CVE-2026-68000 to CVE-2026-68999
19 CVEs with public proof-of-concept exploits.
- CVE-2026-680041 PoCAn issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote attacker to execute arbitrary code via RTMP publish…
- CVE-2026-680831 PoCksmbd: fix path resolution in ksmbd_vfs_kern_path_create
- CVE-2026-681383 PoCsnet/sched: serialize qdisc_rtab_list against concurrent get/put
- CVE-2026-683981 PoCppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF
- CVE-2026-684991 PoCre2: Global `String.prototype.match` with an empty-matchable pattern never advances → infinite loop with unbounded native memory growth…
- CVE-2026-685171 PoCGlances: REST API CORS Credentials Guard Uses Exact-Match Instead of Membership Test — Bypassed by Any Multi-Origin Allowlist Containing…
- CVE-2026-685181 PoCGlances: Command injection bypass of action-template sanitizer via cross-field shell-operator reconstruction
- CVE-2026-685191 PoCGlances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)
- CVE-2026-685201 PoCGlances: as_dict_secure() Value-Level Bypass Leaks Credentials in URL Values via /api/4/config
- CVE-2026-687491 PoCQuadratic regex backtracking in the html_sanitize_ex CSS scrubber allows CPU-exhaustion denial of service
- CVE-2026-687501 PoCQuadratic sibling re-flattening in the html_sanitize_ex traversal engine allows CPU-exhaustion denial of service
- CVE-2026-687711 PoCComfyUI 0.23.0 Unauthenticated RCE via LoadTrainingDataset Pickle Deserialization
- CVE-2026-688202 PoCsKEVWindows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
- CVE-2026-689221 PoCMobSF: Arbitrary File Read via Path Traversal in ZIP Uploads
- CVE-2026-689231 PoCMobSF: CSRF checks not enforced after Django migration
- CVE-2026-689241 PoCMobSF: Zip Bomb Denial of Service via Per-File Size Limit Bypass in ZIP/APK Extraction
- CVE-2026-689271 PoCMobSF: SSRF port restriction bypass in assetlinks_check
- CVE-2026-689291 PoCFastGPT: Unauthenticated WeChat channel hijack and denial of service via shareId-only authorization
- CVE-2026-689301 PoCRussh: Channel-scoped server callbacks can be reached without an open channel