motionEye's Absolute Path Traversal in Media File Handlers Allows Arbitrary File Read
-
Updated
Jul 1, 2026
motionEye's Absolute Path Traversal in Media File Handlers Allows Arbitrary File Read
Gogs has Path Traversal in organization name that results in RCE through Git hooks
Gorse < 0.5.10 contains an authentication bypass caused by empty admin_api_key in /api/dump and /api/restore endpoints, letting unauthenticated remote attackers access and modify protected data, exploit requires default empty admin_api_key configuration.
Add a description, image, and links to the realcodeb0ss topic page so that developers can more easily learn about it.
To associate your repository with the realcodeb0ss topic, visit your repo's landing page and select "manage topics."