grep -l "Arbitrary-File-Write" ./machines (2)

Silentium [Linux]
Easy
FlowiseCVE-2025-58434Password Reset Token DisclosureAccount TakeoverCVE-2025-59528Custom MCP +10
▲ pwned // not yet retired
VariaType [Linux]
Medium
Exploited fonttools CVE-2025-66034 designspace path traversal to write a PHP webshell, escalated to user via FontForge archive command injection, then root via setuptools PackageIndex arbitrary file write to cron.d.
fonttoolsCVE-2025-66034path-traversalPHP-injectionLFIgit-exposure +5
● pwned