Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 666— Search: RCE×

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Clear
Examples: RCE · SSRF · GHSA · log4j
Filter
ZenLoadBalancer v2/v3.0-rc1 RCE, Arbitrary File Upload, and Info Disclosure Vulnerabilities
web.archive.org · 2025-08-12

### Critical Vulnerability Information #### 1. Arbitrary Command Execution (Requires Authentication) - **Affected Versions**: v2.0 and v3.0-rc1 - **Vulnerability Description**: Attackers can execute a…

Read more
CVSS 8.7
Adobe Commerce/Magento Security Advisory APSB25-71: Multiple CVEs (RCE/XSS/Priv Esc)
helpx.adobe.com · 2025-08-14

### Critical Vulnerability Information #### Vulnerability Advisory - **Advisory ID**: APSB25-71 - **Release Date**: August 12, 2025 - **Priority**: 2 #### Affected Versions - **Adobe Commerce** - Vers…

Read more
Android BaseBundle Parcel Unparcel Error Logic Fix
android.googlesource.com · 2025-09-04

### Critical Vulnerability Information - **Commit ID**: ece83fb425b1e912a036e9985b710910e2e3ca37 - **Author**: Steven Moreland - **Committer**: Android Build Co-signature Worker - **Commit Time**: Dec…

Read more
CVSS 10.0
Mitsubishi Electric FA Products: CVE-2023-4699 RCE and CVE-2023-4625 Brute Force Vulnerabilities
jvn.jp · 2025-11-07

### Vulnerability Key Information #### Vulnerability ID - **JVNVD#94620134** #### Vulnerability Description - **Summary**: Multiple FA products provided by Mitsubishi Electric Corporation are affected…

Read more
Cisco Security Advisory: IOSXE RCE/Auth Bypass, ASA RCE, and Multiple Critical Vulnerabilities
tools.cisco.com · 2025-11-08

### Critical Vulnerability Information - **Cisco Secure Firewall Adaptive Security Appliance Software and Secure Firewall Threat Defense Software:** - **CVE-2025-20333**: Remote Code Execution Vulnera…

Read more
CVE-2023-46801: Apache Linkis DataSource Deserialization RCE
lists.apache.org · 2025-11-14

**CVE-2023-46801: Apache Linkis DataSource: Remote code execution vulnerability in Apache Linkis 1.4.0** **Severity:** Moderate **Affected Versions:** - Apache Linkis DataSource 1.4.0 before 1.6.0 **D…

Read more
Sourcecodester Covid-19 Contact Tracing System 1.0 Unrestricted File Upload RCE (CVE-2025-66802)
github.com · 2026-01-20

## Vulnerability Key Information ### Vulnerability Identifier - **CVE ID**: CVE-2025-66802 ### Vulnerability Description - **Description**: Sourcecodester Covid-19 Contact Tracing System 1.0 contains …

Read more
CVE-2024-42845: RCE Vulnerability in Open Source Biomedical Tool via eval
www.partywave.site · 2026-02-21

### CVE-2024-42845 - **Vulnerability Type**: Remote Code Execution (RCE) - **Affected Tool**: A widely used open-source biomedical tool actively maintained and utilized for medical standard imaging in…

Read more
Wasmtime ResourceTable Vulnerability Analysis: Resource Management and Thread Safety
docs.rs · 2026-02-25

- **Vulnerability Context**: The screenshot displays the `ResourceTable` struct from the `wasmtime` crate, which manages resources within a WebAssembly runtime environment. Potential vulnerabilities o…

Read more
CVE-2026-27613 CGI Parameter Injection Leading to RCE and Source Code Disclosure
github.com · 2026-02-26

### Key Information Summary #### Vulnerability Details - **Vulnerability Name**: CGI Parameter Injection (Bypass of STRICT_CGI_PARAMS and EscapeShellParam) - **CVSS v4 Severity**: 10.0/10 (Critical) -…

Read more
CraftCMS Commerce RCE via SQLi and PHP Deserialization (CVE-2026-52271)
github.com · 2026-04-18

# Vulnerability Summary: craftcms/commerce Remote Code Execution Vulnerability ## Overview This vulnerability exists in the TotalRevenue widget of `craftcms/commerce`. An attacker can leverage an SQL …

Read more
CVSS 9.1
CVE-2026-33656: Authenticated RCE via Formula Path Traversal in sourceId with PoC
github.com · 2026-04-23

# Vulnerability Summary: Authenticated RCE via Formula with Path Traversal in Attachment 'sourceId' ## Overview - **Vulnerability Name**: Authenticated RCE via Formula with Path Traversal in Attachmen…

Read more
Premium intel
CVSS 9.8
GitHub - bootstrapbool/xerteonlinetoolkits-rce: Unauthenticated Xerte Online Toolkits exploit. Requires knowing a valid
github.com · 2026-04-25

# Xerte Online Toolkits Remote Code Execution Vulnerability Summary ## Vulnerability Overview Xerte Online Toolkits contains three exploitable vulnerabilities that can be chained by unauthorized attac…

Read more
CVSS 6.3
SQL Injection in SourceCodester Kortex Lite Advocate Office Management System 1.0
github.com · 2024-08-10

From this webpage screenshot, the following key information about the vulnerability can be obtained: 1. **Vulnerability Description**: - **Title**: SQL injection vulnerability in SourceCodester Kortex…

Read more
CVSS 6.3
SQL Injection in SourceCodester Kortex Lite Advocate Office Management System 1.0
github.com · 2024-08-10

From this webpage screenshot, the following key information about the vulnerability can be obtained: 1. **Vulnerability Description**: - **Title**: SQL injection vulnerability in SourceCodester Kortex…

Read more
CVSS 3.5
SourceCodester QR Code Attendance System 1.0 Stored XSS Vulnerability (CVE-2024-8172)
vuldb.com · 2024-08-28

### Key Information 1. **Vulnerability ID**: - VDB-275771 - CVE-2024-8172 2. **Vulnerability Name**: - SourceCodester QR Code Attendance System 1.0 - Delete Student Attendance Cross Site Scripting 3. …

Read more
CVSS 7.3
SourceCodester Sentiment Based Movie Success Rating Prediction System 1.0 SQL Injection Vulnerability
vuldb.com · 2024-09-01

From this webpage screenshot, the following key information about the vulnerability can be obtained: 1. **Vulnerability Title**: SourceCodester Simple Forum Website 1.0 SQL Injection 2. **Vulnerabilit…

Read more
C-MOR Video Surveillance Unrestricted File Upload RCE (CVE-2024-45171)
www.syss.de · 2024-09-06

From this webpage screenshot, the following key information about the vulnerability can be obtained: 1. **Vulnerability Description**: - **Product**: C-MOR Video Surveillance - **Manufacturer**: za-in…

Read more
CVSS 4.3
CSRF Vulnerability in Sourcecodester Insurance Management System
drive.google.com · 2024-09-06

### CSRF Vulnerability in the Sourcecodester Insurance Management System PHP and MySQL #### Description Cross-Site Request Forgery (CSRF) is a type of web security vulnerability where an attacker tric…

Read more
CVSS 6.3
SourceCodester FOMS 1.0 SQL Injection in cancel-order.php (CVE-2024-8557)
vuldb.com · 2024-09-08

### Key Information 1. **Vulnerability ID**: - VDB-276777 - CVE-2024-8557 2. **Vulnerability Name**: - SourceCodester Food Ordering Management System 1.0 Cancel-Order.php ID SQL Injection 3. **CVSS Me…

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.