
the-sanitizer-is-the-weapon-cve-2026-68749-cve-2026-68750-quadratic-dos-in-elixir-html-sanitize-ex
adversarial-attackexploitationpayload-generation+3
10 days ago


Public vulnerability advisory and supporting evidence for CVE-2026-67846 affecting the BOOM v3/v4 NBDTLB implementation.

Persistent XSS in Typemill CMS: the Markdown parser lets javascript: URIs through unfiltered. Writeup + PoC.

Notepad++ CVE-2026-52886 — session.xml backupFilePath starts_with() path traversal (GHSA-rqfm-pw34-r7j6)

PD2229B的43499(ghostlock)可行性研究


Security Advisory: Camaleon CMS - Authenticated RCE via `select_eval` Custom Field

CVE-2013-2028 python exploit







PoC for CVE-2026-5366: git argument injection in Prefect's GitRepository leading to RCE on the worker.

CVE-2026-50142 — Heap allocation vulnerability in libheif HEIF sequence parser