00:00
Pie Register WordPress Plugin 3.7.1.4 - Authentication Bypass to RCE
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Department Assignment Alias Nick Field

โ€” July 22nd 2025 at 00:00
LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via Department Assignment Alias Nick Field
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via the Chat Transfer Function

โ€” July 22nd 2025 at 00:00
LiveHelperChat 4.61 - Stored Cross Site Scripting (XSS) via the Chat Transfer Function
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Graphics Component Windows 11 Pro (Build 26100+) - Local Elevation of Privileges

โ€” July 16th 2025 at 00:00
Microsoft Graphics Component Windows 11 Pro (Build 26100+) - Local Elevation of Privileges
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Langflow 1.2.x - Remote Code Execution (RCE)

โ€” July 16th 2025 at 00:00
Langflow 1.2.x - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[hardware] TOTOLINK N300RB 8.54 - Command Execution

โ€” July 16th 2025 at 00:00
TOTOLINK N300RB 8.54 - Command Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] SugarCRM 14.0.0 - SSRF/Code Injection

โ€” July 16th 2025 at 00:00
SugarCRM 14.0.0 - SSRF/Code Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] MikroTik RouterOS 7.19.1 - Reflected XSS

โ€” July 16th 2025 at 00:00
MikroTik RouterOS 7.19.1 - Reflected XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] White Star Software Protop 4.4.2-2024-11-27 - Local File Inclusion (LFI)

โ€” July 16th 2025 at 00:00
White Star Software Protop 4.4.2-2024-11-27 - Local File Inclusion (LFI)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] PivotX 3.0.0 RC3 - Remote Code Execution (RCE)

โ€” July 16th 2025 at 00:00
PivotX 3.0.0 RC3 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Brokering File System Windows 11 Version 22H2 - Elevation of Privilege

โ€” July 16th 2025 at 00:00
Microsoft Brokering File System Windows 11 Version 22H2 - Elevation of Privilege
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] NodeJS 24.x - Path Traversal

โ€” July 16th 2025 at 00:00
NodeJS 24.x - Path Traversal
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Keras 2.15 - Remote Code Execution (RCE)

โ€” July 16th 2025 at 00:00
Keras 2.15 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WP Publications WordPress Plugin 1.2 - Stored XSS

โ€” July 16th 2025 at 00:00
WP Publications WordPress Plugin 1.2 - Stored XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Stacks Mobile App Builder 5.2.3 - Authentication Bypass via Account Takeover

โ€” July 8th 2025 at 00:00
Stacks Mobile App Builder 5.2.3 - Authentication Bypass via Account Takeover
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft PowerPoint 2019 - Remote Code Execution (RCE)

โ€” July 8th 2025 at 00:00
Microsoft PowerPoint 2019 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] ScriptCase 9.12.006 (23) - Remote Command Execution (RCE)

โ€” July 8th 2025 at 00:00
ScriptCase 9.12.006 (23) - Remote Command Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Sudo chroot 1.9.17 - Local Privilege Escalation

โ€” July 8th 2025 at 00:00
Sudo chroot 1.9.17 - Local Privilege Escalation
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Sudo 1.9.17 Host Option - Elevation of Privilege

โ€” July 8th 2025 at 00:00
Sudo 1.9.17 Host Option - Elevation of Privilege
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Defender for Endpoint (MDE) - Elevation of Privilege

โ€” July 8th 2025 at 00:00
Microsoft Defender for Endpoint (MDE) - Elevation of Privilege
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft Outlook - Remote Code Execution (RCE)

โ€” July 8th 2025 at 00:00
Microsoft Outlook - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Discourse 3.2.x - Anonymous Cache Poisoning

โ€” July 8th 2025 at 00:00
Discourse 3.2.x - Anonymous Cache Poisoning
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft SharePoint 2019 - NTLM Authentication

โ€” July 2nd 2025 at 00:00
Microsoft SharePoint 2019 - NTLM Authentication
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Wing FTP Server 7.4.3 - Unauthenticated Remote Code Execution (RCE)

โ€” July 2nd 2025 at 00:00
Wing FTP Server 7.4.3 - Unauthenticated Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] gogs 0.13.0 - Remote Code Execution (RCE)

โ€” July 2nd 2025 at 00:00
gogs 0.13.0 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Moodle 4.4.0 - Authenticated Remote Code Execution

โ€” July 2nd 2025 at 00:00
Moodle 4.4.0 - Authenticated Remote Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Sitecore 10.4 - Remote Code Execution (RCE)

โ€” June 26th 2025 at 00:00
Sitecore 10.4 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] McAfee Agent 5.7.6 - Insecure Storage of Sensitive Information

โ€” June 26th 2025 at 00:00
McAfee Agent 5.7.6 - Insecure Storage of Sensitive Information
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Social Warfare WordPress Plugin 3.5.2 - Remote Code Execution (RCE)

โ€” June 26th 2025 at 00:00
Social Warfare WordPress Plugin 3.5.2 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] PX4 Military UAV Autopilot 1.12.3 - Denial of Service (DoS)

โ€” June 26th 2025 at 00:00
PX4 Military UAV Autopilot 1.12.3 - Denial of Service (DoS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] OneTrust SDK 6.33.0 - Denial Of Service (DoS)

โ€” June 26th 2025 at 00:00
OneTrust SDK 6.33.0 - Denial Of Service (DoS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Pterodactyl Panel 1.11.11 - Remote Code Execution (RCE)

โ€” June 26th 2025 at 00:00
Pterodactyl Panel 1.11.11 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] freeSSHd 1.0.9 - Denial of Service (DoS)

โ€” June 26th 2025 at 00:00
freeSSHd 1.0.9 - Denial of Service (DoS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft Excel 2024 Use after free - Remote Code Execution (RCE)

โ€” June 26th 2025 at 00:00
Microsoft Excel 2024 Use after free - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] FortiOS SSL-VPN 7.4.4 - Insufficient Session Expiration & Cookie Reuse

โ€” June 20th 2025 at 00:00
FortiOS SSL-VPN 7.4.4 - Insufficient Session Expiration & Cookie Reuse
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Microsoft Excel LTSC 2024 - Remote Code Execution (RCE)

โ€” June 20th 2025 at 00:00
Microsoft Excel LTSC 2024 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Ingress-NGINX 4.11.0 - Remote Code Execution (RCE)

โ€” June 20th 2025 at 00:00
Ingress-NGINX 4.11.0 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] WebDAV Windows 10 - Remote Code Execution (RCE)

โ€” June 15th 2025 at 00:00
WebDAV Windows 10 - Remote Code Execution (RCE)
โŒ