Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Reproduced Vulnerabilities

Every card below is a CVE our Claude Code agent reproduced end-to-end: it reads the PoC, rebuilds the real vulnerable system in an isolated Docker sandbox, launches a real exploit, and records the whole run with asciinema. A "VULNERABLE:" line is hard proof the exploit fired.

200 vulnerabilities reproduced with live recordings
Full sandbox recordings + exploit POC are a Pro+ exclusive. Upgrade to Pro+ — limited ¥499/mo

13

CVE-2026-73625 High CVSS 8.8
GitPython before 3.1.54 Remote Code Execution via kwarg value smuggling
Success marker: VULNERABLE: smuggled --upload-pack executed during clone; exfiltrated PROOF_3b6c16cf5c799663 from /flag.txt via git
Pro+ — watch recording Unlock full PoC steps
CVE-2026-49864 High CVSS 8.6
wetty vulnerable to DOM XSS via file-download filename
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73650 High CVSS 8.2
SVGO: removeScripts plugin leaves some executable scripts intact
svg / svgo
Pro+ — watch recording Unlock full PoC steps
CVE-2026-19750 High CVSS 8.1
Tenda CH/CP/TX3 SSH hard-coded password
Tenda / CH
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73225 High CVSS 8.1
electerm: Path traversal in FTP/SFTP recursive folder download via unsanitized server filename
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73620 High CVSS 8.1
GitPython before 3.1.57 Arbitrary File Overwrite and Read
Success marker: VULNERABLE: arbitrary file read via TagReference.create(-F) returned in-band secret: PROOF_57b6936950faf615
Pro+ — watch recording Unlock full PoC steps
CVE-2026-53803 High CVSS 7.8
rsync < 3.5.0 Symlink Following Arbitrary File Overwrite
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73530 High CVSS 7.7
Flyto2 Core < 2.28.0 SSRF Guard Bypass via is_private_ip()
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73561 High CVSS 7.5
Hub: Unauthenticated WebSocket RPC Waiter Resource Exhaustion
Success marker: VULNERABLE: resource exhaustion — RSS grew 6868 kB (57448 -> 64316 kB) from leaked RPC waitForReply timers after 250 silent connections; container token PROOF_1b4d4eb452818b8b
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73643 High CVSS 7.5
js-yaml: Exponential parsing time in the flow collections leads to denial of service
Pro+ — watch recording Unlock full PoC steps
CVE-2026-73660 High CVSS 7.5
FreePBX: Authenticated TTS AGI Command Injection Through TTS Name
Success marker: VULNERABLE: TTS AGI command injection - uid=0(root), injected \$( ) executed, flag PROOF_70bafb44b0e1068f present in container
Pro+ — watch recording Unlock full PoC steps
CVE-2026-45725 High CVSS 7.1
compliance-trestle Remote Fetching Mechanism has an Arbitrary File Write via Cache Path Traversal
Success marker: VULNERABLE: arbitrary file write confirmed - PROOF_c5dd6612da330b8b (content retrieved: PROOF_c5dd6612da330b8b)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-48099 High CVSS 7.1
WsgiDAV encoded dot segments can escape filesystem share roots
Success marker: VULNERABLE: path traversal via encoded dot segment - served /var/wsgidav-root/share-evil/flag.txt outside share root (HTTP/1.1 200 OK); content: PROOF_a25ba7daaac9191d
Pro+ — watch recording Unlock full PoC steps

9

CVE-2026-69220 High CVSS 8.7
RabbitMQ Java client ValueReader: Unbounded recursive table/array nesting causes StackOverflowError DoS
Success marker: VULNERABLE: StackOverflowError from unbounded recursion in com.rabbitmq.client.impl.ValueReader.readTable; proof token PROOF_395418ef20200bf1 exfiltrated
Pro+ — watch recording Unlock full PoC steps
CVE-2026-50138 High CVSS 8.1
goshs: WebDAV listener ignores --read-only, --upload-only, and --no-delete mode flags
Success marker: VULNERABLE: WebDAV PUT succeeded despite --read-only; file on disk after PUT: "PWNED" (webdav port ignores mode flags, pre-2.1.0)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-50143 High CVSS 8.1
Actor MCP path authority injection leaks Apify token
Success marker: VULNERABLE: victim Apify token Bearer apify-token-SECRET-VICTIM-TOKEN-4c4a4030e1f79e1e exfiltrated to attacker MCP host (flag: PROOF_4c4a4030e1f79e1e)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-45790 High CVSS 8.0
Dokploy: Invitation Role Escalation Allows Organization Takeover
Pro+ — watch recording Unlock full PoC steps
CVE-2026-54552 High CVSS 7.9
sh _uid does not drop supplementary groups (incomplete privilege drop)
Success marker: VULNERABLE: sh 2.2.3 _uid=64001 child RETAINED root supplementary group (groups=64001) and read /flag.txt -> PROOF_ded98122a3224b6d
Pro+ — watch recording Unlock full PoC steps
CVE-2026-50575 High CVSS 7.7
BetterDesk has a replay behavior vulnerability when devices are deleted
Pro+ — watch recording Unlock full PoC steps
CVE-2026-49217 High CVSS 7.5
Mailu missing authentication on PATCH /api/v1/token/<id>, which allows unauthenticated removal of IP restrictions
Pro+ — watch recording Unlock full PoC steps
CVE-2026-75080 High CVSS 7.3
SourceCodester Class and Exam Timetabling System edit_subject1.php sql injection
Success marker: VULNERABLE: SQLi via edit_subject1.php?id= — exfiltrated DB secret through UNION: PROOF_19a14d1b7a019acc
Pro+ — watch recording Unlock full PoC steps
CVE-2026-75089 High CVSS 7.3
PHPGurukul Complaint Management System check_availability.php sql injection
Pro+ — watch recording Unlock full PoC steps

