VDB
GCVE-110-OSM-2026-1196
GCVE-110-OSM-2026-1196
Advisory PublishedCVSS 9.6/10
This package is a dependency confusion attempt that exfiltrates sensitive data to an attacker-controlled Discord server.
Payload: coredxloader/helpers/discord.py
Key findings:
- Webhook Data Exfiltration in coredxloader/helpers/discord.py: "discord.com/api/webhooks/1488523032556474388/82x5KPXFzewplqpAMT59sbW27vN4aOlyx2U..."
- Discord Token Theft in coredxloader/helpers/discord.py: "discord\\Local Storage"
IOCs:
- domains: cdn.discordapp.com, m.group
- discordWebhooks: https://canary.discord.com/api/webhooks/1488523032556474388/82x5KPXFzewplqpAMT59sbW27vN4aOlyx2Ua60xlBtoGyukOSMwTVXc-9rnq7_O_EMKS
- payloadFileHash: 728d21db57b937bc88f5a2101aa333cc6031d08580d58800164609d43b36ee49
Weaknesses (CWE)
CWE-506Embedded Malicious Code
Risk Scores
CVSS 3.1
9.6/10
Critical · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| unknown | coredxloader | all (affected) | — |
Aliases
Browse GCVE Records
74,267 records in the GCVE database · Updated July 22, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.