Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 673— Search: RCE×

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Clear
Examples: RCE · SSRF · GHSA · log4j
Atheme IRC CertFP Privilege Escalation Vulnerability (ASA-2012-03-01)
www.openwall.com · 2025-11-11

### Vulnerability Key Information - **Vulnerability ID**: ASA-2012-03-01 - **Release Date**: 2012-03-20 - **Vulnerability Description**: Improper cleanup of CertFP entries may lead to undefined behavi…

Read more
SmartBear ReadyAPI jProductivity Unsafe Deserialization RCE (SYSS-2019-039)
seclists.org · 2025-11-10

**Vulnerability Details** - **Advisory ID:** SYSS-2019-039 - **Product:** Protection Licensing Toolkit, SoapUI/LoadUI/ServiceV Pro - **Manufacturer:** jProductivity LLC, SmartBear Software - **Affecte…

Read more
Delta CNCSoft ScreenEditor wFontTextLen Stack-based Buffer Overflow RCE (CVE-2019-10947)
www.zerodayinitiative.com · 2025-11-10

## Vulnerability Information - **Date**: April 17th, 2019 - **Title**: Delta Industrial Automation CNCSoft ScreenEditor DPB File Parsing wFontTextLen Stack-based Buffer Overflow Remote Code Execution …

Read more
Jenkins Multiple Plugin Vulnerabilities: RCE, Arbitrary File Deletion, Credential Leakage
jenkins.io · 2025-11-10

### Key Information Summary #### Vulnerability Details - **Script Security Plugin Vulnerability** - **CVE**: SECURITY-1658 / CVE-2019-16538 - **Severity**: High - **Description**: Bypasses sandbox pro…

Read more
phpMyAdmin 3.1.0 CVE-2008-5621: XSRF Bypass Leading to SQL Injection and RCE
securityreason.com · 2025-11-10

## Critical Vulnerability Information - **Vulnerability Name**: phpMyAdmin 3.1.0 (XSRF) SQL Injection Vulnerability - **CVE ID**: CVE-2008-5621 - **Risk Level**: Medium - **CWE ID**: CWE-352 (Cross-Si…

Read more
Simple-scan Network Scanner Vulnerabilities Analysis (RCE/DoS/CVE-2020-12861 et al.)
securitylab.github.com · 2025-11-10

## Critical Vulnerability Information ### Vulnerability IDs - GHSL-2020-075 - GHSL-2020-079 - GHSL-2020-080 - GHSL-2020-081 - GHSL-2020-082 - GHSL-2020-083 - GHSL-2020-084 ### Vulnerability Types - Do…

Read more
visionOS 1.2 Security Update: Fixes for Kernel Privilege Escalation and RCE (CVE-2024-40771, 27817, 27831, 27832)
support.apple.com · 2025-11-10

### Key Information #### visionOS 1.2 - **Release Date**: June 10, 2024 - **Affected Devices**: Apple Vision Pro #### Vulnerability Overview | Component | CVE-ID | Impact | Description | Discoverer/Fi…

Read more
PMailServer Multiple CGI Vulnerabilities (JVN#92720882): RCE/Path Traversal/XSS
akisoftware.com · 2025-11-10

Key vulnerability information obtained from the web screenshot is as follows: ### Vulnerability Overview - **Vulnerability ID**: JVN#92720882 - **Disclosure Date**: September 5, 2023 - **Last Updated*…

Read more
Ready_ Vulnerability Advisory: CVE-2025-1980/1981/1982/1983 (RCE/SQLi/LFI/XSS)
cert.pl · 2025-11-10

### Critical Vulnerability Information #### CVE-2025-1980 - **Vulnerability Type**: Unrestricted Upload of File with Dangerous Type (CWE-434) - **Vulnerable Versions**: From 7.0.0.0 through 7.19.39.23…

Read more
SQL Injection in SourceCodester Simple Online Bidding System v1.0
github.com · 2025-11-09