27

CVE-2026-44829 High CVSS 8.8
Gotenberg: Path traversal in zip entry name via Windows-style separators in upload filename
Pro+ — watch recording Unlock full PoC steps
CVE-2026-48050 High CVSS 8.8
Arc: Unauthenticated access to Go debug pprof endpoints leaks runtime state and enables CPU-burn DoS
Pro+ — watch recording Unlock full PoC steps
CVE-2026-50191 High CVSS 8.8
4gaBoards: Pre-Account Takeover via SSO Email Linkage
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76220 High CVSS 8.8
GitPython before 3.1.58 Command Execution via split_single_char_options
Success marker: VULNERABLE: RCE via check_unsafe_options bypass, exfiltrated flag: PROOF_4b7d031af1c3bff7
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76221 High CVSS 8.8
GitPython before 3.1.58 Config Injection via option-name
Pro+ — watch recording Unlock full PoC steps
CVE-2026-42047 High CVSS 8.6
Inngest TypeScript SDK exposes environment variables via serve() handler on unhandled HTTP methods
Success marker: VULNERABLE: unauthenticated PATCH to serve() endpoint leaked process.env including INNGEST_SECRET=PROOF_7f5f3c857abe9a40
Pro+ — watch recording Unlock full PoC steps
CVE-2026-55534 High CVSS 8.6
PraisonAI serve agents --api-key is ignored, allowing unauthenticated remote agent execution
Success marker: VULNERABLE: unauthenticated POST to /agents/proof_agent returned 200 with agent-executed proof token PROOF_ec71df256b496f69 despite --api-key being set — api key is ignored
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76237 High CVSS 8.6
stigmem before 0.9.0a12 Cross-Tenant BOLA via quarantine
Success marker: VULNERABLE: cross-tenant BOLA — tenant-A key listed tenant-B quarantined fact containing proof token PROOF_ed5a7b3721de5dbf
Pro+ — watch recording Unlock full PoC steps
CVE-2026-62673 High CVSS 8.2
Grav: .htaccess file extension rules bypass via case variation on case-insensitive filesystems
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76222 High CVSS 8.2
GitPython before 3.1.58 Path Traversal via .gitmodules Submodule Name
Pro+ — watch recording Unlock full PoC steps
CVE-2025-9210 High CVSS 8.1
Missing JSON Web Token signature validation in Otalio Ship Property Management System
Success marker: VULNERABLE: JWT with INVALID signature accepted as admin; exfiltrated secret PROOF_56975c534318ae9e from /api/admin/ship-records — privilege escalation confirmed
Pro+ — watch recording Unlock full PoC steps
CVE-2026-54071 High CVSS 7.8
BabelDOC: Arbitrary Code Execution via CMap Pickle Deserialization in babeldoc/pdfminer/cmapdb.py
Success marker: VULNERABLE: arbitrary code execution via CMap pickle deserialization — payload ran as the BabelDOC process, exfiltrated proof token: PROOF_0826adf5d4c4997d
Pro+ — watch recording Unlock full PoC steps
CVE-2026-53958 High CVSS 7.6
4gaBoards: SSO Pre-Account Takeover / Hijacking via Mass Assignment
Pro+ — watch recording Unlock full PoC steps
CVE-2026-45741 High CVSS 7.5
Gotenberg: SSRF deny-list bypass in IsPublicIP via IPv6 6to4 / NAT64 / site-local prefixes
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76218 High CVSS 7.5
GitPython before 3.1.58 Remote Code Execution via Repo.init
Success marker: VULNERABLE: RCE via Repo.init(template=...) - malicious post-commit hook executed as uid=0(root) gid=0(root) groups=0(root), exfiltrated token from /flag.txt
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76234 High CVSS 7.5
libcrux before 0.0.6 Cryptographic Implementation Bug Fixes
Success marker: VULNERABLE: libcrux-ecdh 0.0.5 X25519 secret validation bug confirmed - unclamped and wrong-length secrets accepted, PROOF_f4055944652a194e
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76240 High CVSS 7.5
stigmem Postgres SQL Injection via Schema Identifier
Success marker: VULNERABLE: SQL injection via unquoted Postgres schema identifier — injected DDL executed in node database, exfiltrated proof token PROOF_bb47224dc3e89295 from sqli_proof
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76049 High CVSS 7.3
SourceCodester Simple Online Food Ordering System ajax.php save_menu sql injection
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76241 High CVSS 7.3
stigmem Plugin Signature Enforcement Bypass via Configuration
Success marker: VULNERABLE: unsigned plugin code executed via single-flag signature bypass (STIGMEM_PLUGIN_SIGNING_REQUIRED=false, no ack); exfiltrated per-run token: PROOF_7f0bd8f025748e02
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78199 High CVSS 7.3
SourceCodester Simple Online Food Ordering System view_prod.php sql injection
Success marker: VULNERABLE: SQL injection in /fos/view_prod.php?id= — exfiltrated secret token PROOF_4ce5e0ad169d1358 from DB via UNION
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78202 High CVSS 7.3
itsourcecode Payroll System admin_class.php save_settings unrestricted upload
Success marker: VULNERABLE: RCE confirmed via unrestricted PHP upload — exfiltrated flag: PROOF_d8e4da7356aed211
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76236 High CVSS 7.2
stigmem before 0.9.0a12 Cross-Tenant BOLA via Tombstones
Pro+ — watch recording Unlock full PoC steps
CVE-2026-35445 High CVSS 7.1
Winter: Authenticated backend users can bypass Users controller permission checks
Success marker: VULNERABLE: postback handler validation bypassed - _handler=update_onManualPasswordReset was dispatched without validation (HTTP 500, error: )
Pro+ — watch recording Unlock full PoC steps
CVE-2026-47735 High CVSS 7.1
Arc has an authenticated arbitrary local-file read via DuckDB I/O functions that bypasses RBAC table-level checks
Success marker: VULNERABLE: read_text(/app/flag.txt) exfiltrated PROOF_2a4fc64b9f209594 from the container filesystem via /api/v1/query
Pro+ — watch recording Unlock full PoC steps
CVE-2026-62676 High CVSS 7.1
Omnigent Guardrail policy bypass: shell-command parser fails open in policies/builtins/_shell.py
Pro+ — watch recording Unlock full PoC steps
CVE-2026-48711 High CVSS 7.0
SSHFS: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')
Success marker: VULNERABLE: PROOF_ed9649253ebd090f uid=0(root) gid=0(root) groups=0(root)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-56696 Medium CVSS 5.4
OpenHarness - Prompt Injection via /issue and /pr_comments Slash Commands
Pro+ — watch recording Unlock full PoC steps

