- London, United Kingdom
-
10:54
(UTC) - rxerium.com
- @rxerium
- @rxerium.com
- @rxerium@infosec.exchange
- in/rxerium
Highlights
- Pro
-
rxerium-templates Public
Forked from projectdiscovery/nuclei-templatesCommunity curated list of templates for the nuclei engine to find security vulnerabilities.
-
CISA-KEV Public
An automated repo to track Nuclei template scanning capabilities against the CISA KEV.
-
CVE-2025-37164 Public
Detection for CVE-2025-37164
-
CVE-2025-40602 Public
Detection for CVE-2025-40602
-
-
FreePBX-Vulns-December-25 Public
Detection for CVE-2025-61675, CVE-2025-61678 & CVE-2025-66039
-
-
-
-
stars Public
A list of all of my starred repos, automated using Github Actions 🌟
UpdatedDec 1, 2025 -
CVE-2025-34299 Public
Detection for CVE-2025-34299
-
CVE-2025-49113 Public
Detection for CVE-2025-49113
-
Detection for CVE-2025-53072 + CVE-2025-62481
-
Nettacker Public
Forked from OWASP/NettackerAutomated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
Python Apache License 2.0 UpdatedOct 21, 2025 -
CVE-2023-40000 Public
LiteSpeed Cache plugin for WordPress that could enable unauthenticated users to escalate their privileges
-
CVE-2024-12084 Public
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds t…
MIT License UpdatedOct 14, 2025 -
CVE-2024-32444 Public
An unauthenticated privilege escalation problem tracked as CVE-2024-32444 (CVSS score: 9.8).
-
CVE-2025-0994 Public
Cityworks deserialization of untrusted data vulnerability Detection
-
CVE-2025-26465 Public
MitM attack allowing a malicious interloper to impersonate a legitimate server when a client attempts to connect to it
-
CVE-2025-26466 Public
The OpenSSH client and server are vulnerable to a pre-authentication DoS attack between versions 9.5p1 to 9.9p1 (inclusive) that causes memory and CPU consumption
-
CVE-2023-6000 Public
The Popup Builder WordPress plugin before 4.2.3 does not prevent simple visitors from updating existing popups, and injecting raw JavaScript in them, which could lead to Stored XSS attacks.
-
CVE-2022-41352 Public
Zimbra Collaboration (ZCS) Arbitrary File Upload Vulnerability
-
CVE-2022-24086 Public
An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.
-
CVE-2024-39929 Public
Detection method for Exim vulnerability CVE-2024-39929
-
CVE-2023-22515 Public
Atlassian Confluence Data Center and Server Broken Access Control Vulnerability
-
CVE-2024-7593 Public
Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or 22.7R2 allows a remote unauthenticated attacker to bypass authentication of the admin panel.
MIT License UpdatedOct 14, 2025 -
CVE-2025-31324 Public
SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely …
-
CVE-2025-24016 Public
Detection for CVE-2025-24016 - Deserialization of Untrusted Data Vulnerability in the Wazuh software
-
-
CVE-2025-47812 Public
Detection for CVE-2025-47812