<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Exploit-DB.com RSS Feed</title>
        <link>https://www.exploit-db.com</link>
        <atom:link href="https://www.exploit-db.com/rss.xml" rel="self" type="application/rss+xml" />
        <language>en-us</language>
        <description>The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.</description>
        <pubDate>Wed, 17 Jun 2026 21:00:03 +0000</pubDate>
        <lastBuildDate>Wed, 17 Jun 2026 21:00:03 +0000</lastBuildDate>
        <copyright></copyright>
         <item>
            <title>[webapps] OpenEMR 7.0.2 - Arbitrary File Read</title>
            <link>https://www.exploit-db.com/exploits/52610</link>
            <description>OpenEMR 7.0.2 - Arbitrary File Read</description>
            <pubDate>Mon, 08 Jun 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52610</guid>
        </item>
         <item>
            <title>[webapps] WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52609</link>
            <description>WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection</description>
            <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52609</guid>
        </item>
         <item>
            <title>[webapps] Drupal Core 10.5.5 - Error-Based SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52608</link>
            <description>Drupal Core 10.5.5 - Error-Based SQL Injection</description>
            <pubDate>Mon, 01 Jun 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52608</guid>
        </item>
         <item>
            <title>[webapps] WordPress OrderConvo 14 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52607</link>
            <description>WordPress OrderConvo 14 - Path Traversal</description>
            <pubDate>Mon, 01 Jun 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52607</guid>
        </item>
         <item>
            <title>[remote] Notepad++ 8.9.6 - Arbitrary Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52606</link>
            <description>Notepad++ 8.9.6 - Arbitrary Code Execution</description>
            <pubDate>Sat, 30 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52606</guid>
        </item>
         <item>
            <title>[webapps] YAMCS yamcs-core  5.12.7 - No Rate Limiting</title>
            <link>https://www.exploit-db.com/exploits/52605</link>
            <description>YAMCS yamcs-core  5.12.7 - No Rate Limiting</description>
            <pubDate>Sat, 30 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52605</guid>
        </item>
         <item>
            <title>[webapps] YAMCS yamcs-core  5.12.7 - User Enumeration</title>
            <link>https://www.exploit-db.com/exploits/52604</link>
            <description>YAMCS yamcs-core  5.12.7 - User Enumeration</description>
            <pubDate>Sat, 30 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52604</guid>
        </item>
         <item>
            <title>[webapps] YAMCS yamcs-core  5.12.7 - LDAP Injection</title>
            <link>https://www.exploit-db.com/exploits/52603</link>
            <description>YAMCS yamcs-core  5.12.7 - LDAP Injection</description>
            <pubDate>Sat, 30 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52603</guid>
        </item>
         <item>
            <title>[remote] Microsoft - NTLMv2 Hash Capture</title>
            <link>https://www.exploit-db.com/exploits/52601</link>
            <description>Microsoft - NTLMv2 Hash Capture</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52601</guid>
        </item>
         <item>
            <title>[webapps] MikroORM   7.0.13 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52600</link>
            <description>MikroORM   7.0.13 - SQL Injection</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52600</guid>
        </item>
         <item>
            <title>[webapps] Prodigy Commerce 3.3.0 - Local File Inclusion</title>
            <link>https://www.exploit-db.com/exploits/52598</link>
            <description>Prodigy Commerce 3.3.0 - Local File Inclusion</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52598</guid>
        </item>
         <item>
            <title>[webapps] Langflow 1.3.0 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52597</link>
            <description>Langflow 1.3.0 - Remote Code Execution</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52597</guid>
        </item>
         <item>
            <title>[webapps] Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52596</link>
            <description>Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52596</guid>
        </item>
         <item>
            <title>[local] ImageMagick - Infinite Loop in the MIFF decoder can lead to CPU exhaustion</title>
            <link>https://www.exploit-db.com/exploits/52595</link>
            <description>ImageMagick - Infinite Loop in the MIFF decoder can lead to CPU exhaustion</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52595</guid>
        </item>
         <item>
            <title>[local] ZTE Routers  - Unauthenticated Denial of Service</title>
            <link>https://www.exploit-db.com/exploits/52594</link>
            <description>ZTE Routers  - Unauthenticated Denial of Service</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52594</guid>
        </item>
         <item>
            <title>[local] ZTE ZXHN H188A V6 - Authentication Bypass</title>
            <link>https://www.exploit-db.com/exploits/52593</link>