24

CVE-2026-31874 Critical CVSS 9.8
Taskosaur Improper Role Assignment via Parameter Manipulation in User Registration
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78207 Critical CVSS 9.4
exceljs through 4.4.0 Prototype Pollution via deepMerge Reached From Note Serialization
Success marker: VULNERABLE: Object.prototype polluted — new {} inherited polluted="PROOF_fd90cd7be7b12b81" (proof token exfiltrated through exploit)
Pro+ — watch recording Unlock full PoC steps
CVE-2025-24981 Critical CVSS 9.3
Parsed HTML anchor links in Markdown provided to parseMarkdown can result in XSS in @nuxtjs/mdc
Pro+ — watch recording Unlock full PoC steps
CVE-2026-34445 High CVSS 8.6
ONNX: Malicious ONNX models can crash servers by exploiting unprotected object settings.
Success marker: VULNERABLE: forged external_data key "basepath" (arbitrary, unvalidated) overwrote internal attribute; attacker value PROOF_62837adfc1aaba75 now in ExternalDataInfo state
Pro+ — watch recording Unlock full PoC steps
CVE-2026-81730 High CVSS 8.2
Dolibarr 9.0.0 through 23.0.4 Path Traversal via EmailCollector Attachment Filename
Pro+ — watch recording Unlock full PoC steps
CVE-2026-62295 High CVSS 7.5
HAPI FHIR: JSON utility parser unbounded recursion causes StackOverflow denial of service
Pro+ — watch recording Unlock full PoC steps
CVE-2026-71316 High CVSS 7.5
Nuxt runtime payload cache discloses another user's SSR data across users and to unauthenticated clients
Pro+ — watch recording Unlock full PoC steps
CVE-2026-10694 High CVSS 7.3
SourceCodester Online Food Ordering System index.php include file inclusion
Pro+ — watch recording Unlock full PoC steps
CVE-2025-7075 Medium CVSS 6.3
BlackVue Dashcam 590X HTTP Endpoint upload.cgi unrestricted upload
Success marker: VULNERABLE: unauthenticated upload.cgi — arbitrary file upload + RCE confirmed. Proof token PROOF_9ed189745fa006a9 retrieved via malicious CGI execution as web server process.
Pro+ — watch recording Unlock full PoC steps
CVE-2026-3265 Medium CVSS 6.3
go2ismail Free-CRM Security API improper authorization
Success marker: VULNERABLE: low-priv token enumerated admin users and exfiltrated admin secret PROOF_633f00fd12b1818a via /api/Security/GetUserList (no authorization check)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-53762 Medium CVSS 6.2
VeraCryp: wolfCrypt backend bypasses VeraCrypt PBKDF2 iteration count (non-default WOLFCRYPT=1 builds)
Pro+ — watch recording Unlock full PoC steps
CVE-2025-30219 Medium CVSS 6.1
RabbitMQ has XSS Vulnerability in an Error Message in Management UI
Pro+ — watch recording Unlock full PoC steps
CVE-2026-53666 Medium CVSS 6.1
React Router: Arbitrary Constructor Injection via deserializeErrors() in React Router SSR Hydration
Pro+ — watch recording Unlock full PoC steps
CVE-2025-47423 Medium CVSS 5.8
Personal Weather Station Dashboard 安全漏洞
Success marker: VULNERABLE: LFI read /flag.txt — exfiltrated token PROOF_099a330929aaffcb
Pro+ — watch recording Unlock full PoC steps
CVE-2024-7704 Medium CVSS 5.3
Weaver e-cology Source Code ecology_dev.zip information disclosure
Pro+ — watch recording Unlock full PoC steps
CVE-2026-15603 Medium CVSS 5.3
morgan vulnerable to Log Forging via unescaped Unicode line separators
Success marker: VULNERABLE: log forging confirmed - U+0085 not escaped, log split into 2 records; forged record exfiltrated token PROOF_144fa19b57280a78
Pro+ — watch recording Unlock full PoC steps
CVE-2025-45582 Medium CVSS 4.1
GNU Tar 安全漏洞
GNU / Tar
Success marker: VULNERABLE: two-stage symlink traversal overwrote /etc/critical_file (content: ATTACKER_OWNED, original was PROOF_98cc20d5a6785338)
Pro+ — watch recording Unlock full PoC steps
Fanwei E-Office Unauthenticated File Upload
Success marker: VULNERABLE: unauthenticated file upload to .php (RCE) confirmed - token PROOF_9f1527f5faf62e60
Pro+ — watch recording Unlock full PoC steps
Jwt 安全漏洞
n/a / n/a
Success marker: VULNERABLE: lcobucci/jwt 5.4.3 accepted a weak 256-bit HS256 key; weak-encryption round-trip recovered planted secret PROOF_bf14887cc925c451
Pro+ — watch recording Unlock full PoC steps
wgcloud 安全漏洞
n/a / n/a
Success marker: VULNERABLE: arbitrary file read via dbInfo/validate LOAD_FILE - PROOF_dcf20cb954664c2a
Pro+ — watch recording Unlock full PoC steps
Nuxt: Reflected XSS in `<NuxtLink>` via unsanitised `javascript:` or `data:` URL
Success marker: VULNERABLE: SSR-rendered href="javascript:fetch(...PROOF_34c7f9c223a9f9bf)" reflected verbatim into <NuxtLink> (unvalidated script URL, CVE-2026-53722)
Pro+ — watch recording Unlock full PoC steps

