Logo b4r
blog cve me tags projects
  1. Tags
  2. cve
  • a stored xss in silverstripe page breadcrumbs

    cve-2026-54717 let attacker-controlled page titles execute javascript in the silverstripe cms page list view through unescaped breadcrumb rendering

    b b4r
    June 24, 2026
    3 min read
    vulnerability cve web exploitation xss
  • an idor in xibo notification export

    cve-2026-50539 let any authenticated xibo cms user download arbitrary notification attachments through missing object-level authorization on notification export

    b b4r
    June 22, 2026
    3 min read
    vulnerability cve web exploitation idor
  • an ssrf in cloudreve through remote download

    cve-2026-54562 let non-admin cloudreve users with remote download permission fetch loopback and internal-only urls, then read the imported response body from their own files

    b b4r
    June 21, 2026
    4 min read
    vulnerability cve web exploitation ssrf
  • a delete bypass in misp through crudcomponent

    cve-2026-10860 let a low-privileged galaxy editor delete another organisation galaxy in misp through a delete-path validation bypass

    b b4r
    June 21, 2026
    4 min read
    vulnerability cve web exploitation authorization
  • an idor in winter fileupload

    cve-2026-54256 let any authenticated backend user in wintercms target unrelated attachment records through the backend fileupload widget

    b b4r
    June 21, 2026
    4 min read
    vulnerability cve web exploitation idor
  • a public link bug in invoiceshelf

    cve-2026-55383 let public customer document tokens cross company boundaries in invoiceshelf through emaillog type confusion and missing expiry checks

    b b4r
    June 17, 2026
    4 min read
    vulnerability cve web exploitation idor
  • an event media authz bug in zoneminder

    cve-2026-54258 let low-privileged zoneminder users fetch private event media from monitors they were not allowed to access

    b b4r
    June 13, 2026
    3 min read
    vulnerability cve web exploitation authorization
  • a second-order ddns authz bug in nezha

    cve-2026-53521 let a stored future ddns profile id turn into another user ddns profile context later in nezha

    b b4r
    June 10, 2026
    3 min read
    vulnerability cve web exploitation authorization
  • another sharp authz bug, this time in quick creation

    cve-2026-53634 let authenticated sharp users bypass create authorization through quick creation command endpoints

    b b4r
    June 10, 2026
    2 min read
    vulnerability cve web exploitation laravel
  • an idor in openproject through meeting agenda items

    cve-2026-49355 exposed private work package data through the single meeting agenda item api in openproject

    b b4r
    June 8, 2026
    3 min read
    vulnerability cve web exploitation idor
  • two wallos cves from the same trust mistake

    cve-2026-50198 and cve-2026-50199 in wallos both came from cross-user references being accepted first and trusted later

    b b4r
    June 5, 2026
    4 min read
    vulnerability cve web exploitation
  • a neat little cve in filament

    cve-2026-48067 came from a scope mismatch in filament AttachAction and AssociateAction

    b b4r
    May 25, 2026
    3 min read
    vulnerability cve web exploitation laravel
  • cross-tenant credential disclosure in itflow

    cve-2026-47755 let a low-privileged authenticated user pull another client credentials and totp secrets in itflow

    b b4r
    May 25, 2026
    3 min read
    vulnerability cve web exploitation idor
  • six cves in one open-source e-commerce project

    how i reported six shopper cves spanning authorization bypass, privilege escalation, race conditions, idor, and xss

    b b4r
    May 22, 2026
    5 min read
    vulnerability advisory cve web exploitation laravel
  • my first CVE, CVE-2026-44692

    authenticated sharp users could download unrelated laravel storage objects through the generic download endpoint

    b b4r
    May 8, 2026
    7 min read
    vulnerability cve web exploitation laravel
  • the first chall about CVE-2025-5518 i've solved

    it is easy tho

    b b4r
    December 30, 2025
    6 min read
    vulnerability cve web exploitation ctf
© 2026 All rights reserved.