Wed 16 September 2026
Exploitation of multiple vulnerabilities in SPIP to gain remote code execution from unauthenticated privileges (CVE-2026-72708, CVE-2026-72709, CVE-2026-72710).
Wed 12 January 2022
We identified a vulnerability in SPIP's SQL engine, which allowed us to access the backoffice of the hacking platform Root-Me.
Check our offensive & continuous web security assessment service