# offensive security · bug bounty · ctf
PNDSEC started as one researcher's bug-bounty handle. It's growing into a small team — web & mobile penetration testing, CTF, and open-source tooling for people who like taking things apart.
| cve | vendor / product | added |
|---|---|---|
| CVE-2026-19490 | Citrix / NetScaler | 2026-09-09 |
| CVE-2025-25249 | Fortinet / Multiple Products | 2026-09-09 |
| CVE-2026-87491 | Google / Chromium V8 | 2026-09-09 |
| CVE-2026-20079 | Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management | 2026-09-09 |
| CVE-2026-75650 | Adobe / Commerce and Magento | 2026-09-08 |
1703 actively exploited CVEs tracked by CISA — full catalog