exploitintel
84 exploits
Active since Mar 2022
ChromaDB >=1.0.0 - Unauthenticated Remote Code Execution via Malicious Model Repository
6 stars
VMware Fusion >=2025H2 <2026H1 - Privilege Escalation via SETUID Binary TOCTOU Race Condition
Everest Forms <= 3.4.3 - Unauthenticated PHP Object Injection via Form Entry Metadata
GitLab CE/EE <14.6.5-14.8.2 - Info Disclosure
Neat VNC: Buffer overflow due to oversized RSA public keys
3 stars
cPanel and WHM Authentication Bypass via Login Flow
OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the network
Apache Pinot < 1.3.0 - Authentication Bypass via Path Manipulation
OpenSSH < 10.3 - Always-Incorrect Control Flow Implementation in Authorized Keys Principals Handling
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters <= 4.9.1 - Unauthenticated SQL Injection via 'orderby' Parameter
Pi-hole Web <6.0 savesettings.php - Command Injection
Windows Kernel - Privilege Escalation
Red Hat Enterprise Linux 10 - Improper Access Control via systemd-machined RegisterMachine D-Bus Method
Kubernetes ingress-nginx auth-proxy-set-headers - Controller Code Execution
FreeScout <=1.8.206 - Authenticated RCE
WeKnora <0.2.12 - RCE via SQL Injection
WeKnora 0.2.5-0.2.9 - Unauthenticated Remote Code Execution via MCP stdio Configuration Validation Bypass
OpenClaw <2026.2.2 - Command Injection
xrdp < 0.10.5 - Unauthenticated Stack-based Buffer Overflow via User Domain Processing
Redis 8.2.0-8.2.2 - Stack-based Buffer Overflow via XACKDEL Command
HashiCorp Vault 0.8.0-1.16.22, 1.17.0-1.19.6, 1.20.0 - Authenticated RCE via Plugin Directory
Foundation Agents MetaGPT - Code Injection
Apache Airflow Providers Snowflake <6.4.0 - Special Element Injection
Apache CXF < 3.6.8 - Remote Code Execution via JMS Configuration
Apache Ranger <=2.7.0 - Auth Bypass