Skip to content

Releases: projectdiscovery/nuclei-templates

v9.7.2

22 Dec 05:08
Compare
Choose a tag to compare

🔥 Release Highlights 🔥

What's Changed

New Templates Added: 61 | CVEs Added: 25 | First-time contributions: 8

New Contributors

Full Changelog: v9.7.1...v9.7.2

v9.7.1

02 Dec 07:27
Compare
Choose a tag to compare

What's Changed

Full Changelog: v9.7.0...v9.7.1

v9.7.0

01 Dec 16:42
Compare
Choose a tag to compare

🔥 Release Highlights 🔥

What's Changed

New Templates Added: 51 | CVEs Added: 18 | First-time contributions: 7

New Contributors

Full Changelog: v9.6.9...v9.7.0

v9.6.9

10 Nov 10:43
Compare
Choose a tag to compare

🔥 Release Highlights 🔥

What's Changed

New Templates Added: 73 | CVEs Added: 13 | First-time contributions: 7

New Contributors

Full Changelog: v9.6.8...v9.6.9

v9.6.8

29 Oct 18:31
Compare
Choose a tag to compare

🔥 Release Highlights 🔥


What's Changed

New Templates Added: 79 (CVE: 33)

New Contributors

Full Changelog: v9.6.7...v9.6.8

v9.6.7

19 Oct 14:46
Compare
Choose a tag to compare

What's Changed

Full Changelog: v9.6.6...v9.6.7

v9.6.6

17 Oct 18:37
Compare
Choose a tag to compare

🔥 Highlight of this release:

✅ [servicenow-widget-misconfig] ServiceNow Widget-Simple-List - Misconfiguration (@dhiyaneshdk) 🔥
✅ [CVE-2023-37979] Ninja Forms < 3.6.26 - Cross-Site Scripting (@r3y3r53) [medium] 🔥
✅ [CVE-2021-25016] Chaty < 2.8.2 - Cross-Site Scripting (@luisfelipe146) [medium] 🔥
✅ [CVE-2020-6950] Eclipse Mojarra - Local File Read (@iamnoooob,@pdresearch) [medium] 🔥
✅ [CVE-2023-4451] Cockpit - Cross-Site Scripting (@iamnoooob,@pdresearch) [medium] 🔥
✅ [CVE-2023-3710] Honeywell PM43 Printers - Command Injection (@win3zz) [critical] 🔥
✅ [CVE-2023-3219] EventON Lite < 2.1.2 - Arbitrary File Download (@r3y3r53) [medium] 🔥


What's Changed

New Templates Added : 161

New CVEs Added:99

Read more

v9.6.5

11 Oct 10:53
Compare
Choose a tag to compare

🔥 Highlight of this release:

✅ [CVE-2023-43261] Milesight Routers - Information Disclosure (@gy741) [high] 🔥
✅ [CVE-2023-42793] JetBrains TeamCity < 2023.05.4 - Remote Code Execution (@iamnoooob,@rootxharsh,@pdresearch) [critical] 🔥
✅ [CVE-2023-42442] JumpServer > 3.6.4 - Information Disclosure (@xianke) [high] 🔥
✅ [CVE-2023-36845] Juniper J-Web - Remote Code Execution (@yaser_s) [medium] 🔥
✅ [CVE-2023-35813] Sitecore - Remote Code Execution (@dhiyaneshdk,@iamnoooob) [critical] 🔥
✅ [CVE-2023-29357] Microsoft SharePoint - Authentication Bypass (@pdteam) [critical] 🔥
✅ [CVE-2023-22515] Atlassian Confluence - Privilege Escalation (@s1r1us,@iamnoooob,@rootxharsh,@pdresearch) [critical] 🔥
✅ [CVE-2023-5074] D-Link D-View 8 v2.0.1.28 - Authentication Bypass (@dhiyaneshdk) [critical] 🔥


What's Changed

New Templates Added : 75

New CVEs Added: 25

First-time contributions: 12

New Contributors

Full Changelog: v9.6.4...v9.6.5

v9.6.4

18 Sep 17:36
Compare
Choose a tag to compare

🔥 Highlight of this release:

✅ [CVE-2023-41892] CraftCMS < 4.4.15 - Unauth Remote Code Execution (@iamnoooob,@rootxharsh,@pdresearch) [critical] 🔥
✅ [CVE-2023-30943] Moodle - Cross-Site Scripting/Remote Code Execution (@ritikchaddha) [medium] 🔥
✅ [CVE-2023-25573] Metersphere - Arbitrary File Read (@dhiyaneshdk) [high] 🔥
✅ [CVE-2023-2813] Wordpress Multiple Themes - Reflected Cross-Site Scripting (@dhiyaneshdk) [medium] 🔥
✅ [CVE-2022-0342] Zyxel - Authentication Bypass (@SleepingBag945,@powerexploit) [critical] 🔥


What's Changed

New Templates Added: 121

New CVEs Added: 10

First-time contributions: 3

New Contribut...

Read more

v9.6.3

11 Sep 14:52
Compare
Choose a tag to compare

🔥 Highlight of this release:

✅ [CVE-2023-39361] Cacti 1.2.24 - SQL Injection (@ritikchaddha) [critical] 🔥
✅ [CVE-2023-36844] Juniper Devices - Remote Code Execution (@princechaddha,@ritikchaddha) [medium] 🔥
✅ [CVE-2023-34124] SonicWall GMS and Analytics Web Services - Shell Injection (@iamnoooob,@rootxharsh,@pdresearch) [critical] 🔥
✅ [CVE-2023-32563] Ivanti Avalanche - Remote Code Execution (@princechaddha) [critical] 🔥
✅ [CVE-2023-26469] Jorani 1.0.0 - Remote Code Execution (@pussycat0x) [critical] 🔥
✅ [CVE-2023-20073] Cisco VPN Routers - Unauthenticated Arbitrary File Upload (@princechaddha,@ritikchaddha) [critical] 🔥
✅ [CVE-2023-4634] Media Library Assistant < 3.09 - Remote Code Execution/Local File Inclusion (@Pepitoh,@ritikchaddha) [critical] 🔥

What's Changed

New Templates Added: 54

New CVEs Added: 21

First-time contributions: 6


New Contributors

Full Changelog: v9.6.2...v9.6.3