EQSTLab
38 exploits
Active since Feb 2024
Tomcat Partial PUT Java Deserialization
CVSS 9.8
OpenClaw <2026.1.29 - Info Disclosure
CVSS 8.8
React Server Components <19.2.0 - RCE
CVSS 10.0
Langflow AI - Unauthenticated Remote Code Execution
CVSS 9.8
nteract 0.28.0 - Remote Code Execution via Markdown Link
CVSS 9.8
Beekeeper Studio <= 4.1.13 - Cross-Site Scripting in Database Table Column Name
CVSS 6.1
Another Redis Desktop Manager <= 1.6.1 - Cross-Site Scripting in Setting Component
CVSS 9.6
yana <= 1.0.16 - Cross-Site Scripting via src/electron-main.ts
CVSS 9.6
Advanced REST Client 17.0.9 - Cross-Site Scripting via New Project Edit Details Parameter
CVSS 4.7
mjml_app 3.0.4 and 3.1.0-beta - Remote Code Execution via Href Attribute
CVSS 9.3
Deskfiler 1.2.3 - Remote Code Execution via Crafted Plugin Upload
CVSS 9.8
GiveWP Unauthenticated Donation Process Exploit
CVSS 9.8
GiveWP <= 3.14.1 - Unauthenticated PHP Object Injection via give_title
CVSS 10.0