> cat /dev/github | grep security-tools
discovered 03 Aug 2026

CVE-2025-14558

Python ★ 13 via github-topic
→ View on GitHub
CVE-2025-14558 is an exploit tool designed to demonstrate a command injection vulnerability in the `rtsold` service on FreeBSD systems, which allows remote code execution due to improper validation of DNSSL domain names. It requires Layer 2 adjacency to the target and enables attackers to execute arbitrary commands with root privileges by leveraging shell metacharacters. The tool is intended for defensive security research and authorized testing only.