Socials

CVE

Click a card to see technical details, links and PoC.

CVE-2025-34157 Public

Stored XSS in Coolify’s project delete flow ( Critical , 9.4 CVSS)

CVE-2025-34159 Public

Critical RCE in Coolify deployment — arbitrary Docker Compose directives injection. ( Critical , 9.4 CVSS)

CVE-2025-34161 Public

Authenticated low-privileged RCE via unsanitized shell use in “Git Repository”. ( Critical , 9.4 CVSS)

CVE-2025-34226 Public

OpenPLC Runtime persistent DoS on /upload-program-action. ( High , 7.1 CVSS)

CVE-2025-54962 Public

Arbitrary file uploads as profile images — stored XSS / CSRF. ( Medium , 6.4 CVSS)

New CVEs Soon ! Private

Stay tuned for more exciting vulnerabilities and exploits!

About

Nothing to see here... yet!
(But something cool is cooking)

Z
Z
Z
Z
Eyodav avatar

Blogs

Nothing to see here... yet!
(But something cool is cooking)

Z
Z
Z
Z
Eyodav avatar