            <description>ZTE ZXHN H188A V6 - Authentication Bypass</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52593</guid>
        </item>
         <item>
            <title>[local] ZTE H298A / H108N - Unauthenticated Credential Exposure</title>
            <link>https://www.exploit-db.com/exploits/52592</link>
            <description>ZTE H298A / H108N - Unauthenticated Credential Exposure</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52592</guid>
        </item>
         <item>
            <title>[local] Linux Kernel -  Local Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52591</link>
            <description>Linux Kernel -  Local Privilege Escalation</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52591</guid>
        </item>
         <item>
            <title>[webapps] MixPHP Framework 2.2.17 - Unsafe Deserialization Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52590</link>
            <description>MixPHP Framework 2.2.17 - Unsafe Deserialization Remote Code Execution</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52590</guid>
        </item>
         <item>
            <title>[remote] Wing FTP Server 8.1.3 - Authenticated Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52589</link>
            <description>Wing FTP Server 8.1.3 - Authenticated Remote Code Execution</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52589</guid>
        </item>
         <item>
            <title>[webapps] CubeCart &lt; 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)</title>
            <link>https://www.exploit-db.com/exploits/52588</link>
            <description>CubeCart &lt; 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52588</guid>
        </item>
         <item>
            <title>[remote] strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow</title>
            <link>https://www.exploit-db.com/exploits/52587</link>
            <description>strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52587</guid>
        </item>
         <item>
            <title>[dos] strongSwan 5.9.13 - DoS</title>
            <link>https://www.exploit-db.com/exploits/52586</link>
            <description>strongSwan 5.9.13 - DoS</description>
            <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52586</guid>
        </item>
         <item>
            <title>[local] Linux Kernel - Local Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52585</link>
            <description>Linux Kernel - Local Privilege Escalation</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52585</guid>
        </item>
         <item>
            <title>[webapps] Casdoor 3.54.1 - Arbitrary File Write via Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52584</link>
            <description>Casdoor 3.54.1 - Arbitrary File Write via Path Traversal</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52584</guid>
        </item>
         <item>
            <title>[webapps] EspoCRM 9.3.3 -  SSRF</title>
            <link>https://www.exploit-db.com/exploits/52583</link>
            <description>EspoCRM 9.3.3 -  SSRF</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52583</guid>
        </item>
         <item>
            <title>[webapps] scramble - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52582</link>
            <description>scramble - Remote Code Execution</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52582</guid>
        </item>
         <item>
            <title>[hardware] MeiG Smart FORGE_SLT711 - OS Command Injection</title>
            <link>https://www.exploit-db.com/exploits/52581</link>
            <description>MeiG Smart FORGE_SLT711 - OS Command Injection</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52581</guid>
        </item>
         <item>
            <title>[local] Realtek rtl819x  - Local Privilege</title>
            <link>https://www.exploit-db.com/exploits/52580</link>
            <description>Realtek rtl819x  - Local Privilege</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52580</guid>
        </item>
         <item>
            <title>[webapps] OpenCATS 0.9.7.4 - SQL Injection</title>
            <link>https://www.exploit-db.com/exploits/52579</link>
            <description>OpenCATS 0.9.7.4 - SQL Injection</description>
            <pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52579</guid>
        </item>
         <item>
            <title>[webapps] Grav CMS 2.0.0-beta.2 -  Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52578</link>
            <description>Grav CMS 2.0.0-beta.2 -  Remote Code Execution</description>
            <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52578</guid>
        </item>
         <item>
            <title>[webapps] Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service</title>
            <link>https://www.exploit-db.com/exploits/52577</link>
            <description>Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service</description>
            <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52577</guid>
        </item>
         <item>
            <title>[hardware] D-Link DSL2600U - 'rom-0' Admin Password Disclosure</title>
            <link>https://www.exploit-db.com/exploits/52576</link>
            <description>D-Link DSL2600U - 'rom-0' Admin Password Disclosure</description>
            <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52576</guid>
        </item>
         <item>
            <title>[webapps] Wordpress Temporary Login Plugin  1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover</title>
