PoC Archive PoC Archive

tag

Cwe-640

FlowiseAI Account-Takeover via Forgot-Password Token Leak (CVE-2025-58434) EPSS 50%
CVE-2025-58434 web Patched
CVE-2025-58434webCRITICAL 9.8Patched2026-07-06ARMember WordPress Plugin Insecure Password Reset via Plaintext Key + SQLi Chain (CVE-2026-5076)
CVE-2026-5076 (chained with CVE-2026-5073, CVE-2026-5074) web Patched
CVE-2026-5076webCRITICAL 9.8Patched2026-07-05