<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Exploit-DB.com RSS Feed</title>
        <link>https://www.exploit-db.com</link>
        <atom:link href="https://www.exploit-db.com/rss.xml" rel="self" type="application/rss+xml" />
        <language>en-us</language>
        <description>The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.</description>
        <pubDate>Sun, 17 May 2026 17:30:03 +0000</pubDate>
        <lastBuildDate>Sun, 17 May 2026 17:30:03 +0000</lastBuildDate>
        <copyright></copyright>
         <item>
            <title>[local] Windows Snipping Tool - NTLMv2 Hash Hijack</title>
            <link>https://www.exploit-db.com/exploits/52567</link>
            <description>Windows Snipping Tool - NTLMv2 Hash Hijack</description>
            <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52567</guid>
        </item>
         <item>
            <title>[local] Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing</title>
            <link>https://www.exploit-db.com/exploits/52566</link>
            <description>Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing</description>
            <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52566</guid>
        </item>
         <item>
            <title>[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52565</link>
            <description>Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution</description>
            <pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52565</guid>
        </item>
         <item>
            <title>[webapps] WordPress Plugin Supsystic Contact Form 1.7.36 - SSTI</title>
            <link>https://www.exploit-db.com/exploits/52564</link>
            <description>WordPress Plugin Supsystic Contact Form 1.7.36 - SSTI</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52564</guid>
        </item>
         <item>
            <title>[webapps] Apache HertzBeat 1.8.0 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52563</link>
            <description>Apache HertzBeat 1.8.0 - Remote Code Execution</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52563</guid>
        </item>
         <item>
            <title>[webapps] ePati Antikor NGFW 2.0.1301 -  Authentication Bypass</title>
            <link>https://www.exploit-db.com/exploits/52562</link>
            <description>ePati Antikor NGFW 2.0.1301 -  Authentication Bypass</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52562</guid>
        </item>
         <item>
            <title>[webapps] PJPROJECT 2.16 - Heap Bufferoverflow</title>
            <link>https://www.exploit-db.com/exploits/52561</link>
            <description>PJPROJECT 2.16 - Heap Bufferoverflow</description>
            <pubDate>Thu, 14 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52561</guid>
        </item>
         <item>
            <title>[webapps] Ninja Forms Uploads - Unauthenticated PHP File Upload</title>
            <link>https://www.exploit-db.com/exploits/52560</link>
            <description>Ninja Forms Uploads - Unauthenticated PHP File Upload</description>
            <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52560</guid>
        </item>
         <item>
            <title>[webapps] glances 4.5.2 - command injection</title>
            <link>https://www.exploit-db.com/exploits/52559</link>
            <description>glances 4.5.2 - command injection</description>
            <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52559</guid>
        </item>
         <item>
            <title>[webapps] coreruleset 4.21.0 - Firewall Bypass</title>
            <link>https://www.exploit-db.com/exploits/52558</link>
            <description>coreruleset 4.21.0 - Firewall Bypass</description>
            <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52558</guid>
        </item>
         <item>
            <title>[webapps] Flowise &lt; 3.0.5 - Missing Authentication for Critical Function</title>
            <link>https://www.exploit-db.com/exploits/52557</link>
            <description>Flowise &lt; 3.0.5 - Missing Authentication for Critical Function</description>
            <pubDate>Wed, 13 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52557</guid>
        </item>
         <item>
            <title>[remote] telnetd 2.7 - Buffer Overflow</title>
            <link>https://www.exploit-db.com/exploits/52556</link>
            <description>telnetd 2.7 - Buffer Overflow</description>
            <pubDate>Thu, 07 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52556</guid>
        </item>
         <item>
            <title>[webapps] Ghost CMS 6.19.0 - SQLi</title>
            <link>https://www.exploit-db.com/exploits/52555</link>
            <description>Ghost CMS 6.19.0 - SQLi</description>
            <pubDate>Thu, 07 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52555</guid>
        </item>
         <item>
            <title>[webapps] LuaJIT 2.1.1774638290 - Arbitrary Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52554</link>
            <description>LuaJIT 2.1.1774638290 - Arbitrary Code Execution</description>
            <pubDate>Thu, 07 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52554</guid>
        </item>
         <item>
            <title>[webapps] Bludit CMS 3.18.4 -  RCE</title>
            <link>https://www.exploit-db.com/exploits/52553</link>
            <description>Bludit CMS 3.18.4 -  RCE</description>
            <pubDate>Thu, 07 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52553</guid>
        </item>
         <item>
            <title>[local] NocoBase  2.0.27 - VM Sandbox Escape</title>
