CVE Discoveries
Vulnerabilities discovered and responsibly disclosed. Each CVE represents a real security issue that was fixed to protect users.
3
Total CVEs
3
Critical
0
High
100%
Disclosed
CVE-2026-80138Critical9.8ClipBucket V5 OS Command Injection
OS Command Injection via Installer php_cli_filepath Parameter
Product:ClipBucket V5
Affected:5.5.1 - 5.5.3-#153
CVE-2026-77914Critical7.1rConfig Path Traversal
Arbitrary File Read via Export Download Endpoint
Product:rConfig Core
Affected:8.0.0 - 8.2.13
CVE-2026-77915Critical10.0rConfig Unauthorized Admin Registration
Unauthenticated Admin Account Creation via Duplicate Auth Routes
Product:rConfig Core
Affected:8.0.0 - 8.2.13
Responsible Disclosure
All vulnerabilities were discovered through ethical security research and responsibly disclosed to affected vendors before public release.