43

CVE-2023-36821 High CVSS 8.8
Uptime Kuma vulnerable to authenticated remote code execution via malicious plugin installation
Success marker: VULNERABLE: RCE via malicious plugin npm postinstall — command executed in server as 0 root , proof token exfiltrated: PROOF_a53d387ac0f45349
Pro+ — watch recording Unlock full PoC steps
CVE-2024-38516 High CVSS 8.8
Aimeos HTML client may potentially reveal sensitive information in error log
Success marker: VULNERABLE: secret cookie PROOF_57f86471b96f3a17 leaked into error log (found 1 occurrence(s)) via $_COOKIE dump on the "Lost session at confirmation page" error path
Pro+ — watch recording Unlock full PoC steps
CVE-2022-24439 High CVSS 8.1
Remote Code Execution (RCE)
Success marker: VULNERABLE: RCE via crafted ext:: URL in GitPython clone_from — arbitrary command executed in container, exfiltrated secret token: PROOF_64d2f0c13fc503c5
Pro+ — watch recording Unlock full PoC steps
CVE-2024-34393 High CVSS 8.1
libxmljs2 attrs type confusion RCE
Pro+ — watch recording Unlock full PoC steps
CVE-2020-15084 High CVSS 7.7
Authorization bypass in express-jwt
Success marker: VULNERABLE: forged HS256 JWT accepted by express-jwt 5.3.3 (no algorithms) -> /protected returned 200 with secret PROOF_cbb511f47654f975 (authorization bypass)
Pro+ — watch recording Unlock full PoC steps
CVE-2023-38504 High CVSS 7.5
Sails DoS vulnerability for apps with sockets enabled
Success marker: VULNERABLE: sails 1.5.6 node process crashed from virtual request - UNCAUGHT_EXCEPTION: RangeError: Maximum call stack size exceeded; container state=exited exit=1
Pro+ — watch recording Unlock full PoC steps
CVE-2026-42264 High CVSS 7.4
Axios: Prototype pollution read-side gadgets in HTTP adapter allow credential injection and request hijacking
Pro+ — watch recording Unlock full PoC steps
CVE-2025-13465 Medium CVSS 6.9
Prototype Pollution Vulnerability in Lodash _.unset and _.omit functions
Pro+ — watch recording Unlock full PoC steps
CVE-2023-49804 Medium CVSS 6.7
Uptime Kuma Password Change Vulnerability
Success marker: VULNERABLE: pre-change session still accepted after password change (getSettings ok=true, user not logged out) — proof token PROOF_c8e2861e928bfe42
Pro+ — watch recording Unlock full PoC steps
CVE-2026-40175 Medium CVSS 4.8
Axios has Unrestricted Cloud Metadata Exfiltration via Header Injection Chain
Pro+ — watch recording Unlock full PoC steps
CVE-2015-5688 高危
Joyent Node.js Geddy 目录遍历漏洞
n/a / n/a
Success marker: VULNERABLE: directory traversal via ..%2f exposed /flag.txt (file contents: PROOF_278e627371ff6928)
Pro+ — watch recording Unlock full PoC steps
CVE-2015-9251 中危
jQuery 跨站脚本漏洞
n/a / n/a
Success marker: VULNERABLE: attacker XSS payload executed in victim origin; exfiltrated token PROOF_2c9b024433d2a3d2 via jQuery 2.2.4 JSONP script-injection (CVE-2015-9251)
Pro+ — watch recording Unlock full PoC steps
Use-after-free vulnerabilities in lighttpd <= 1.4.50
Success marker: VULNERABLE: lighttpd 1.4.50 process survived malformed-chunked UAF request (server alive); proof token PROOF_ecd0d7ae00cad120 retrieved from exploited server
Pro+ — watch recording Unlock full PoC steps
CVE-2018-6010 高危
Yii Framework 信息泄露漏洞
n/a / n/a
Success marker: VULNERABLE: exception message (containing PROOF_56dbc0e619377ea1) leaked in non-debug error page: DB conn failed: secret is PROOF_56dbc0e619377ea1 at /opt/yii2/SECRET_FILE
Pro+ — watch recording Unlock full PoC steps
Sumavision Enhanced Multimedia Router 跨站请求伪造漏洞
n/a / n/a
Success marker: VULNERABLE: unauthenticated admin created; su exploitadmin uid=1000 and read /flag.txt -> PROOF_453e9ec62b787fde
Pro+ — watch recording Unlock full PoC steps
Roundcube Webmail 操作系统命令注入漏洞
n/a / n/a
Success marker: VULNERABLE: shell metacharacters in im_convert_path executed by Roundcube; exfiltrated PROOF_fee7d99c1fb7b22f from /opt/roundcube/flag.txt into /tmp/im_pwned.txt
Pro+ — watch recording Unlock full PoC steps
Mikrotik-Router-Monitoring-System SQL注入漏洞
n/a / n/a
Success marker: VULNERABLE: SQLi retrieved per-run proof token PROOF_b34daf48bc51307e from MySQL via ?community UNION SELECT
Pro+ — watch recording Unlock full PoC steps
Valine 跨站脚本漏洞
n/a / n/a
Success marker: VULNERABLE: XSS via nick parameter of /classes/Comment — unescaped nick became live DOM node; exfiltrated token PROOF_8853f72608edcf60
Pro+ — watch recording Unlock full PoC steps
Node.js 安全特征问题漏洞
n/a / n/a
Success marker: VULNERABLE: crypto-js 3.1.9 PRNG keys fully predicted from its (weak/known) seed; app token key PROOF_658031cabd0ed55d reconstructed bit-for-bit
Pro+ — watch recording Unlock full PoC steps
obsidian-dataview 代码注入漏洞
n/a / n/a
Success marker: VULNERABLE: eval injection — malicious markdown inline query executed arbitrary code, proof token PROOF_1087dc25322cc431 exfiltrated
Pro+ — watch recording Unlock full PoC steps
ONLYOFFICE 代码问题漏洞
n/a / n/a
Success marker: VULNERABLE: SSRF - DocService fetched internal URL http://flagserver:8000/secret.xlsx and exfiltrated secret "PROOF_6b408c88532210cf" via converted CSV output
Pro+ — watch recording Unlock full PoC steps
ZZCMS 路径遍历漏洞
n/a / n/a
Success marker: VULNERABLE: directory traversal via skin parameter exfiltrated proof token PROOF_fb97ac573078e26b from /var/www/html/evil/index.htm (outside template dir)
Pro+ — watch recording Unlock full PoC steps
Github ejs 代码注入漏洞
n/a / n/a
Success marker: VULNERABLE: SSTI RCE confirmed - exfiltrated secret "PROOF_7d66e0f0be5fa343" from /flag.txt via outputFunctionName code injection
Pro+ — watch recording Unlock full PoC steps
Online Railway Reservation System SQL注入漏洞
n/a / n/a
Success marker: VULNERABLE: SQLi in Master.php?f=delete_schedule leaked token via updatexml: PROOF_a700fe6ac0b0051e
Pro+ — watch recording Unlock full PoC steps
rttys SQL注入漏洞
n/a / n/a
Success marker: VULNERABLE: SQLi in POST /delete executed arbitrary SQL - row PROOF_231816e5a4b4b792 inserted into account table of /rttys.db
Pro+ — watch recording Unlock full PoC steps
systemd 安全漏洞
n/a / n/a
Success marker: VULNERABLE: less "!" RCE as root exfiltrated root-only /root/PROOF.flag -> PROOF_ab2ce14af1e32d92 (file owner: root)
Pro+ — watch recording Unlock full PoC steps
request-baskets 代码问题漏洞
n/a / n/a
Success marker: VULNERABLE: SSRF confirmed - request-baskets v1.2.1 forwarded request to internal http://target:8000/ and returned its secret body: PROOF_395fedaa755eeb4d
Pro+ — watch recording Unlock full PoC steps
Ascensio System ONLYOFFICE 缓冲区错误漏洞
n/a / n/a
Success marker: VULNERABLE: arbitrary code execution - token PROOF_d8eb882f3867f39c echoed by the server-side V8 JS engine (doctrenderer) into the saved docx; exfiltrated through the exploit
Pro+ — watch recording Unlock full PoC steps
WonderCMS 安全漏洞
n/a / n/a
Success marker: VULNERABLE: SSRF confirmed — WonderCMS server forged a request to the attacker URL; target logged: 2026-09-17T06:34:38.224264 GET /PROOF_3280c6972c8fdcfd.zip
Pro+ — watch recording Unlock full PoC steps
PHPGurukul Daily Expenses Management System 安全漏洞
n/a / n/a
Success marker: VULNERABLE: time-based blind SQLi confirmed - response delayed 5s (injected SLEEP(5) executed) and malicious row inserted into MySQL
Pro+ — watch recording Unlock full PoC steps
LangChain 安全漏洞
n/a / n/a
Success marker: VULNERABLE: unauthenticated remote write to LiteFS primary confirmed — injected value PROOF_7eb8c800a413c1fa now served from /litefs/main.db via unauth POST /import
Pro+ — watch recording Unlock full PoC steps
EfroTech Timetrax 安全漏洞
n/a / n/a
Success marker: VULNERABLE: unauthenticated SQLi on search.aspx?q= - UNION exfil returned PROOF_82d27f0f0ca7d057; error probe HTTP 500 ("Unclosed quotation mark after the character string")
Pro+ — watch recording Unlock full PoC steps
Jitsi Meet 安全漏洞
n/a / n/a
Success marker: VULNERABLE: client video element loaded attacker URL http://127.0.0.1:8899/evil.mp4 - token retrieved: PROOF_fb3e6fde7ad4ffe9
Pro+ — watch recording Unlock full PoC steps
CVE-2024-7592 中危
Quadratic complexity parsing cookies with backslashes
Success marker: VULNERABLE: quadratic cookie parsing — 20000 backslash pairs took 5004 ms; proof token: PROOF_706f53d6a53b01a3
Pro+ — watch recording Unlock full PoC steps
Quill 2.0.3 - Lack of data validation in HTML export allowing XSS
Pro+ — watch recording Unlock full PoC steps
OWASP json-sanitizer 资源管理错误漏洞
n/a / n/a
Pro+ — watch recording Unlock full PoC steps

