PoC Archive PoC Archive

tag

Denial-of-Service

Crawl4AI Docker API Server Arbitrary File Write via `output_path` (CVE-2026-56260)
CVE-2026-56260 (GHSA-365w-hqf6-vxfg) web Patched
CVE-2026-56260webCRITICAL 9.1Patched2026-07-12ZTE Router Unauthenticated Oversized-POST Denial of Service (CVE-2026-34473)
CVE-2026-34473 network Unverified
CVE-2026-34473networkHIGHUnverified2026-07-05Windows CLFS.sys Unrecoverable State / BSoD via ReadFile on Log File Handle (CVE-2026-2636)
CVE-2026-2636 binary Patched
CVE-2026-2636binaryMEDIUMPatched2026-07-05TanStack Query — Unbounded Recursion Denial of Service in `replaceEqualDeep` (CVE-2026-26903)
CVE-2026-26903 web Patched
CVE-2026-26903webMEDIUMPatched2026-07-05Sliver C2 Server mTLS Nil-Pointer Panic / Infrastructure Kill-Switch — CVE-2026-29781
CVE-2026-29781 (GHSA-hx52-cv84-jr5v) network Unverified
CVE-2026-29781networkHIGHUnverified2026-07-05rldns 1.3 Heap-Based Out-of-Bounds Read Remote DoS (CVE-2026-27831)
CVE-2026-27831 binary Patched
CVE-2026-27831binaryMEDIUMPatched2026-07-05pypdf Circular Outline Reference Infinite-Loop DoS (CVE-2026-24688)
CVE-2026-24688 misc Patched
CVE-2026-24688miscHIGHPatched2026-07-05PX4-Autopilot tattu_can Driver — CAN Bus Stack Buffer Overflow DoS (CVE-2026-32707)
CVE-2026-32707 (GHSA-wxwm-xmx9-hr32, CWE-121) hardware Patched
CVE-2026-32707hardwareHIGH 7.5Patched2026-07-05PX4 Autopilot MAVLink FTP Stack Buffer Overflow (CVE-2026-32743)
CVE-2026-32743 hardware Patched
CVE-2026-32743hardwareMEDIUM 6.5Patched2026-07-05PJSIP DNS Compression Pointer Heap Out-of-Bounds Read (CVE-2026-32945)
CVE-2026-32945 network Patched
CVE-2026-32945networkMEDIUMPatched2026-07-05Oracle VirtualBox Shared Folders Kernel Memory Exhaustion DoS (CVE-2026-21986)
CVE-2026-21986 binary Patched
CVE-2026-21986binaryMEDIUM 7.1Patched2026-07-05OpenSTAManager Global Search Amplified Time-Based Blind SQL Injection — CVE-2026-24417
CVE-2026-24417 web Patched
CVE-2026-24417webHIGHPatched2026-07-05Multiparty Denial of Service via Prototype-Pollution Field Name (CVE-2026-8161)
CVE-2026-8161 / GHSA-qxch-whhj-8956 misc Patched
CVE-2026-8161 / GHSA-qxch-whhj-8956miscMEDIUMPatched2026-07-05Marlin Firmware M421 G-code Handler Out-of-Bounds Write — CVE-2026-56111
CVE-2026-56111 hardware Patched
CVE-2026-56111hardwareHIGH 8.3Patched2026-07-05Linux Kernel ICMP Fragmentation-Needed NULL Pointer Dereference (CVE-2026-23398)
CVE-2026-23398 network Patched
CVE-2026-23398networkHIGHPatched2026-07-05ChatterBot Denial of Service via SQLAlchemy Connection Pool Exhaustion (CVE-2026-23842)
CVE-2026-23842 misc Patched
CVE-2026-23842miscHIGH 7.5Patched2026-07-05BIRD/BIRD2 BGP AS_PATH Mask Matching Stack Buffer Overflow (CVE-2026-49943)
CVE-2026-49943 network Patched
CVE-2026-49943networkHIGH 3.1Patched2026-07-05Apache HTTP Server HTTP/2 HPACK Cookie-Merging Memory Bomb (CVE-2026-49975) EPSS 31%
CVE-2026-49975 network Unverified
CVE-2026-49975networkHIGHUnverified2026-07-05Algorithmic Complexity DoS in musl libc `iconv` GB18030 Decoder — CVE-2026-6042
CVE-2026-6042 network Unverified
CVE-2026-6042networkHIGH 7.5Unverified2026-07-05Nmap IPv6 Extension-Header Length Wrap
None assigned as of 2026-07-03 network Unverified
None assigned as of 2026-07-03networkLOWUnverified2026-07-03