Initial Access Intelligence
The "Initial Access Intelligence" module is a vital tool for cybersecurity, designed to scan GitHub repositories for the latest exploit and proof-of-concept codes for new vulnerabilities. It provides users with crucial updates on potential security threats, enabling proactive defense measures. This module helps close the gap between vulnerability discovery and patching, significantly enhancing system security.
-
April 11, 2026, 7:22 p.m.
CVE-2026-23499 - Saleor vulnerable to stored XSS via Unrestricted File Upload
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:15 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2025-66204 - WBCE CMS allows brute-force protection bypass using X-Forwarded-For header
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:15 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2025-67875 - ChurchCRM has stored XSS via Person Property Assignment Leading to Admin Session Hijacking
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2025-67876 - ChurchCRM has Stored XSS in Group Role Name Leading to Admin Session Hijacking
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2025-65094 - WBCE CMS is Vulnerable to Privilege Escalation via Group ID Manipulation (IDOR)
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2026-23491 - InvoicePlane has Unauthenticated Path Traversal in Guest Controller
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2026-21857 - Redaxo has Path Traversal in Backup Addon Leading to Arbitrary File Read
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2026-25514 - FacturaScripts has SQL Injection in Autocomplete Actions
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2026-25513 - FacturaScripts has SQL Injection in API ORDER BY Clause
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too. -
April 11, 2026, 7:22 p.m.
CVE-2026-24419 - OpenSTAManager has a SQL Injection in the Prima Nota module
Updated: 1 month, 3 weeks ago0 stars 0 fork 0 watcherBorn at : April 11, 2026, 7:14 p.m. This repo has been linked 1 different CVEs too.