
CVE-2026-48939
Pre-auth arbitrary file upload RCE exploit for iCagenda Joomla extension < 4.0.8 (CVSS 10.0)

Pre-auth arbitrary file upload RCE exploit for iCagenda Joomla extension < 4.0.8 (CVSS 10.0)

The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full…

The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to…

OS command injection vulnerability in Dynatrace ActiveGate ping extension up to 1.016 via crafted ip address

CVE-2026-48907 is a critical improper access control vulnerability in the JCE editor extension for Joomla. It allows unauthenticated attackers to…

Python exploit for RCE in Wordpress

Responsive FileManager v.9.9.5 vulnerable to CVE-2022-46604.

Shortcode Addons <= 3.2.5 - Authenticated (Admin+) Arbitrary File Upload