The catalog
Browse CVE Reproductions
249 verified reproductions
Popular records
Top viewed reproduction records
Frequently opened evidence pages with direct links to runnable proof and permanent REPRO IDs.
REPRO-2026-00356 WordPress Core unauthenticated path traversal in get_page_template() page-template resolution leading to conditional RCE REPRO-2026-00354 GitLab CE/EE unauthenticated path traversal in Repository Commits API leads to arbitrary file read REPRO-2026-00357 Next.js next/og ImageResponse RCE via Satori improper SVG escaping (critical) REPRO-2026-00341 JFrog Artifactory critical unauthenticated authentication bypass leading to administrative takeover REPRO-2026-00337 Keycloak reset-credentials flow: unauthenticated account takeover (CWE-640) REPRO-2026-00355 ArangoDB full-chain: unauthenticated %5f URL auth bypass (GHSA-rrgq-978q-36mq) + client-controlled isSystem task escalation (GHSA-rvhw-4hpw-9vrx) -> root-context file write -> host RCE
249 reproductions
Clear filters Active CVE
REPRO-2026-00184 published
Temporal Server: batcher worker cross-namespace authorization bypass (BatchActivityWithProtobuf)
CVE-2026-5199 low Security
Variant found
go
temporal
72m 49s May 28, 2026
REPRO-2026-00183 published
MapServer: heap-buffer-overflow in SLD Categorize parser (msSLDParseRasterSymbolizer)
CVE-2026-33721 medium Security
Variant found
c
mapserver
14m 33s May 28, 2026
REPRO-2026-00173 published
wolfSSL: ECCSI universal signature forgery via missing scalar range check
CVE-2026-5466 high Security
Variant found
source
wolfssl
16m 28s May 28, 2026
REPRO-2026-00172 published
wolfSSL: EVP ChaCha20-Poly1305 decryption returns plaintext without verifying authentication tag
CVE-2026-5479 high Security
Variant found
source
wolfssl
12m 46s May 28, 2026
REPRO-2026-00171 published
nginx WebDAV: heap-buffer-overflow in COPY/MOVE with alias directive
CVE-2026-27654 high Security
Variant found
source
nginx
21m 40s May 28, 2026
REPRO-2026-00170 published
jq: integer overflow in jv_string_concat triggers heap buffer overflow on large strings
CVE-2026-32316 high Security
Variant found
github
jq
32m 33s May 28, 2026
REPRO-2026-00169 published
DataEase: stacked-query SQL injection via previewSql with allowMultiQueries
CVE-2026-40900 high Security
Variant found
github
dataease
58m 29s May 26, 2026
REPRO-2026-00168 published
DataEase: authentication bypass via password-derived HMAC JWT signing key
CVE-2026-23958 critical Security
Variant found
github
dataease
100m 11s May 25, 2026
REPRO-2026-00167 published
DataEase: Quartz JobStore Java deserialization RCE via QRTZ_JOB_DETAILS
CVE-2026-40901 high Security github
dataease
179m 9s May 25, 2026
REPRO-2026-00165 published
DataEase: JDBC parameter blocklist bypass via Lombok @Data setter exposure
CVE-2026-40899 medium Security
Variant found
github
dataease
111m 23s May 25, 2026
REPRO-2026-00160 published
Arelle: unauthenticated RCE via /rest/configure plugins URL parameter
CVE-2026-42796 critical Security
Variant found
pip
arelle
48m 18s May 23, 2026
REPRO-2026-00159 published
libheif: heap-buffer-overflow write decoding 1x4 grid of odd-height tiles
CVE-2026-32740 high Security
Variant found
c
libheif
41m 53s May 23, 2026
REPRO-2026-00158 published
goshs: PUT upload accepts cross-origin requests without CSRF token
CVE-2026-42091 medium Security
Variant found
go
github.com/patrickhener/goshs
35m 17s May 23, 2026
REPRO-2026-00157 published
Fiber v3: cache middleware key collision leaks responses across different query strings
CVE-2026-30246 medium Security
Variant found
go
github.com/gofiber/fiber/v3
27m 11s May 23, 2026
REPRO-2026-00156 published
Yii2: local file inclusion via View::renderPhpFile extract() of caller-controlled params
CVE-2026-39850 high Security
Variant found
composer
yiisoft/yii2
15m 11s May 23, 2026
REPRO-2026-00155 published
gitoxide (gix-fs): symlink worktree escape on checkout writes files outside the worktree
CVE-2026-44471 high Security
Variant found
cargo
gix-fs
33m 22s May 22, 2026
REPRO-2026-00153 published
Jupyter Server: path traversal via faulty startswith() root containment check
CVE-2026-35397 high Security
Variant found
pip
jupyter-server
25m 14s May 22, 2026
REPRO-2026-00152 published
apko: symlink-following path traversal writes files outside the build root
CVE-2026-42574 high Security
Variant found
go
apko
20m 23s May 22, 2026
REPRO-2026-00151 published
Twig: sandbox bypass via SourcePolicy filter check enables arbitrary PHP callables
CVE-2026-24425 high Security
Variant found
composer
twig/twig
13m 7s May 22, 2026
REPRO-2026-00150 published
PhpSpreadsheet: SSRF via unsafe stream wrapper in IOFactory::load()
CVE-2026-34084 critical Security
Variant found
composer
phpoffice/phpspreadsheet
12m 53s May 22, 2026