
CVE-2026-39324
Proof-of-concept exploit for Rack::Cookie authentication bypass (CVE-2026-39324), demonstrating session forgery via fallback coder to gain admin…
authentication-authorizationexploitationpenetration-testing+2

Proof-of-concept exploit for Rack::Cookie authentication bypass (CVE-2026-39324), demonstrating session forgery via fallback coder to gain admin…

CVE-2026-55584 — phpSysInfo IP Allowlist Bypass

Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

Sinilink XY-WFTX Wifi Remote Thermostat Module Temperature Controller