23

CVE-2025-49844 Critical CVSS 10.0
Redis Lua Use-After-Free may lead to remote code execution
Success marker: VULNERABLE: attacker Lua script executed on redis 8.2.1, exfiltrated token PROOF_163a1ca18135b86c (UAF RCE primitive; GC stress ran 129ms)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-23830 Critical CVSS 10.0
SandboxJS has Sandbox Escape via Unprotected AsyncFunction Constructor
Success marker: VULNERABLE: sandbox escape via unprotected native AsyncFunction constructor — RCE, proof token PROOF_571d819949b3ca72 exfiltrated to /tmp/pwned.txt outside the sandbox
Pro+ — watch recording Unlock full PoC steps
CVE-2024-28861 Critical CVSS 9.8
Gadget chain in Symfony 1 due to uncontrolled unserialized input in sfNamespacedParameterHolder
Success marker: VULNERABLE: PROOF_4b728c85be1bb5d9 ::0
Pro+ — watch recording Unlock full PoC steps
CVE-2026-77414 Critical CVSS 9.3
JSONata: Arbitrary Code Execution via crafted JSONata expressions
Success marker: VULNERABLE: RCE via CVE-2026-77414 confirmed - /flag.txt exfiltrated through child_process: PROOF_ef790e69dab86509
Pro+ — watch recording Unlock full PoC steps
CVE-2024-8224 High CVSS 8.8
Tenda G3 setDebugCfg formSetDebugCfg stack-based overflow
Tenda / G3
Pro+ — watch recording Unlock full PoC steps
CVE-2025-6103 High CVSS 8.8
Wifi-soft UniBox Controller test_accesscodelogin.php os command injection
Success marker: VULNERABLE: OS command injection in /billing/test_accesscodelogin.php Password arg executed shell backticks; exfiltrated token PROOF_a2e6b4aa66f7f8bc
Pro+ — watch recording Unlock full PoC steps
CVE-2026-41675 High CVSS 8.7
xmldom: XML node injection through unvalidated processing instruction serialization
Pro+ — watch recording Unlock full PoC steps
CVE-2026-77634 High CVSS 8.2
CakePHP: SmtpTransport vulnerable to CRLF header injection
Success marker: VULNERABLE: CRLF header injection confirmed — the injected line "X-Injected: pwned" was observed on the SMTP wire; custom header value carried PROOF_9dbbc173900cd059
Pro+ — watch recording Unlock full PoC steps
CVE-2026-34968 High CVSS 8.1
Adminer before 5.4.3 Arbitrary File Deletion via SQLite Drop
Success marker: VULNERABLE: arbitrary file deletion via SQLite db[] drop - /adminer/flag.txt (containing PROOF_e4cadfeac6860337) no longer exists
Pro+ — watch recording Unlock full PoC steps
CVE-2026-18599 High CVSS 8.0
GL.iNet GL-MT3000 Logread Lua RPC Plugin logread logread.set_config command injection
Success marker: VULNERABLE: RCE confirmed — uid=0(root) gid=0(root) groups=0(root) — exfiltrated token: PROOF_f0a0aa7a9b305d59
Pro+ — watch recording Unlock full PoC steps
CVE-2026-77384 High CVSS 7.5
libp2p: Circuit relay v2 server reservation refresh leaks abort listeners and allows remote resource exhaustion
Pro+ — watch recording Unlock full PoC steps
CVE-2022-4855 High CVSS 7.3
SourceCodester Lead Management System login.php sql injection
Success marker: VULNERABLE: proof token PROOF_d313690b04bacb99 exfiltrated from users.secret via UNION SQL injection on login.php username
Pro+ — watch recording Unlock full PoC steps
CVE-2025-5434 High CVSS 7.3
Aem Solutions CMS page.php sql injection
Success marker: VULNERABLE: UNION-based SQLi — ?id=1 UNION SELECT 1,2,3,token,5 FROM proof -- exfiltrated DB secret PROOF_1a64924d62703aff via page.php
Pro+ — watch recording Unlock full PoC steps
CVE-2026-56703 High CVSS 7.2
Adminer before 5.4.3 Remote Code Execution via SQLite VACUUM INTO
Success marker: VULNERABLE: RCE via VACUUM INTO - pwned.php in webroot exfiltrated proof token PROOF_4ab738f4b5efec16 from /flag.txt
Pro+ — watch recording Unlock full PoC steps
CVE-2022-24834 High CVSS 7.0
Heap overflow issue with the Lua cjson library used by Redis
Success marker: VULNERABLE: redis 6.2.12 (CVE-2022-24834) - vulnerable cjson library exercised via authenticated Lua script, 20M-element JSON decoded
Pro+ — watch recording Unlock full PoC steps
CVE-2024-7640 Medium CVSS 6.3
SourceCodester Kortex Lite Advocate Office Management System delete_register.php sql injection
Pro+ — watch recording Unlock full PoC steps
CVE-2024-7907 Medium CVSS 6.3
TOTOLINK X6000R cstecgi.cgi setSyslogCfg command injection
Success marker: VULNERABLE: command injection via rtLogServer in setSyslogCfg confirmed - shttpd executed attacker shell command, exfiltrated proof token: PROOF_af406cb0ffbadc88
Pro+ — watch recording Unlock full PoC steps
CVE-2024-23334 Medium CVSS 5.9
aiohttp.web.static(follow_symlinks=True) is vulnerable to directory traversal
Success marker: VULNERABLE: directory traversal read /flag.txt outside static root: PROOF_9e736e1850546420
Pro+ — watch recording Unlock full PoC steps
CVE-2020-5284 Medium CVSS 4.4
Directory Traversal in Next.js versions below 9.3.2
Success marker: VULNERABLE: directory traversal served file from inside .next/ — content: PROOF_8e23bdd236682452
Pro+ — watch recording Unlock full PoC steps
exxxxxxxxxxx 路径遍历漏洞
Success marker: VULNERABLE: directory traversal read /proof.txt outside web root via GET /../../proof.txt (HTTP 200) — exfiltrated token PROOF_9924617552106ad5
Pro+ — watch recording Unlock full PoC steps
Code Injection in langgenius/dify
Success marker: VULNERABLE: code injection confirmed — injected python executed as uid=65537 and exfiltrated proof token PROOF_965ad5c743175ca5 via sandbox stdout
Pro+ — watch recording Unlock full PoC steps
Local File Inclusion in gradio-app/gradio
Success marker: VULNERABLE: LFI confirmed via /file= - PROOF_57accd2865027121 read from /app/gradio_cached_examples/secret_key.txt
Pro+ — watch recording Unlock full PoC steps

