SnailSploit
9 exploits
Active since Sep 2025
Lemmy's Activitypub-Federation has SSRF via 0.0.0.0 bypass in activitypub-federation-rust v4_is_invalid()
CVSS 6.5
Apache Airflow Provider for Databricks: TLS Certificate Verification Disabled in Databricks Provider K8s Token Exchange
CVSS 4.8
CairoSVG - DoS
CVSS 7.5
ingress-nginx - Code Injection
CVSS 8.8
Document Library Lite <1.1.6 - Auth Bypass
CVSS 5.3
Welcart WordPress <1.2.5 - CSRF
CVSS 4.3
CatFolders - Time-Based SQL Injection
CVSS 6.5
ACF to REST API <3.3.4 - Insecure Direct Object Reference
CVSS 4.3
Omnipress plugin - XSS
CVSS 6.4