Hex0rc1st
14 exploits
Active since Mar 2026
cPanel and WHM Authentication Bypass via Login Flow
GitHub Enterprise Server - RCE
Fortinet FortiClientEMS 7.4.5-7.4.6 - Command Injection
Windows Snipping Tool Spoofing Vulnerability
Cockpit: cockpit: unauthenticated remote code execution due to ssh command-line argument injection
Vim modeline bypass via various options affects Vim < 9.2.0276
Apache ActiveMQ Broker, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
Langflow has Unauthenticated Remote Code Execution via Public Flow Build Endpoint
Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)
Vite Affected by Arbitrary File Read via Vite Dev Server WebSocket
Vim <9.2.0272 - Code Injection
Google Chrome < 146.0.7680.75 - Out-of-Bounds Access
Windows File Server - Privilege Escalation
Google Chrome < 146.0.7680.178 - Use After Free