2

CVE-2026-44901 High CVSS 8.4
Wazuh Cluster DAPI Protocol Deserialization of Untrusted Data Remote Code Execution Vulnerability
Success marker: VULNERABLE: RCE as root confirmed via DAPI merge — exec payload exfiltrated proof token from /flag.txt: PROOF_fdd855fcca17a2c7
Pro+ — watch recording Unlock full PoC steps
CVE-2026-46343 High CVSS 7.5
Wazuh: Arbitrary File Deletion via Cluster Protocol – Incomplete Path Validation in end_receiving_file()
Success marker: VULNERABLE: arbitrary file deletion via end_receiving_file — /var/proofdir/wazuh_proof.txt (containing PROOF_183dbcb52f6ea897) deleted outside WAZUH_PATH by the wazuh user
Pro+ — watch recording Unlock full PoC steps

2

CVE-2026-72696 High CVSS 8.4
Grav CMS before 2.0.16 Symlink Following via createLockFile
Success marker: VULNERABLE: /tmp/gravlock/poc.lock symlink followed; proof_target.txt (was PROOF_42b4e449a74db8ef) overwritten with job id "poc"
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78637 High CVSS 7.3
Fdawgs node-poppler Argument Injection index.js pdfUnite argument injection
Success marker: VULNERABLE: pdfInfo("-v") returned "No Error" (the hyphen-prefixed file path was consumed as an option flag = argument injection); token retrieved: PROOF_22b3378ff755f704
Pro+ — watch recording Unlock full PoC steps

3

CVE-2026-55582 High CVSS 8.4
mcp-shell: Secure Mode Allowlist Bypass via Git Shell Alias
Success marker: VULNERABLE: uid=1000(mcpuser) RCE confirmed via git alias (!id executed through sh)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-79658 High CVSS 7.5
Ech0 before 5.0.1 Denial of Service via Accept-Language
Success marker: VULNERABLE: ReDoS measured net delta 423 ms (threshold 250 ms) from 1MiB underscore-heavy Accept-Language
Pro+ — watch recording Unlock full PoC steps
CVE-2026-79664 High CVSS 7.4
Ech0 before 4.7.3 Access Token Revocation Bypass
Pro+ — watch recording Unlock full PoC steps

4

CVE-2026-80186 High CVSS 7.6
Bluez: stack overflow in name2utf8 causes dos and potential code execution
Pro+ — watch recording Unlock full PoC steps
CVE-2026-79804 High CVSS 7.3
SililaWijesinghe Food Ordering System search.php sql injection
Success marker: VULNERABLE: UNION SQLi exfiltrated DB proof token PROOF_2918473e16b14ef1 via search.php
Pro+ — watch recording Unlock full PoC steps
CVE-2026-81491 High CVSS 7.3
boxpositron with-context-mcp index.ts project_folder path traversal
Pro+ — watch recording Unlock full PoC steps
CVE-2026-79786 High CVSS 7.1
Coroot 1.20.2 through 1.24.5 Unvalidated Redirect URI in MCP OAuth Client Registration
Pro+ — watch recording Unlock full PoC steps

5

CVE-2026-57171 High CVSS 7.7
Trestle is vulnerable to arbitrary file write via path traversal in author generate commands (Incomplete fix of CVE-2026-46345)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-80198 High CVSS 7.5
Kimai before 2.56.0 Information Disclosure via config() Twig Function
Success marker: VULNERABLE: config() exfiltrated secret "security.ldap.bind_password" (rendered value: PROOF_a69196d6700a33de) into the invoice document
Pro+ — watch recording Unlock full PoC steps
CVE-2026-81202 High CVSS 7.3
itsourcecode Payroll System CRUD Operation ajax.php delete missing authentication
Success marker: VULNERABLE: unauthenticated CRUD — delete returned deleted=1; proof token PROOF_300509938ae7e308 exfiltrated via unauth read
Pro+ — watch recording Unlock full PoC steps
CVE-2026-81203 High CVSS 7.3
SourceCodester Simple Online Food Ordering System ajax.php login2 sql injection
Success marker: VULNERABLE: UNION SQLi on /admin/ajax.php?action=login2 (email arg) exfiltrated DB column flag = PROOF_2005d2342fc79ae6 from tbl_admin
Pro+ — watch recording Unlock full PoC steps
CVE-2026-81421 High CVSS 7.3
ddfourtwo sentry-selfhosted-mcp raw_sentry_api server-side request forgery
Success marker: VULNERABLE: SSRF confirmed — raw_sentry_api fetched http://127.0.0.1:8931/flag via endpoint arg; token=PROOF_61b2b34e2b8a7582
Pro+ — watch recording Unlock full PoC steps

2

CVE-2026-61556 High CVSS 8.7
LiquidJS: An infinite loop vulnerability in `strip_html` filter
Success marker: VULNERABLE: strip_html("a<") did not return within 10s -> infinite loop / ReDoS confirmed; proof token PROOF_893a8ee2cdabc3ad
Pro+ — watch recording Unlock full PoC steps
CVE-2026-63188 High CVSS 8.7
logto-tunnel serves files outside --experience-path via path traversal
Success marker: VULNERABLE: path traversal served /opt/secret.txt (PROOF_b3a2a3b4ced2308d) — static file proxy escaped the experience path
Pro+ — watch recording Unlock full PoC steps

