-
Notifications
You must be signed in to change notification settings - Fork 3.5k
Pull requests: projectdiscovery/nuclei-templates
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
feat(workflow): add phpldapadmin workflow to run ldap templates
#16367
opened Jun 10, 2026 by
SadDrummer
Loading…
2 tasks done
CVE-2026-9290 - WP User Manager – User Profile Builder & Membership - Local File Inclusion
Done
Ready to merge
#16366
opened Jun 10, 2026 by
theamanrawat
Contributor
Loading…
2 tasks
Add Ivanti Sentry Panel
Done
Ready to merge
#16363
opened Jun 10, 2026 by
DhiyaneshGeek
Member
Loading…
1 of 2 tasks
Create postiz-registration-enabled.yaml for public account creation
#16360
opened Jun 9, 2026 by
Th3l0newolf
Contributor
Loading…
CVE-2026-3300 - Everest Forms Pro <= 1.9.12 - Unauthenticated RCE via Calculation Formula Injection
Done
Ready to merge
#16358
opened Jun 9, 2026 by
DhiyaneshGeek
Member
Loading…
1 of 2 tasks
CVE-2026-49777 - WordPress Product Slider Pro for WooCommerce < 3.5.4 - Supply Chain Backdoor RCE (KEV)
Done
Ready to merge
#16354
opened Jun 9, 2026 by
DhiyaneshGeek
Member
Loading…
1 of 2 tasks
Create CVE-2025-25296.yaml - Label Studio < 1.16.0 - Reflected XSS
Done
Ready to merge
#16350
opened Jun 8, 2026 by
Akokonunes
Contributor
Loading…
1 of 2 tasks
Enrich 4x Perforce templates (now CVE-2026-6043)
#16349
opened Jun 7, 2026 by
flyingllama87
Contributor
Loading…
CVE-2026-31831 (Tautulli <= 2.16.1 - Unauthenticated Path Traversal)
#16345
opened Jun 5, 2026 by
WRG-11
Contributor
Loading…
fix(CVE-2026-32230): avoid false positive
#16343
opened Jun 4, 2026 by
gnuletik
Contributor
Loading…
2 tasks done
CVE-2026-46364 - phpMyFAQ <= 4.1.1 - Unauthenticated SQL Injection via User-Agent Header
Done
Ready to merge
#16342
opened Jun 4, 2026 by
DhiyaneshGeek
Member
Loading…
1 of 2 tasks
CVE-2026-33476 (SiYuan <= v3.6.1 - Unauthenticated Path Traversal)
Done
Ready to merge
good first issue
Good for newcomers
#16335
opened Jun 3, 2026 by
WRG-11
Contributor
Loading…
feat(cve): add DOMPurify sanitizer bypass detection template (CVE-202…
#16334
opened Jun 3, 2026 by
Galaxy-sc
Contributor
Loading…
2 tasks done
Update exposed-dockerd.yaml
Done
Ready to merge
#16332
opened Jun 3, 2026 by
snicket2100
Loading…
1 of 2 tasks
Create hexstrike-ai-config.yaml
Done
Ready to merge
#16331
opened Jun 3, 2026 by
icarot
Contributor
Loading…
1 of 2 tasks
Update mongodb-unauth.yml (didn't work for MongoDB 6.0+)
#16327
opened Jun 2, 2026 by
snicket2100
Loading…
2 tasks done
CVE-2026-40151 - PraisonAI AgentOS - Unauthenticated Agent Information Disclosure
Done
Ready to merge
#16317
opened Jun 1, 2026 by
Aryu-RU
Contributor
Loading…
2 tasks done
Add CVE-2026-8181 - Burst Statistics Authentication Bypass to Admin Takeover
#16308
opened May 30, 2026 by
jeongjihyunn
Loading…
1 of 2 tasks
Add CVE-2026-25895 FUXA templates (info-leak + file-write)
#16307
opened May 30, 2026 by
natie17
Loading…
3 of 4 tasks
Add CVE-2026-44338 - PraisonAI Authentication Bypass
Done
Ready to merge
good first issue
Good for newcomers
#16305
opened May 30, 2026 by
jnoza
Loading…
1 task done
Add CVE-2026-27886: Strapi <=5.36.x Unauthenticated Admin Credential Enumeration
#16304
opened May 29, 2026 by
zeroc00I
Contributor
Loading…
Convert Bitrix open redirect template to CVE-2008-2052
#16301
opened May 29, 2026 by
AI-DEV-BOT
Loading…
Add Unauthenticated access to SeaweedFS Filer panel
#16300
opened May 29, 2026 by
Th3l0newolf
Contributor
Loading…
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.