SecureWithUmer
74 exploits
Active since Jan 2026
Windows Notepad App - Command Injection
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
CVSS 9.1
Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability
CVSS 10.0
Palo Alto PAN-OS User-ID Authentication Portal - Unauthenticated Root RCE
CVSS 9.8
Langflow validate exec_globals - Unauthenticated Root Code Execution
CVSS 9.8
Keras 3.0.0-3.13.0 - Denial of Service via HDF5 Weight Loading
CVSS 7.5
Ivanti Sentry - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVSS 10.0
Slider Future <= 1.0.5 - Unauthenticated Arbitrary File Upload via slider_future_handle_image_upload
CVSS 9.8
WordPress User Registration & Membership Plugin <=5.1.2 - Privilege Escalation
CVSS 9.8
Essential Addons for Elementor - WordPress <6.5.9 - XSS
CVSS 6.4
BeyondTrust Privileged Remote Access < 25.1 and Remote Support < 25.3.2 - Unauthenticated Remote Code Execution
CVSS 9.8
GitHub Enterprise Server - Auth Bypass
CVSS 6.5
Cisco Unified Communications Manager - RCE
CVSS 8.2
Cisco Secure Firewall Management Center 6.4.0.13-6.4.0.18, 7.0.0 - RCE via Java Deserialization
CVSS 10.0
Palo Alto Networks PAN-OS Unauthenticated Authentication Bypass via Cloud Authentication Service
CVSS 8.1
macOS < 26.3.2 - Same Origin Policy Bypass via Navigation API
CVSS 5.4
iOS and iPadOS < 18.7.7 - Use-After-Free
CVSS 7.1
Microsoft 365 Apps and Office - Security Feature Bypass via Untrusted Input
CVSS 7.8
Fortinet FortiClientEMS <7.4.4 - SQL Injection
CVSS 9.8
n8n 1.65.0-1.120.9 - Unauthenticated Arbitrary File Read via Form-Based Workflow Execution
CVSS 10.0
Oracle HTTP Server & WebLogic Proxy Plug-in 12.2.1.4.0/14.1.1.0.0/14.1.2.0.0 - Unauthenticated Access Control
CVSS 10.0
Enhancesoft osTicket 1.17.0-1.17.6 and 1.18.0-1.18.2 - Unauthenticated Arbitrary File Read via Ticket PDF Export
CVSS 7.5
Openeclass < 4.1 - Unrestricted File Upload
CVSS 7.2
UniFi Network Application 9.0.118-10.1.89, 10.2.97 - Path Traversal
CVSS 10.0
SpEL Injection via Unescaped Filter Key in SimpleVectorStore Leads to Remote Code Execution
CVSS 9.8