7

CVE-2026-55581 High CVSS 8.4
mcp-shell: Secure Mode Allowlist Bypass via Default `/bin/bash` Executable
Success marker: VULNERABLE: bash -c arbitrary command ran outside the allowlist; proof token exfiltrated via /proof.sh
Pro+ — watch recording Unlock full PoC steps
CVE-2026-49825 High CVSS 8.2
lxml: javascript: URL bypass in Cleaner via xlink:href
Success marker: VULNERABLE: javascript: URL bypassed lxml Cleaner; proof token exfiltrated: PROOF_f051804e047a6b04
Pro+ — watch recording Unlock full PoC steps
CVE-2026-55538 High CVSS 7.3
PraisonAI: [Auth Bypass] `praisonai serve agents --api-key` is silently ignored — agent-invocation routes (`POST /agents`, `POST /agents/{agent_name}`) run unauthenticated
Success marker: VULNERABLE: unauthenticated POST /agents reached agent execution (HTTP 500, not 401/403); api_key silently ignored — auth bypass
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76795 High CVSS 7.3
AeternaLabsHQ PullMD REST API Endpoint api server-side request forgery
Success marker: VULNERABLE: SSRF confirmed — PullMD 3.2.0 /api fetched attacker-controlled loopback URL and exfiltrated proof token PROOF_154efc99e63b696a
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76987 High CVSS 7.3
liftoff-sr CIPster Generic Attribute Logic ciptypes.h SetAttrData memory corruption
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76635 High CVSS 7.2
baserCMS < 5.3.0 SQL Injection and Code Injection via BcDatabaseService.php
Success marker: VULNERABLE: PHP code outside class definition in schema file executed during loadSchema; proof token PROOF_8f25092720bb41c7 exfiltrated from /flag.txt
Pro+ — watch recording Unlock full PoC steps
CVE-2026-55537 High CVSS 7.1
PraisonAI: Webhook SSRF via DNS fail-open in `JobSubmitRequest.validate_webhook_url()` — bypass of CVE-2026-40114
Pro+ — watch recording Unlock full PoC steps

6

CVE-2026-78386 High CVSS 8.7
Unauthenticated Disclosure of Scraping Credentials and Bypass Configuration via RansomLook API
Pro+ — watch recording Unlock full PoC steps
CVE-2026-40345 High CVSS 8.2
deepmerge-ts: Stack exhaustion when merging recursive object graphs
Success marker: VULNERABLE: RangeError: Maximum call stack size exceeded; per-run token PROOF_905ec05acd7bf854 exfiltrated from /flag.txt
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76842 High CVSS 8.2
Mercado Pago Node.js SDK through 3.4.0 Path Injection via Unencoded Identifiers in Payment Clients
Pro+ — watch recording Unlock full PoC steps
CVE-2026-76844 High CVSS 7.4
webpack-dev-middleware Path Traversal via Offset Slice on a Non-Slash-Terminated publicPath
Success marker: VULNERABLE: retrieved PROOF_b79b3e4a4be937ef via /assets../.env (read /app/.env one dir above output)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-77019 High CVSS 7.3
CodeAstro Apartment Visitor Management System forgotpw.php sql injection
Success marker: VULNERABLE: SQLi on secode in forgotpw.php exfiltrated SECRET=PROOF_51a9e7302202936d
Pro+ — watch recording Unlock full PoC steps
CVE-2026-77020 High CVSS 7.3
CodeAstro Apartment Visitor Management System password-recovery.php sql injection
Success marker: VULNERABLE: SQLi in password-recovery.php exposed recovery_secret=PROOF_fd19cb98d7293d2b
Pro+ — watch recording Unlock full PoC steps

6

CVE-2026-73040 High CVSS 8.8
Dockge Path Traversal via Unvalidated Stack Name Allows Arbitrary Compose and .env Disclosure and Arbitrary Directory Deletion
Success marker: VULNERABLE: path traversal via stack name "../../target" disclosed /app/target/.env containing PROOF_664c2a93e48ec221
Pro+ — watch recording Unlock full PoC steps
CVE-2026-63383 High CVSS 8.7
Libevent: decode_tag_internal() can lead to out-of-bounds read
Success marker: VULNERABLE: ASAN heap-buffer-overflow (read size 1) in decode_tag_internal (CVE-2026-63383) [trigger] OOB read reached planted token: PROOF_1cfbbdaa02b635b3
Pro+ — watch recording Unlock full PoC steps
CVE-2026-50190 High CVSS 8.6
Shaarli vulnerable to stored XSS via raw bookmark title in document <title> element on public permalink page
Success marker: VULNERABLE: unescaped bookmark title in <title> — injected <script> present in raw HTML: </title><script>document.write("PROOF_aef707c72ac85250")</script>
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78136 High CVSS 7.8
CHIRP 代码注入漏洞
Success marker: VULNERABLE: eval injection confirmed - crafted CSV TXSIG expression executed and exfiltrated token PROOF_7122b22f4caa1ce0 to /tmp/exfil.txt (rtone=103.5)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-55893 High CVSS 7.3
Capstone SH disassembler `set_reg_n` heap buffer overflow via crafted SH2A FPU bytecode
Success marker: VULNERABLE: free(): invalid pointer (exit 134) - SH FPU heap buffer overflow in Capstone
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78056 Medium CVSS 6.3
sambitraj Student-Management-System Dashboard sql injection
Success marker: VULNERABLE: SQLi via roll_no — proof token PROOF_e0e3946c1e3ebbc4 exfiltrated from proof table through the injected UNION SELECT
Pro+ — watch recording Unlock full PoC steps

5

CVE-2026-77751 High CVSS 8.8
Path Traversal in MISP Object Template Resolution During STIX Import and Export in misp-stix library
Pro+ — watch recording Unlock full PoC steps
CVE-2026-72848 High CVSS 8.6
langchain-community SitemapLoader Does Not Apply restrict_to_same_domain to Nested Sitemap Index Entries, Allowing Server-Side Request Forgery
Pro+ — watch recording Unlock full PoC steps
CVE-2026-72860 High CVSS 8.5
9router Server-Side Request Forgery via /api/provider-nodes/validate Because the IPv4-Mapped IPv6 Denylist Check Is Unreachable
Pro+ — watch recording Unlock full PoC steps
CVE-2026-66393 High CVSS 7.5
NLTK before 3.9.4 Denial of Service via JSONTaggedDecoder
Success marker: VULNERABLE: unhandled RecursionError: maximum recursion depth exceeded in JSONTaggedDecoder.decode_obj — process crashed (DoS)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-72818 High CVSS 7.5
NLTK TweetTokenizer URL Pattern Backtracks Catastrophically on Naked-Domain-Like Input
Success marker: VULNERABLE: ReDoS confirmed - 5001-char input stalled tokenizer for 4288 ms (catastrophic backtracking in URLS naked-domain branch)
Pro+ — watch recording Unlock full PoC steps

