Skip to content

The catalog

Browse Reproductions

276 verified reproductions

RSS Feed

276 reproductions

REPRO-2026-00233 published

Grav CMS unsafe deserialization and command injection RCE

CVE-2026-56700 critical Security Variant found
getgrav/grav (Composer)
53m 20s Jul 6, 2026
REPRO-2026-00232 published

Page Builder CK unauthenticated arbitrary file upload to RCE

CVE-2026-56290 critical Security Variant found
joomlack/page_builder_ck
23m 44s Jul 6, 2026
REPRO-2026-00231 published

HTTP/2 request smuggling in Vinyl Cache and Varnish Cache (VSV00019)

CVE-2026-50052 low Security Variant found github
varnish/varnish
28m 5s Jul 6, 2026
REPRO-2026-00230 published

Widget Options WordPress plugin contributor remote code execution

CVE-2026-54823 critical Security Variant found
MarketingFire/Widget Options
28m 45s Jul 6, 2026
REPRO-2026-00229 published

CivetWeb PUT + SSI #exec RCE

CVE-VINEXT-CIVETWEB-PUT-SSI-RCE high Security Variant found github
civetweb/civetweb
34m 27s Jul 4, 2026
REPRO-2026-00228 published

nginx charset module segfaults when charset_map uses utf-8 as source charset, causing a NULL pointer dereference and DoS.

high Security generic
nginx
9m 18s Jul 4, 2026
REPRO-2026-00227 published

Grafana unified storage IAM service account listing lacked RBAC filtering, allowing low-privileged users to enumerate service accounts.

high Security Go
grafana/grafana
31m 40s Jul 4, 2026
REPRO-2026-00226 published

Grafana IAM LIST authorization could be bypassed for folder-scoped CRDs when a user had wildcard resource permissions, returning `All: true` without folder-level checks.

high Security Go
grafana/grafana
22m 1s Jul 4, 2026
REPRO-2026-00225 published

Node.js WebCrypto EdDSA verification accepted small-order points, allowing signature verification bypass for Ed25519/Ed448 before the 29890721 fix.

high Security other
nodejs
7m 45s Jul 4, 2026
REPRO-2026-00224 published

Node.js task runner improperly escapes single quotes on Unix, enabling shell syntax breakouts and potential command injection via `node --run` arguments.

high Security nodejs
node
47m 12s Jul 4, 2026
REPRO-2026-00223 published

phpBB authentication bypass/account hijacking via OAuth login-link flow with arbitrary auth_provider=apache

CVE-2026-48611 critical Security Variant found github
phpbb/phpbb
22m 9s Jul 4, 2026
REPRO-2026-00222 published

SimpleHelp OIDC authentication accepts unsigned/forged ID tokens, enabling remote authentication bypass and possible MFA bypass in versions 5.5.15 and earlier and 6.0 prereleases prior to the fixed release.

CVE-2026-48558 critical Security Variant found other (commercial, Java-based server application)
SimpleHelp
94m 25s Jul 4, 2026
REPRO-2026-00221 published

Linux kernel FUSE readdir cache out-of-bounds write

CVE-2026-31694 high Security Variant found
Linux kernel (FUSE subsystem)
63m 5s Jul 3, 2026
REPRO-2026-00220 published

JuiceFS through 1.3.1 exposes debug/metrics endpoints via shared http.DefaultServeMux, enabling authentication bypass and leakage of sensitive metadata connection strings, with potential DoS via profiling handlers.

CVE-2026-59092 high Security Variant found go
JuiceFS (juicedata/juicefs)
14m 46s Jul 3, 2026
REPRO-2026-00219 published

AutoBangumi before 3.2.8 seeds a default admin account on empty databases, allowing unauthenticated users to log in with publicly known default credentials and gain full control.

CVE-2026-58466 critical Security Variant found standalone application (Python/FastAPI)
EstrellaXD/Auto_Bangumi
14m 56s Jul 3, 2026
REPRO-2026-00218 published

fast-mcp-telegram <=0.19.0 allows bearer token path traversal to authenticate as the default telegram.session, bypassing reserved session name protections and enabling unauthorized access to Telegram MCP tools.

CVE-2026-52830 critical Security Variant found pip
fast-mcp-telegram
17m 51s Jul 3, 2026
REPRO-2026-00217 published

9router hardcoded default fallback JWT secret allows authentication bypass

CVE-2026-49352 critical Security Variant found github
decolua/9router
13m 50s Jul 3, 2026
REPRO-2026-00212 published

DirtyClone Linux kernel page-cache corruption privilege escalation

CVE-2026-43503 high Security Variant found linux
Linux kernel
70m 55s Jul 3, 2026
REPRO-2026-00211 published

Linux kernel bonding can inherit header_ops from non‑Ethernet slaves (e.g., GRE), causing type confusion and kernel crashes when dev_hard_header() is invoked on the bond device.

CVE-2026-43456 high Security Variant found linux
Linux kernel (bonding driver)
64m 59s Jul 3, 2026
REPRO-2026-00210 published

sigstore-js Insufficient Verification of Data Authenticity

CVE-2026-48816 medium Security Variant found github
sigstore/sigstore-js
18m 54s Jul 2, 2026