VDB

GCVE-110-OSM-2026-1196

GCVE-110-OSM-2026-1196
Advisory PublishedCVSS 9.6/10
Vulnetix · Advisory published March 31, 2026
This package is a dependency confusion attempt that exfiltrates sensitive data to an attacker-controlled Discord server. Payload: coredxloader/helpers/discord.py Key findings: - Webhook Data Exfiltration in coredxloader/helpers/discord.py: "discord.com/api/webhooks/1488523032556474388/82x5KPXFzewplqpAMT59sbW27vN4aOlyx2U..." - Discord Token Theft in coredxloader/helpers/discord.py: "discord\\Local Storage" IOCs: - domains: cdn.discordapp.com, m.group - discordWebhooks: https://canary.discord.com/api/webhooks/1488523032556474388/82x5KPXFzewplqpAMT59sbW27vN4aOlyx2Ua60xlBtoGyukOSMwTVXc-9rnq7_O_EMKS - payloadFileHash: 728d21db57b937bc88f5a2101aa333cc6031d08580d58800164609d43b36ee49

Weaknesses (CWE)

CWE-506Embedded Malicious Code

Risk Scores

CVSS 3.1
9.6/10
Critical · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
unknowncoredxloaderall (affected)

References

advisory
vendor

Browse GCVE Records

74,267 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›