8

CVE-2026-62677 High CVSS 8.8
Omnigent: Unvalidated os_env.cwd in agent bundle yields arbitrary host filesystem access on runners without OMNIGENT_RUNNER_WORKSPACE
Success marker: VULNERABLE: sys_os_read via attacker-controlled os_env.cwd=/root/omnigent_secrets exfiltrated PROOF_ed11a79ef2141c52
Pro+ — watch recording Unlock full PoC steps
CVE-2026-71963 High CVSS 8.8
Hermes Agent 0.18.2 - 0.21.0 RCE via git core.fsmonitor Config Injection
Success marker: VULNERABLE: RCE via git core.fsmonitor config injection - proof token PROOF_f02f5301d82cea58 exfiltrated by attacker-controlled fsmonitor command
Pro+ — watch recording Unlock full PoC steps
CVE-2026-41449 High CVSS 7.8
UAC < 3.3.0 Command Injection via run_command.sh
Success marker: VULNERABLE: command injection confirmed - injected command wrote PROOF_69638f3baa6137cf to /tmp/proof.txt (eval in _run_command, run_command.sh)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-41450 High CVSS 7.8
UAC < 3.3.0 Command Injection via command_collector.sh
Success marker: VULNERABLE: arbitrary command executed via %line% injection; proof token PROOF_a610d96b1f12d0f0 was exfiltrated through the eval of the %line%-substituted command into /output
Pro+ — watch recording Unlock full PoC steps
CVE-2026-41451 High CVSS 7.8
UAC < 3.3.0 Command Injection via User Substitution in parse_artifact.sh
Success marker: VULNERABLE: RCE confirmed — crafted /etc/passwd user "pwn$(cp /flag.txt /uac_pwned)"; /uac_pwned contains token: PROOF_6e7a09c41922e583
Pro+ — watch recording Unlock full PoC steps
CVE-2026-55241 High CVSS 7.5
Checkmate: Pre-auth Denial of Service via File Upload on Registration
Success marker: VULNERABLE: node RSS grew from 156MB to 1108MB (+952MB, ~7x amplification) after 20 concurrent 100MB profileImage uploads — memory-exhaustion DoS
Pro+ — watch recording Unlock full PoC steps
CVE-2026-71862 High CVSS 7.5
Checkmate: Sensitive Bearer Token Exposure via Public Status Pages When showURL Setting is Enabled
Success marker: VULNERABLE: unauthenticated /api/v1/status-page/cve-page leaked monitor secret PROOF_563c1caed42db72a
Pro+ — watch recording Unlock full PoC steps
CVE-2026-49114 High CVSS 7.1
ONNX symlink-following and path-traversal arbitrary file write
Success marker: VULNERABLE: tensor x bytes (4000B) appended into /flag.txt through pre-planted symlink /tmp/x -> /flag.txt; proof token PROOF_0b9172ba7b6795de exfiltrated
Pro+ — watch recording Unlock full PoC steps

5

CVE-2026-62316 High CVSS 8.8
Microsoft UFO: DNS Rebinding → Unauthenticated File Read / Command Execution
Success marker: VULNERABLE: /mcp answered with Host: attacker.com (no Host/Sec-Fetch-Site validation); execute_command 'cat /flag.txt' returned PROOF_47a6b3d47fae4f92
Pro+ — watch recording Unlock full PoC steps
CVE-2026-77354 High CVSS 8.7
kin-openapi: Uncontrolled resource consumption in openapi3filter deepObject query parameter decoding
Success marker: VULNERABLE: uncontrolled heap allocation (~1.6GB) exceeds 1GB mem_limit -> reproducer OOM-killed (exit 137)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-61824 High CVSS 8.2
Defuddle: XSS via unescaped attribute interpolation in site extractors
Success marker: VULNERABLE: proof token PROOF_325147b177739780 found in extracted image HTML - unescaped og:image interpolation confirmed
Pro+ — watch recording Unlock full PoC steps
CVE-2026-68508 High CVSS 7.8
Hydra: hydra.utils.instantiate with untrusted config can lead to code execution
Success marker: VULNERABLE: hydra-core 1.3.3 — untrusted config target "os.system" executed; retrieved proof token PROOF_c660833ca1783d4e from /proof.txt via docker exec (RCE confirmed)
Pro+ — watch recording Unlock full PoC steps
CVE-2026-54134 High CVSS 7.0
OctoPrint: File exfiltration possible via query parameters on upload endpoints
Success marker: VULNERABLE: reserved-field query-param injection; token PROOF_839a15ff482fb83f exfiltrated via /api/files/local?path=/flag.txt
Pro+ — watch recording Unlock full PoC steps

6

CVE-2026-78209 High CVSS 8.2
exceljs through 4.4.0 CSV Formula Injection via Unescaped Cell Values
Success marker: VULNERABLE: unescaped formula in exported CSV: user_input,"=cmd|'/bin/sh -c ""echo PROOF_f6fba9086be3b9a3 > /tmp/pwned"""
Pro+ — watch recording Unlock full PoC steps
CVE-2026-49360 High CVSS 7.8
Recce server has unauthenticated SQL execution that allows local file read/write through DuckDB
Success marker: VULNERABLE: unauthenticated query read /flag.txt -> PROOF_1e14a3b047408c95
Pro+ — watch recording Unlock full PoC steps
CVE-2026-57998 High CVSS 7.8
better-npm-audit OS Command Injection via registry flag
Success marker: VULNERABLE: OS command injection wrote token to /proof.txt: PROOF_f3e7f5fb068ab487 --json
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78206 High CVSS 7.5
exceljs through 4.4.0 Uncontrolled Resource Consumption via Unbounded xlsx Decompression
Success marker: VULNERABLE: unbounded xlsx decompression DoS — RSS grew by 612 MB (bomb expanded 300 MB) proof token: PROOF_a65d8604f3ac155b
Pro+ — watch recording Unlock full PoC steps
CVE-2026-78208 High CVSS 7.5
exceljs through 4.4.0 Path Traversal via Unvalidated addImage filename
Success marker: VULNERABLE: /root/flag.txt (PROOF_fe22008b0f9cdaa1) read via unvalidated addImage filename and embedded as xlsx media part xl/media/image1.undefined
Pro+ — watch recording Unlock full PoC steps