### Vulnerability Key Information #### 1. Vulnerability Overview - **Vulnerability Type**: SQL Injection - **Affected System**: SourceCodester Simple Online Bidding System - **Version**: v1.0 - **Offi…

Read more
Advantech iView SQL Injection RCE via getInventoryReportData (CVE-2022-50592)
www.vulncheck.com · 2025-11-09

### Critical Vulnerability Information #### Vulnerability Name Advantech iView < v5.7.04 Build 6425 getInventoryReportData Parameter SQL Injection RCE #### Severity - **Critical** #### Release Date - …

Read more
KNIME Business Hub Multiple CVEs Advisory (RCE/SSRF/Hardcoded Password)
www.knime.com · 2025-11-09

## Critical Vulnerability Summary ### 1. CVE-2025-11240 - Open Redirect Vulnerability in KNIME Business Hub - **Release Date**: 2025-10-02 - **Affected Product**: KNIME Business Hub before 1.16.0 - **…

Read more
MySQL 5.1 Multiple Vulnerabilities Advisory (CVE-2012-5611 RCE)
www.debian.org · 2025-11-09

- **Vulnerability**: Several vulnerabilities in MySQL 5.1. - **CVE IDs**: CVE-2012-3150, CVE-2012-3158, CVE-2012-3160, CVE-2012-3163, CVE-2012-3166, CVE-2012-3167, CVE-2012-3173, CVE-2012-3177, CVE-20…

Read more
CVE-2025-12399: Alex Reservations Arbitrary File Upload RCE
github.com · 2025-11-09

### Key Information - **Vulnerability ID**: CVE-2025-12399 - **Affected Software**: Alex Reservations: Smart Restaurant Booking format('Y/m'); $base_dir = $upload_dir['basedir'].'/'.$ALEXR_UPLOAD_FOLD…

Read more
Advantech iView SQL Injection RCE via SNMP (CVE-2022-50595)
www.vulncheck.com · 2025-11-09

- **Severity**: Critical - **Date**: November 6, 2025 - **Affecting**: iView < 5.7.04 build 6425 - **CVE**: CVE-2022-50595 - **CWE**: - CWE-89 Improper Neutralization of Special Elements used in an SQ…

Read more
RCE in langgraph-checkpoint JsonPlusSerializer via Unsafe Deserialization
github.com · 2025-11-09

## Vulnerability Overview ### Vulnerability Name RCE in "json" mode of JsonPlusSerializer ### Affected Versions langgraph-checkpoint 3.0 ### Vulnerability Description Prior to version 3.0, JsonPlusSer…

Read more
CVE-2021-3695: GRUB2 crafted PNG grayscale images cause OOB write and RCE
bugzilla.redhat.com · 2025-11-09

### Vulnerability Key Information Overview #### Vulnerability ID and Associated CVE - **Vulnerability ID**: Bug 1991685 - **Associated CVE**: CVE-2021-3695 #### Affected Products and Versions - **Prod…

Read more
CVE-2025-63640: XSS in Sourcecodester Medicine Reminder App v1.0
github.com · 2025-11-09

## Critical Vulnerability Information ### Vulnerability Overview - **CVE ID**: CVE-2025-63640 - **Discoverer**: Ivan Cese - **Affected Product**: Medicine Reminder App v1.0 - **Vendor**: Sourcecodeste…

Read more
CVE-2025-63714: XSS in SourceCodester Modern User Account Generator 1.0
github.com · 2025-11-09

- **CVE ID:** CVE-2025-63714 - **Vulnerability Type:** Cross Site Scripting (XSS) - **Exploit Details:** - The vulnerability was exploited by injecting a script into the Username Prefix field. - Unsaf…

Read more
SourceCodester Matching Type Test 1.0 Stored XSS via innerHTML (CVE-2025-63713)
github.com · 2025-11-09

## Key Information about Vulnerability CVE-2025-63713 ### Vulnerability Type - Cross Site Scripting (XSS) ### Additional Information - The vulnerability was successfully exploited using the following …

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.