Yuri08loveElaina
16 exploits
Active since Jun 2021
Redis < 6.2.20, 8.2.1-8.2.2 - Authenticated Use-After-Free via Lua Script Garbage Collector Manipulation
Dassault Systmes City Referential Manager Release 3DEXPERIENCE R2025x - Stored Cross-Site Scripting
Windows 10 1507-24H2 and Windows Server 2008-2012 - Authenticated Privilege Escalation via Win32K ICOMP Double Free
ThrottleStop.sys - Privilege Escalation
14 stars
Cisco Identity Services Engine - Authenticated Information Disclosure and Configuration Modification via API
Cisco Identity Services Engine - Authenticated Remote Code Execution via Insecure Java Deserialization
Erlang OTP Pre-Auth RCE Scanner and Exploit
Confluence - Remote Code Execution
Roundcube Webmail < 1.5.10 and 1.6.x < 1.6.11 - Authenticated Remote Code Execution via PHP Object Deserialization
Windows 10 1507-22H2 and Windows 11 22H2 - Unauthenticated Spoofing via NTLM File Path Control
cPanel and WHM Authentication Bypass via Login Flow
CVSS 9.8
CVE-2025-40214
NOMISEC
Linux Kernel - Use-After-Free in AF_UNIX Garbage Collection
Apache Tomcat 9.0.0-9.0.97, 10.1.0-M1-10.1.33, 11.0.0-M1-11.0.1 - RCE via TOCTOU Race Condition in JSP Compilation
CVSS 9.8
Apache Tomcat 9.0.0-9.0.97, 10.1.0-M1-10.1.33, 11.0.0-M1-11.0.1 - RCE via TOCTOU Race Condition in JSP Compilation
CVSS 9.8
Google Chrome <111.0.5563.64 - CSRF
CVSS 4.3
ScadaBR < 0.9.1 - Authenticated Arbitrary JSP File Upload via view_edit.shtm
CVSS 8.8