XiaomingX
190 exploits
Active since Oct 2024
Notepad-plus-plus Notepad++ < 8.8.9 - Download Without Integrity Check
Rubygems Camaleon Cms < 2.9.1 - Privilege Escalation
10 stars
Sudo <1.9.17p1 - Privilege Escalation
Uxper Sala - Startup & SaaS WordPress Theme <=1.1.4 - Privilege Escalation via Account Takeover
Wing FTP Server NULL-byte Authentication Bypass (CVE-2025-47812)
Pterodactyl Panel < 1.11.11 - Code Injection
Google Chrome < 137.0.7151.68 - Out-of-Bounds Write
Fit2cloud 1panel < 2.0.6 - Command Injection
React Server Components <19.2.0 - RCE
Veeam Backup & Replication < 13.0.1.1071 - Command Injection
vaahcms <2.3.1 - XSS
Oracle E-Business Suite CVE-2025-61882 RCE
Fortinet Fortisiem < 7.1.9 - OS Command Injection
Django < 4.2.26 - SQL Injection
Pypi Langgraph-checkpoint-sqlite < 3.0.1 - SQL Injection
Axigen Mail Server <10.5.57 - Privilege Escalation
Gogs < 0.13.3 - Path Traversal
Truelysell Core <1.8.7 - Privilege Escalation
Google Chrome < 143.0.7499.192 - Missing Authorization
User Language Switch <1.6.10 - SSRF
Langflow - RCE
Ivanti Endpoint Manager Mobile (EPMM) unauthenticated RCE
Midi-Synth <1.1.0 - Unauthenticated RCE
Neo4j < 2026.01 - XSS
WPvivid Backup & Migration <0.9.123 - Unauthenticated RCE