Python Exploits

6,597 exploits tracked across all sources.

Sort: Activity Stars
CVE-2025-24054 EXPLOITDB MEDIUM python
Windows 10 1507-22H2 and Windows 11 22H2 - Unauthenticated Spoofing via NTLM File Path Control
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
by beatrizfn
CVSS 6.5
CVE-2026-2256 GITHUB MEDIUM python
ModelScope ms-agent <v1.6.0rc1 - Command Injection
A command injection vulnerability in ModelScope's ms-agent versions v1.6.0rc1 and earlier exists, allowing an attacker to execute arbitrary operating system commands through crafted prompt-derived input.
by Itamar-Yochpaz
1 stars
CVSS 6.5
CVE-2026-1340 GITHUB CRITICAL python
Ivanti Endpoint Manager Mobile - Code Injection
A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.
by MehdiLeDeaut
2 stars
CVSS 9.8
CVE-2025-58981 GITHUB MEDIUM python
Equalize Digital Accessibility Checker <1.31.0 - Info Disclosure
Missing Authorization vulnerability in Equalize Digital Accessibility Checker by Equalize Digital accessibility-checker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Accessibility Checker by Equalize Digital: from n/a through <= 1.31.0.
by certuscyber
3 stars
CVSS 5.4
CVE-2025-58976 GITHUB MEDIUM python
Equalize Digital Accessibility Checker <1.31.0 - Info Disclosure
Missing Authorization vulnerability in Equalize Digital Accessibility Checker by Equalize Digital accessibility-checker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Accessibility Checker by Equalize Digital: from n/a through <= 1.31.0.
by certuscyber
3 stars
CVSS 4.3
CVE-2025-48272 GITHUB MEDIUM python
WP Job Portal <2.3.2 - Info Disclosure
Missing Authorization vulnerability in wpjobportal WP Job Portal wp-job-portal allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Job Portal: from n/a through <= 2.3.2.
by certuscyber
3 stars
CVSS 5.3
CVE-2025-30975 GITHUB HIGH python
SaifuMak Add Custom Codes <4.80 - Code Injection
Improper Control of Generation of Code ('Code Injection') vulnerability in SaifuMak Add Custom Codes add-custom-codes allows Code Injection.This issue affects Add Custom Codes: from n/a through <= 4.80.
by certuscyber
3 stars
CVSS 7.5
CVE-2025-26935 GITHUB HIGH python
WP Job Portal <= 2.2.8 - Path Traversal and Local File Inclusion via Dot-Slash Sequence
Path Traversal: '.../...//' vulnerability in wpjobportal WP Job Portal wp-job-portal allows PHP Local File Inclusion.This issue affects WP Job Portal: from n/a through <= 2.2.8.
by certuscyber
3 stars
CVSS 7.5
CVE-2025-10380 GITHUB HIGH python
Advanced Views - Server-Side Template Injection
The Advanced Views – Display Posts, Custom Fields, and More plugin for WordPress is vulnerable to Server-Side Template Injection in all versions up to, and including, 3.7.19. This is due to insufficient input sanitization and lack of access control when processing custom Twig templates in the Model panel. This makes it possible for authenticated attackers, with author-level access or higher, to execute arbitrary PHP code and commands on the server.
by certuscyber
3 stars
CVSS 8.8
CVE-2025-0822 GITHUB MEDIUM python
Bit Assist < 1.5.3 - Authenticated Path Traversal via fileID Parameter
Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.5.2 via the fileID Parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to read the contents of arbitrary files on the server, which can contain sensitive information.
by certuscyber
3 stars
CVSS 6.5
CVE-2025-0821 GITHUB MEDIUM python
Bit Assist < 1.5.3 - Authenticated Time-Based SQL Injection via 'id' Parameter
Bit Assist plugin for WordPress is vulnerable to time-based SQL Injection via the ‘id’ parameter in all versions up to, and including, 1.5.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Subscriber-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
by certuscyber
3 stars
CVSS 6.5
CVE-2025-0394 GITHUB HIGH python
WordPress Groundhogg <= 3.7.3.5 - Author File Upload Code Execution
The WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the gh_big_file_upload() function in all versions up to, and including, 3.7.3.5. This makes it possible for authenticated attackers, with Author-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
by certuscyber
3 stars
CVSS 8.8
CVE-2024-9224 GITHUB MEDIUM python
Hello World < 2.1.1 - Authenticated Arbitrary File Read via hello_world_lyric()
The Hello World plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 2.1.1 via the hello_world_lyric() function. This makes it possible for authenticated attackers, with subscriber-level access and above, to read the contents of arbitrary files on the server, which can contain sensitive information.