            <link>https://www.exploit-db.com/exploits/52575</link>
            <description>Wordpress Temporary Login Plugin  1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover</description>
            <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52575</guid>
        </item>
         <item>
            <title>[webapps] cPanel - CRLF Injection</title>
            <link>https://www.exploit-db.com/exploits/52574</link>
            <description>cPanel - CRLF Injection</description>
            <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52574</guid>
        </item>
         <item>
            <title>[local] Linux Kernel 6.8 - Local Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52573</link>
            <description>Linux Kernel 6.8 - Local Privilege Escalation</description>
            <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52573</guid>
        </item>
         <item>
            <title>[webapps] Cockpit 359 - RCE</title>
            <link>https://www.exploit-db.com/exploits/52572</link>
            <description>Cockpit 359 - RCE</description>
            <pubDate>Thu, 21 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52572</guid>
        </item>
         <item>
            <title>[webapps] BookStack 25.12.1 - Denial of Service</title>
            <link>https://www.exploit-db.com/exploits/52571</link>
            <description>BookStack 25.12.1 - Denial of Service</description>
            <pubDate>Thu, 21 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52571</guid>
        </item>
         <item>
            <title>[local] Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path</title>
            <link>https://www.exploit-db.com/exploits/52570</link>
            <description>Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path</description>
            <pubDate>Thu, 21 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52570</guid>
        </item>
         <item>
            <title>[webapps] solaredge - (CSRF-OOB-Injection)</title>
            <link>https://www.exploit-db.com/exploits/52569</link>
            <description>solaredge - (CSRF-OOB-Injection)</description>
            <pubDate>Thu, 21 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52569</guid>
        </item>
         <item>
            <title>[webapps] FUXA  1.2.9 -  RCE</title>
            <link>https://www.exploit-db.com/exploits/52568</link>
            <description>FUXA  1.2.9 -  RCE</description>
            <pubDate>Thu, 21 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52568</guid>
        </item>
         <item>
            <title>[local] Windows Snipping Tool - NTLMv2 Hash Hijack</title>
            <link>https://www.exploit-db.com/exploits/52567</link>
            <description>Windows Snipping Tool - NTLMv2 Hash Hijack</description>
            <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52567</guid>
        </item>
         <item>
            <title>[local] Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing</title>
            <link>https://www.exploit-db.com/exploits/52566</link>
            <description>Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing</description>
            <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52566</guid>
        </item>
         <item>
            <title>[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52565</link>
            <description>Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution</description>
            <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52565</guid>
        </item>
         <item>
            <title>[webapps] WordPress Plugin Supsystic Contact Form 1.7.36 - SSTI</title>
            <link>https://www.exploit-db.com/exploits/52564</link>
            <description>WordPress Plugin Supsystic Contact Form 1.7.36 - SSTI</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52564</guid>
        </item>
         <item>
            <title>[webapps] Apache HertzBeat 1.8.0 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52563</link>
            <description>Apache HertzBeat 1.8.0 - Remote Code Execution</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52563</guid>
        </item>
         <item>
            <title>[webapps] ePati Antikor NGFW 2.0.1301 -  Authentication Bypass</title>
            <link>https://www.exploit-db.com/exploits/52562</link>
            <description>ePati Antikor NGFW 2.0.1301 -  Authentication Bypass</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52562</guid>
        </item>
         <item>
            <title>[webapps] PJPROJECT 2.16 - Heap Bufferoverflow</title>
            <link>https://www.exploit-db.com/exploits/52561</link>
            <description>PJPROJECT 2.16 - Heap Bufferoverflow</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52561</guid>
        </item>
         <item>
            <title>[webapps] Ninja Forms Uploads - Unauthenticated PHP File Upload</title>
            <link>https://www.exploit-db.com/exploits/52560</link>
            <description>Ninja Forms Uploads - Unauthenticated PHP File Upload</description>
            <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52560</guid>
        </item>
         <item>
            <title>[webapps] glances 4.5.2 - command injection</title>
            <link>https://www.exploit-db.com/exploits/52559</link>
            <description>glances 4.5.2 - command injection</description>
            <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52559</guid>
        </item>
    </channel>
</rss>