An information disclosure vulnerability in dnsmasq allows remote attackers to bypass source checks via a crafted DNS packet with RFC 7871 client subnet information.
[POC] CVE-2026-48939 — CVE-2026-48939
Pre-auth arbitrary file upload RCE exploit for iCagenda Joomla extension < 4.0.8 (CVSS 10.0)
[POC] MAL-2026-2307 — By-Poloss..-..CVE-2026-48939
iCagenda Unauthenticated File Upload to RCE
PoC: CVE20264893poc
Generate the poc for CVE-2026-4893: broken EDNS Client Subnet validation.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free