BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
WordPress Community Events Plugin 1.3.5 - SQL Injection Vulnerability 21-04-2015
Wordpress N-Media Website Contact Form Upload Vulnerability 21-04-2015
Adobe Flash Player copyPixelsToByteArray Integer Overflow 21-04-2015
Wordpress Reflex Gallery Upload Vulnerability 21-04-2015
BlueDragon CFChart Servlet 7.1.1.17759 - Arbitrary File Retrieval/Deletion 21-04-2015
Wordpress Work The Flow Upload Vulnerability 21-04-2015
ADB Backup Archive Path Traversal File Overwrite 21-04-2015
Wordpress Creative Contact Form Upload Vulnerability 21-04-2015
Mac OS X Local Denial of Service 21-04-2015
AZBB < 1.0.07d - Multiple Vulnerabilities19-04-2015
Oracle Outside-In DOCX File Parsing Memory Corruption 17-04-2015
Oracle Hyperion Smart View for Office 11.1.2.3.000 - Crash PoC 17-04-2015
Wordpress Ajax Store Locator 1.2 SQL Injection Vulnerability 16-04-2015
MS Windows (HTTP.sys) HTTP Request Parsing DoS (MS15-034) 16-04-2015
Microsoft Window - HTTP.sys PoC (MS15-034) 15-04-2015
Samsung iPOLiS ReadConfigValue Remote Code Execution 14-04-2015
Wordpress Video Gallery 2.8 SQL Injection 14-04-2015
Apport/Abrt Local Root Exploit 14-04-2015
Fedora abrt Race Condition Exploit 14-04-2015
WordPress MiwoFTP Plugin 1.0.5 CSRF Arbitrary File Deletion Exploit 14-04-2015
WordPress MiwoFTP Plugin 1.0.5 Multiple CSRF XSS Vulnerabilities 14-04-2015
WordPress MiwoFTP Plugin 1.0.5 CSRF Arbitrary File Creation Exploit (RCE) 14-04-2015
Mac OS X "Rootpipe" Privilege Escalation 13-04-2015
Adobe Flash Player casi32 Integer Overflow 13-04-2015
Linux Kernel splice() System Call - Local DoS 13-04-2015
Create 'my.txt' Working Directory (37 Bytes) 13-04-2015
Wordpress Duplicator <= 0.5.14 - SQL Injection & CSRF 13-04-2015
Traidnt Up 3.0 - SQL Injection 13-04-2015
Internet Download Manager 6.xx - DLL Hijacking 13-04-2015
Wordpress Plugin 'WP Mobile Edition' 2.7 - Remote File Disclosure Vulnerability 13-04-2015