Nxploited (Khaled Alenazi)
17 exploits
Active since May 2025
Mojoomla WPAMS <44.0 - Code Injection
WordPress Premium Age Verification <3.0.2 - Info Disclosure
Copypress Rest API 1.1-1.2 - Unauthenticated Remote Code Execution via JWT Token Forgery
Mobile builder <1.4.2 - Auth Bypass
WooCommerce Designer Pro <1.9.26 - RCE
JAY Login & Register <2.4.01 - Auth Bypass
Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability
CVSS 10.0
WordPress Woocommerce Wholesale Lead Capture plugin <= 2.0.3.1 - Arbitrary File Upload vulnerability
CVSS 9.0
Sneeit Framework <= 8.3 - Unauthenticated Remote Code Execution via sneeit_articles_pagination_callback
CVSS 9.8
WooCommerce Designer Pro <1.9.26 - RCE
CVSS 9.8
Contempo Themes Real Estate <3.5.2 - Privilege Escalation
CVSS 7.3
Contempo Themes Real Estate <3.5.2 - Privilege Escalation
CVSS 7.3
RestroPress 3.0.0-3.1.9.2 - Unauthenticated Authentication Bypass via REST API
CVSS 9.8
StoryChief <= 1.0.42 - Unauthenticated Arbitrary File Upload via Webhook REST-API Endpoint
CVSS 9.8
Eventin < 4.0.35 - Unauthenticated Privilege Escalation via SpeakerController Email Update
CVSS 8.8
AdForest theme <6.0.9 - Auth Bypass
CVSS 9.8
StoreKeeper <14.4.4 - Unrestricted Upload
CVSS 10.0