
CVE-2023-27587-PoC
The simple PoC of CVE-2023-27587

The simple PoC of CVE-2023-27587

CVE-2026-28766: Missing Authentication on User Account Endpoint — Gardyn Home Kit (ICSA-26-055-03)

CVE-2026-32646: Missing Authentication on Admin Device Endpoint — Gardyn Home Kit (ICSA-26-055-03)

Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

CVE on FlagForge on versions 2.0.0 to 2.3.0. Upgrade to version 2.3.1 to fix the issue.

WPQA < 5.5 - Unauthenticated Private Message Disclosure

Appspec YML and YAML leaks


CVE-2025-54554 – Unauthenticated Access in tiaudit REST API leading to Sensitive Information Disclosure

Download Monitor <= 4.7.60 - Sensitive Information Exposure via REST API

Proof-of-concept exploit for unauthenticated remote code injection in GitLab's GraphQL API, using crafted queries to modify or delete public projects…