BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Oracle GlassFish Server <= 4.1 - Directory Traversal 12-02-2016
File Replication Pro <= 7.2.0 - Multiple Vulnerabilities 11-02-2016
Wieland wieplan 4.1 Document Parsing Java Code Execution Using XMLDecoder 10-02-2016
Yeager CMS 1.2.1 - Multiple Vulnerabilities 10-02-2016
Apache Sling Framework (Adobe AEM) 2.3.6 - Information Disclosure Vulnerability 10-02-2016
Deepin Linux 15 - lastore-daemon Privilege Escalation 10-02-2016
D-Link DCS-930L Authenticated Remote Command Execution 10-02-2016
Microsoft Windows WebDAV BSoD PoC (MS-016) 10-02-2016
Adobe Photoshop CC & Bridge CC IFF File Parsing Memory Corruption 09-02-2016
Adobe Photoshop CC & Bridge CC PNG File Parsing Memory Corruption 2 09-02-2016
Adobe Photoshop CC & Bridge CC PNG File Parsing Memory Corruption 09-02-2016
Employee Timeclock Software 0.99 - SQL Injection Vulnerabilities 09-02-2016
WordPress WP User Frontend Plugin < 2.3.11 - Unrestricted File Upload 08-02-2016
WordPress WooCommerce Store Toolkit Plugin 1.5.5 - Privilege Escalation 08-02-2016
WordPress User Meta Manager Plugin 3.4.6 - Information Disclosure 08-02-2016
dotDefender Firewall 5.00.12865 / 5.13-13282 - CSRF Vulnerability 08-02-2016
WordPress Booking Calendar Contact Form Plugin <= 1.0.23 - Multiple Vulnerabilities 08-02-2016
Symphony CMS 2.6.3 &ndash; Multiple SQL Injection Vulnerabilities 04-02-2016
ATutor 2.2 - Multiple XSS Vulnerabilities 04-02-2016
OpenDocMan 1.3.4 - CSRF Vulnerability 04-02-2016
UliCMS <= v9.8.1 - SQL Injection 04-02-2016
NETGEAR ProSafe Network Management System NMS300 - Multiple Vulnerabilities 04-02-2016
WordPress User Meta Manager Plugin 3.4.6 - Privilege Escalation 04-02-2016
DLink DVG&shy;N5402SP - Multiple Vulnerabilities 04-02-2016
GE Industrial Solutions UPS SNMP Adapter < 4.8 - Multiple Vulnerabilities 04-02-2016
FTPShell Client 5.24 - (Create NewFolder) Local Buffer Overflow 04-02-2016
Viprinet Multichannel VPN Router 300 - Stored XSS Vulnerabilities 03-02-2016
yTree 1.94-1.1 - Local Buffer Overflow 03-02-2016
Jive Forums <= 5.5.25 - Directory Traversal Vulnerability 03-02-2016
Timeclock Software 0.995 - Multiple SQL Iinjection Vulnerabilities 03-02-2016