by certuscyber
3 stars
CVSS 6.5
CVE-2024-8699 GITHUB HIGH python
Z-Downloads WP <1.11.5 - Privilege Escalation
The Z-Downloads WordPress plugin before 1.11.5 does not properly validate files uploaded, allowing high privilege users such as admin to upload arbitrary files on the server even when they should not be allowed to (for example in multisite setup)
by certuscyber
3 stars
CVSS 7.2
CVE-2024-8252 GITHUB HIGH python
Clean Login <1.14.5 - Code Injection
The Clean Login plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.14.5 via the 'template' attribute of the clean-login-register shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.
by certuscyber
3 stars
CVSS 8.8
CVE-2024-5637 GITHUB HIGH python
WordPress Market Exporter <2.0.19 - Info Disclosure
The Market Exporter plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'remove_files' function in all versions up to, and including, 2.0.19. This makes it possible for authenticated attackers, with Subscriber-level access and above, to use path traversal to delete arbitrary files on the server.
by certuscyber
3 stars
CVSS 7.5
CVE-2024-38788 GITHUB HIGH python
UiPress lite < 3.4.06 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bởi Admin 2020 UiPress lite allows SQL Injection.This issue affects UiPress lite: from n/a through 3.4.06.
by certuscyber
3 stars
CVSS 7.6
CVE-2024-38755 GITHUB HIGH python
Designinvento DirectoryPress <3.6.10 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Designinvento DirectoryPress allows SQL Injection.This issue affects DirectoryPress: from n/a through 3.6.10.
by certuscyber
3 stars
CVSS 8.5
CVE-2024-38692 GITHUB HIGH python
Spiffy Calendar <4.9.11 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spiffy Plugins Spiffy Calendar allows SQL Injection.This issue affects Spiffy Calendar: from n/a through 4.9.11.
by certuscyber
3 stars
CVSS 7.6
CVE-2024-34555 GITHUB CRITICAL python
URBAN BASE Z-Downloads <1.11.3 - Unrestricted Upload
Unrestricted Upload of File with Dangerous Type vulnerability in URBAN BASE Z-Downloads.This issue affects Z-Downloads: from n/a through 1.11.3.
by certuscyber
3 stars
CVSS 10.0
CVE-2024-32139 GITHUB HIGH python
Podlove Podcast Publisher <4.0.12 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n/a through 4.0.12.
by certuscyber
3 stars
CVSS 8.5
CVE-2024-13873 GITHUB MEDIUM python
WP Job Portal < 2.2.9 - Authenticated Insecure Direct Object Reference via deleteUserPhoto Function
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.2.8 via the deleteUserPhoto() function due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Subscriber-level access and above, to remove profile photos from users accounts. Please note that this does not officially delete the file.
by certuscyber
3 stars
CVSS 4.3
CVE-2024-13428 GITHUB MEDIUM python
WP Job Portal <2.2.6 - Insecure Direct Object Reference
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.2.6 via the deleteCompanyLogo() due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to delete arbitrary company logos.
by certuscyber
3 stars
CVSS 5.3
CVE-2024-13425 GITHUB MEDIUM python
WP Job Portal <2.2.6 - Insecure Direct Object Reference
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.2.6 via the enforcedelete() function due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Employer-level access and above, to delete other users companies.
by certuscyber
3 stars
CVSS 4.3
CVE-2024-13372 GITHUB MEDIUM python
WP Job Portal <2.2.6 - Insecure Direct Object Reference
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.2.6 via the getresumefiledownloadbyid() and getallresumefiles() functions due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to download users resumes without the appropriate authorization to do so.
by certuscyber
3 stars
CVSS 5.3