CVE Discoveries

Vulnerabilities discovered and responsibly disclosed. Each CVE represents a real security issue that was fixed to protect users.

3
Total CVEs
3
Critical
0
High
100%
Disclosed
CVE-2026-80138Critical9.8

ClipBucket V5 OS Command Injection

OS Command Injection via Installer php_cli_filepath Parameter

Product:ClipBucket V5
Affected:5.5.1 - 5.5.3-#153
CVE-2026-77914Critical7.1

rConfig Path Traversal

Arbitrary File Read via Export Download Endpoint

Product:rConfig Core
Affected:8.0.0 - 8.2.13
CVE-2026-77915Critical10.0

rConfig Unauthorized Admin Registration

Unauthenticated Admin Account Creation via Duplicate Auth Routes

Product:rConfig Core
Affected:8.0.0 - 8.2.13

Responsible Disclosure

All vulnerabilities were discovered through ethical security research and responsibly disclosed to affected vendors before public release.