            <link>https://www.exploit-db.com/exploits/52552</link>
            <description>NocoBase  2.0.27 - VM Sandbox Escape</description>
            <pubDate>Thu, 07 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52552</guid>
        </item>
         <item>
            <title>[webapps] ThingsBoard IoT Platform 4.2.0 - Server-Side Request Forgery (SSRF)</title>
            <link>https://www.exploit-db.com/exploits/52551</link>
            <description>ThingsBoard IoT Platform 4.2.0 - Server-Side Request Forgery (SSRF)</description>
            <pubDate>Thu, 07 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52551</guid>
        </item>
         <item>
            <title>[local] Linux Kernel proc_readdir_de() 6.18-rc5 - Local Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52550</link>
            <description>Linux Kernel proc_readdir_de() 6.18-rc5 - Local Privilege Escalation</description>
            <pubDate>Mon, 04 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52550</guid>
        </item>
         <item>
            <title>[local] Linux nf_tables 6.19.3 - Local Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52549</link>
            <description>Linux nf_tables 6.19.3 - Local Privilege Escalation</description>
            <pubDate>Mon, 04 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52549</guid>
        </item>
         <item>
            <title>[hardware] Linksys E1200 2.0.04 - Authenticated Stack Buffer Overflow (RCE)</title>
            <link>https://www.exploit-db.com/exploits/52548</link>
            <description>Linksys E1200 2.0.04 - Authenticated Stack Buffer Overflow (RCE)</description>
            <pubDate>Mon, 04 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52548</guid>
        </item>
         <item>
            <title>[webapps] MindsDB  25.9.1.1 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52547</link>
            <description>MindsDB  25.9.1.1 - Path Traversal</description>
            <pubDate>Mon, 04 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52547</guid>
        </item>
         <item>
            <title>[local] Windows 11 24H2 - Local Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52546</link>
            <description>Windows 11 24H2 - Local Privilege Escalation</description>
            <pubDate>Mon, 04 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52546</guid>
        </item>
         <item>
            <title>[webapps] Traccar GPS Tracking System 6.11.1 - Cross-Site WebSocket Hijacking (CSWSH)</title>
            <link>https://www.exploit-db.com/exploits/52545</link>
            <description>Traccar GPS Tracking System 6.11.1 - Cross-Site WebSocket Hijacking (CSWSH)</description>
            <pubDate>Mon, 04 May 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52545</guid>
        </item>
         <item>
            <title>[webapps] FUXA 1.2.8 - Authentication Bypass + RCE Exploit</title>
            <link>https://www.exploit-db.com/exploits/52544</link>
            <description>FUXA 1.2.8 - Authentication Bypass + RCE Exploit</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52544</guid>
        </item>
         <item>
            <title>[webapps] Python-Multipart 0.0.22 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52543</link>
            <description>Python-Multipart 0.0.22 - Path Traversal</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52543</guid>
        </item>
         <item>
            <title>[local] Google Chrome  145.0.7632.75 - CSSFontFeatureValuesMap</title>
            <link>https://www.exploit-db.com/exploits/52542</link>
            <description>Google Chrome  145.0.7632.75 - CSSFontFeatureValuesMap</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52542</guid>
        </item>
         <item>
            <title>[local] Windows 11 23H2 - Denial of Service (DoS)</title>
            <link>https://www.exploit-db.com/exploits/52541</link>
            <description>Windows 11 23H2 - Denial of Service (DoS)</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52541</guid>
        </item>
         <item>
            <title>[webapps] Repetier-Server 1.4.10 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52540</link>
            <description>Repetier-Server 1.4.10 - Path Traversal</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52540</guid>
        </item>
         <item>
            <title>[webapps] HUSTOJ Zip-Slip v26.01.24 -  RCE</title>
            <link>https://www.exploit-db.com/exploits/52539</link>
            <description>HUSTOJ Zip-Slip v26.01.24 -  RCE</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52539</guid>
        </item>
         <item>
            <title>[webapps] BusyBox 1.37.0 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52538</link>
            <description>BusyBox 1.37.0 - Path Traversal</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52538</guid>
        </item>
         <item>
            <title>[local] Windows 11 25H2  - Heap Overflow</title>
            <link>https://www.exploit-db.com/exploits/52537</link>
            <description>Windows 11 25H2  - Heap Overflow</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52537</guid>
        </item>
         <item>
            <title>[webapps] JUNG Smart Visu Server 1.1.1050 - Dos</title>
            <link>https://www.exploit-db.com/exploits/52536</link>
            <description>JUNG Smart Visu Server 1.1.1050 - Dos</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52536</guid>
        </item>
         <item>
            <title>[webapps] SumatraPDF 3.5.2 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52535</link>
