


An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

Major Security Vulnerability on PrestaShop Websites - CVE-2022-31101

Free web-application vulnerability and version scanner

A free software to find the components installed in Joomla CMS, built out of the ashes of Joomscan.

Chevereto reflected XSS in Website Name - 1.0.0 - 1.1.4 Free, <= 3.13.5 Core

WP Full Stripe Free <= 8.4.3 - Missing Authorization

Pexels: Free Stock Photos <= 1.2.2 - Authenticated (Contributor+) Arbitrary File Upload

An unauthenticated attacker can send an HTTP request with an "Accept-Encoding" HTTP request header triggering a double free in the unknown…

EventON (Free < 2.2.8, Premium < 4.5.5) - Information Disclosure

My Geo Posts Free <= 1.2 - Unauthenticated PHP Object Injection

CVE-2026-74943 · Use after free in Firefox RasterImage (sec-high)

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.



CVE-2022-22620: Use-after-free in Safari

SourceCodester Online Eyewear Shop Remote File Inclusion Vulnerability