Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 666— Search: RCE×

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Clear
Examples: RCE · SSRF · GHSA · log4j
Filter
Atlassian Nov 2024 Security Bulletin: Bamboo RCE and DoS/XSS in Jira/Confluence/Bitbucket
confluence.atlassian.com · 2024-11-24

From this webpage screenshot, the following key vulnerability information can be obtained: 1. **Number of Vulnerabilities**: 19 high-severity vulnerabilities were reported in the security advisories f…

Read more
CVSS 6.3
RCE Vulnerability in Ashida Call Center System: Analysis and Mitigation
github.com · 2025-03-29

### Critical Vulnerability Information #### Vulnerability Title - **Remote Code Execution (RCE) Vulnerability in Ashida Co., Ltd. Call Center System** #### Vulnerability Overview - **Type**: Remote Co…

Read more
CVSS 5.3
Adobe Commerce/Magento Security Advisory APSB25-26: Privilege Escalation, CSRF, and Access Control Bypass
helpx.adobe.com · 2025-04-10

### Critical Vulnerability Information #### Vulnerability Overview - **Advisory ID**: APSB25-26 - **Release Date**: April 8, 2025 - **Priority**: 2 Adobe has released security updates for Adobe Commer…

Read more
Design Studio Java Deserialization RCE via License Server
knowledge.bizrobo.com · 2025-04-12

### Critical Vulnerability Information #### Title Arbitrary Code Execution on MC License Server via Java Deserialization in Design Studio License Authentication by Product User #### Affected Version -…

Read more
CVSS 7.5
WordPress Ni WooCommerce Product Enquiry <=4.1.8 Broken Access Control Vulnerability
patchstack.com · 2025-04-13

### Key Information - **Vulnerability Name**: WordPress Ni WooCommerce Product Enquiry Plugin <= 4.1.8 is vulnerable to Broken Access Control - **Risk Level**: High priority (CVSS 7.5) - **Vulnerabili…

Read more
D-Link DNS-320/325/340L Multiple CGI Unauth Access & RCE Vulnerabilities
www.yuque.com · 2025-05-11

### Critical Vulnerability Information #### Affected Versions - DNS-320 - Version 1.00 - DNS-320LW - Version 1.01.0914.2012 - DNS-325 - Versions 1.01 and 1.02 - DNS-340L - Version 1.08 #### Affected C…

Read more
CVSS 7.3
Online Student Clearance System Unauthenticated File Upload Leading to RCE
github.com · 2025-05-11

### Critical Vulnerability Information #### Vulnerability Type - File Upload Vulnerability #### Affected System - Online Student Clearance System #### Vulnerability Description - Attackers can exploit…

Read more
CVSS 4.3
WordPress Sharepine Woocommerce Connector Plugin <= 4.7.55 Broken Access Control Vulnerability
patchstack.com · 2025-05-17

### Key Information - **Vulnerability Name**: WordPress Sharepine Woocommerce Connector Plugin <= 4.7.55 is vulnerable to Broken Access Control - **Priority**: Low priority - **Affected Versions**: <=…

Read more
CVSS 8.8
Medtronic MyCareLink Smart Reader Auth Bypass, Stack Overflow, and RCE via Race Condition
www.cisa.gov · 2025-05-24

### Critical Vulnerability Information #### 1. Vulnerability Overview - **CVSS v3**: 8.8 - **Note**: Exploitable via proximity access / low skill level - **Vendor**: Medtronic - **Device**: MyCareLink…

Read more
CVSS 8.1
Comodo Internet Security 2025 Improper Certificate Validation Leads to RCE via Fake Update
drive.google.com · 2025-07-12

## Description Multiple vulnerabilities were found in Comodo Internet Security 2025, which can lead to: - Downloading and installing updates from an untrusted server. - Delivering malicious files and …

Read more
CVSS 8.8
RCE Vulnerability Analysis in Shenzhen Jixiang Tengda FH451 Device via Stack Overflow
github.com · 2025-07-15

### Critical Vulnerability Information #### Vulnerability Description - **Vendor**: Shenzhen Jixiang Tengda Technology Co., Ltd. - **Product**: FH451 - **Vulnerability Type**: Remote Code Execution (R…

Read more
CVSS 7.3
CVE-2022-4539: macOS Privileged XPC Helper Unauth Access Leading to RCE
github.com · 2025-08-03

### Critical Vulnerability Information #### Vulnerability Overview - **Vulnerability Name**: Unauthorized Access to Privileged XPC Helper Allows Root Command Execution - **CVE ID**: CVE-2022-4539 - **…

Read more
CVSS 4.3
Tianti v2.3 CSV Injection Leading to RCE via Excel Formula
github.com · 2025-08-11

### Critical Vulnerability Information #### Vulnerability Type - CSV Injection #### Affected Product - Tianti v2.3 #### Vulnerability Description - Tianti supports exporting user lists in CSV format. …

Read more
CVSS 3.5
Stored XSS in SourceCodester Advanced School Management System V1.0 with POC
github.com · 2025-08-23

### Critical Vulnerability Information #### Affected Product - **Name**: SourceCodester Advanced School Management System with Complete Features V1.0 - **Version**: V1.0 - **Link**: [SourceCodester](h…

Read more
CVSS 3.5
Stored XSS in SourceCodester Advanced School Management System v1.0
github.com · 2025-08-23

### Critical Vulnerability Information #### Affected Product - **Name**: SourceCodester Advanced School Management System with Complete Features V1.0 - **Version**: v1.0 - **Link**: https://www.source…

Read more
CVSS 6.3
SQL Injection in isourcecode Online Public Access Catalog OPAC
github.com · 2025-09-18

### Key Information #### Vulnerability Type - SQL Injection #### Affected File - mysearch.php #### Parameters - search_field (POST) - search_text (POST) #### Vendor - isourcecode #### Product - Online…

Read more
CVE-2025-43953: Authenticated RCE in 2wcom IP-4c Web Interface via Command Injection
github.com · 2025-09-24

### Critical Vulnerability Information #### Vulnerability ID CVE-2025-43953 #### Vulnerability Description The web interface of 2wcom IP-4c allows authenticated attackers to perform remote code execut…

Read more
Linux Kernel ksmbd CVE-2025-38561 Preauth Race Condition RCE
www.zerodayinitiative.com · 2025-10-11

### Critical Vulnerability Information - **Vulnerability Name**: Linux Kernel ksmbd smb2_sess_setup Preauth_HashValue Race Condition Remote Code Execution Vulnerability - **Vulnerability IDs**: - ZDI-…

Read more
Moxa Network Devices Vulnerability Advisory: CVE-2025-6892 to 6950 (RCE/Auth Bypass)
www.moxa.com · 2025-10-17

### Critical Vulnerability Information #### Vulnerability Overview - **CVE IDs**: CVE-2025-6892, CVE-2025-6893, CVE-2025-6894, CVE-2025-6949, CVE-2025-6950 - **Affected Products**: Moxa network securi…

Read more
SOCT GXP Vulnerability Advisory: XXE, RCE, Unauth Access (CVE-2022-5937 to 5944)
www.geospatialexploitationproducts.com · 2025-10-24

### Critical Vulnerability Information #### 1. XXE in SOCT GXP File Processing (CVE-2022-5937) - **Description**: XXE vulnerability in SOCT GXP file processing, allowing attackers to execute arbitrary…

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.