CVE-2026-24000 to CVE-2026-24999
52 CVEs with public proof-of-concept exploits.
- CVE-2026-240051 PoCOpenKruise PodProbeMarker is Vulnerable to SSRF via Unrestricted Host Field
- CVE-2026-240091 PoCDocling Core vulnerable to Remote Code Execution via unsafe PyYAML usage
- CVE-2026-240181 PoCA UNIX symbolic link (Symlink) following vulnerability in Fortinet FortiClientLinux 7.4.0 through 7.4.4, FortiClientLinux 7.2.2 through…
- CVE-2026-240311 PoCDovecot SQL based authentication can be bypassed when auth_username_chars is cleared by admin. This vulnerability allows bypassing…
- CVE-2026-240491 PoCwheel Allows Arbitrary File Permission Modification via Path Traversal
- CVE-2026-2406164 PoCsKEVtelnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.
- CVE-2026-241182 PoCsVM2 Sandbox Breakout Through __lookupGetter__
- CVE-2026-241201 PoCvm2: Sandbox Breakout Through Promise Species
- CVE-2026-241231 PoCBentoML has a Path Traversal via Bentofile Configuration
- CVE-2026-241241 PoCDragonfly Manager Job API Allows Unauthenticated Access
- CVE-2026-241251 PoCPath Traversal in @tinacms/graphql
- CVE-2026-241261 PoCWeblate has an argument injection in management console
- CVE-2026-241281 PoCXWiki Affected by Reflected Cross-Site Scripting (XSS) in Error Messages
- CVE-2026-241342 PoCsStudioCMS has an Authorization Bypass Through User-Controlled Key
- CVE-2026-241352 PoCsGogs vulnerable to arbitrary file deletion via path traversal in wiki page update
- CVE-2026-241361 PoCSaleor has an Insecure Direct Object Reference (IDOR) in GraphQL API
- CVE-2026-242061 PoCNVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of…
- CVE-2026-242072 PoCsNVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of…
- CVE-2026-242914 PoCsWindows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
- CVE-2026-242941 PoCWindows SMB Server Elevation of Privilege Vulnerability
- CVE-2026-243061 PoCAzure Front Door Elevation of Privilege Vulnerability
- CVE-2026-243321 PoCDiscord through 2026-01-16 allows gathering information about whether a user's client state is Invisible (and not actually offline)…
- CVE-2026-244152 PoCsOpenSTAManager affected by reflected XSS in modifica_iva.php via righe parameter
- CVE-2026-244162 PoCsOpenSTAManager has a Time-Based Blind SQL Injection in Article Pricing Module
- CVE-2026-244172 PoCsOpenSTAManager has a Time-Based Blind SQL Injection with Amplified Denial of Service
- CVE-2026-244183 PoCsOpenSTAManager has an SQL Injection vulnerability in the Scadenzario bulk operations module
- CVE-2026-244192 PoCsOpenSTAManager has an SQL Injection in the Prima Nota module
- CVE-2026-244201 PoCphpMyFAQ: Attachment download allowed without dlattachment right (broken access control)
- CVE-2026-244212 PoCsphpMyFAQ missing authorization exposes /api/setup/backup to any authenticated user
- CVE-2026-244221 PoCphpMyFAQ: Public API endpoints expose emails and invisible questions
- CVE-2026-244233 PoCsKEVSmarterTools SmarterMail < Build 9511 Unauthenticated RCE via ConnectToHub API
- CVE-2026-244441 PoCSDMC NE6037 Hardcoded Password via mgmt.php/npcmd.php
- CVE-2026-244511 PoCGitea fork synchronization can expose private parent repository data
- CVE-2026-244771 PoCAnythingLLM has key leak in `systemSettings.js`
- CVE-2026-244792 PoCsHUSTOJ has Arbitrary File Write (Zip Slip) in Problem Import Modules that leads to RCE
- CVE-2026-244861 PoCPython-Multipart has Arbitrary File Write via Non-Default Configuration
- CVE-2026-244901 PoCMobSF has Stored XSS via Manifest Analysis - Dialer Code Host Field
- CVE-2026-245141 PoCingress-nginx Admission Controller denial of service
- CVE-2026-245161 PoCA command injection vulnerability exists in DigitalOcean Droplet Agent through 1.3.2. The troubleshooting actioner component…
- CVE-2026-246011 PoCWordPress Penci Pay Writer plugin <= 1.5 - Cross Site Scripting (XSS) vulnerability
- CVE-2026-246882 PoCspypdf has possible Infinite Loop when processing outlines/bookmarks
- CVE-2026-247671 PoCNocoDB has Blind SSRF via Unvalidated HEAD Request in uploadViaURL Functionality
- CVE-2026-247801 PoCAutoGPT is Vulnerable to RCE via Disabled Block Execution
- CVE-2026-248341 PoCKata Container to Guest micro VM privilege escalation
- CVE-2026-248421 PoCnode-tar Vulnerable to Arbitrary File Creation/Overwrite via Hardlink Path Traversal
- CVE-2026-248492 PoCsOpenEMR Arbitrary File Read Vulnerability
- CVE-2026-248501 PoCML-DSA Signature Verification Accepts Signatures with Repeated Hint Indices
- CVE-2026-248541 PoCChurch CRM has SQL injection in PaddleNumEditor.php
- CVE-2026-248584 PoCsKEVAn Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through…
- CVE-2026-248941 PoCFrankenPHP leaks session data between requests in worker mode
- CVE-2026-248971 PoCAuthenticated Remote Code Execution via Arbitrary File Upload
- CVE-2026-249051 PoCInspektor Gadget has a Command Injection vulnerability in Makefile.build