            <description>SumatraPDF 3.5.2 - Remote Code Execution</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52535</guid>
        </item>
         <item>
            <title>[webapps] NiceGUI 3.6.1 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52534</link>
            <description>NiceGUI 3.6.1 - Path Traversal</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52534</guid>
        </item>
         <item>
            <title>[webapps] Frigate NVR 0.16.3 - Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52533</link>
            <description>Frigate NVR 0.16.3 - Remote Code Execution</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52533</guid>
        </item>
         <item>
            <title>[webapps] Js2Py 0.74 -  RCE</title>
            <link>https://www.exploit-db.com/exploits/52532</link>
            <description>Js2Py 0.74 -  RCE</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52532</guid>
        </item>
         <item>
            <title>[webapps] Camaleon CMS  v2.9.0 - Path Traversal</title>
            <link>https://www.exploit-db.com/exploits/52531</link>
            <description>Camaleon CMS  v2.9.0 - Path Traversal</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52531</guid>
        </item>
         <item>
            <title>[webapps] Cybersecurity AI (CAI) Framework 0.5.10 - Command Injection</title>
            <link>https://www.exploit-db.com/exploits/52530</link>
            <description>Cybersecurity AI (CAI) Framework 0.5.10 - Command Injection</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52530</guid>
        </item>
         <item>
            <title>[webapps] Erugo  0.2.14 - Remote Code Execution (RCE)</title>
            <link>https://www.exploit-db.com/exploits/52529</link>
            <description>Erugo  0.2.14 - Remote Code Execution (RCE)</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52529</guid>
        </item>
         <item>
            <title>[webapps] deephas 1.0.7 - Prototype Pollution</title>
            <link>https://www.exploit-db.com/exploits/52528</link>
            <description>deephas 1.0.7 - Prototype Pollution</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52528</guid>
        </item>
         <item>
            <title>[webapps] SUSE Manager 4.3.15 - Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52527</link>
            <description>SUSE Manager 4.3.15 - Code Execution</description>
            <pubDate>Thu, 30 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52527</guid>
        </item>
         <item>
            <title>[webapps] HAX CMS 24.x - Stored Cross-Site Scripting (XSS)</title>
            <link>https://www.exploit-db.com/exploits/52526</link>
            <description>HAX CMS 24.x - Stored Cross-Site Scripting (XSS)</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52526</guid>
        </item>
         <item>
            <title>[webapps] Craft CMS 5.6.16 - RCE</title>
            <link>https://www.exploit-db.com/exploits/52525</link>
            <description>Craft CMS 5.6.16 - RCE</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52525</guid>
        </item>
         <item>
            <title>[local] GNU InetUtils 2.6 - Telnetd Remote Privilege Escalation</title>
            <link>https://www.exploit-db.com/exploits/52524</link>
            <description>GNU InetUtils 2.6 - Telnetd Remote Privilege Escalation</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52524</guid>
        </item>
         <item>
            <title>[webapps] phpMyFAQ  4.0.16 - Improper Authorization</title>
            <link>https://www.exploit-db.com/exploits/52523</link>
            <description>phpMyFAQ  4.0.16 - Improper Authorization</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52523</guid>
        </item>
         <item>
            <title>[webapps] GeographicLib v2.5.1 - stack buffer overflow</title>
            <link>https://www.exploit-db.com/exploits/52522</link>
            <description>GeographicLib v2.5.1 - stack buffer overflow</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52522</guid>
        </item>
         <item>
            <title>[local] OpenWrt 23.05 - Authenticated Remote Code Execution (RCE)</title>
            <link>https://www.exploit-db.com/exploits/52521</link>
            <description>OpenWrt 23.05 - Authenticated Remote Code Execution (RCE)</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52521</guid>
        </item>
         <item>
            <title>[webapps] OpenKM 6.3.12 - Multiple</title>
            <link>https://www.exploit-db.com/exploits/52520</link>
            <description>OpenKM 6.3.12 - Multiple</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52520</guid>
        </item>
         <item>
            <title>[webapps] GUnet OpenEclass E-learning platform &lt; 4.2 - Remote Code Execution (RCE)</title>
            <link>https://www.exploit-db.com/exploits/52519</link>
            <description>GUnet OpenEclass E-learning platform &lt; 4.2 - Remote Code Execution (RCE)</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52519</guid>
        </item>
         <item>
            <title>[webapps] JuzaWeb CMS 3.4.2 - Authenticated Remote Code Execution</title>
            <link>https://www.exploit-db.com/exploits/52518</link>
            <description>JuzaWeb CMS 3.4.2 - Authenticated Remote Code Execution</description>
            <pubDate>Wed, 29 Apr 2026 00:00:00 +0000</pubDate>
            <guid isPermaLink='true'>https://www.exploit-db.com/exploits/52518</guid>
        </item>
    </channel>
</rss>