Posts

CVE-2025-67728 - Unauthenticated OS Command Injection (RCE) in Fireshare

How I discovered CVE-2025-67728. An OS command injection vulnerability in Fireshare

Read post →

CVE-2025-64759 - Stored XSS in Homarr

How I discovered CVE-2025-64759. A Stored XSS vulnerability in Homarr

Read post →

Exploiting CVE-2024-43451 - NTLM Hash Disclosure

CVE-2024-43451 is a vulnerability that, when exploited, discloses the NTLM hash of the targeted user to the attacker. It was discovered b...

Read post →