Skip to main content

Public Disclosures

On this page 89 public 762 hidden
90% more intel to see
0DIN customers
get hundreds of days of early access to vulnerabilities in disclosures. The same reports that vendors are using to patch their systems!
Unlock 0-Day Access

The following 0DIN submissions have been published in accordance with our Research Terms and Disclosure Policy

  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw manifests when the attacker reframes illicit drug synthesis routes such as Birch and Nagai reductions and Ma Huang extraction as analytical instrument troubleshooting tasks, explicitly requesting verbatim HPLC/LC-MS/GC-MS/NMR error logs followed by detailed "logic + reduction descriptions" including chemical reactions, lab conditions, solvent systems, and step-by-step reference procedures unde...
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 100
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw exploits the models' tendency to relax safety enforcement when harmful requests are embedded inside ostensibly educational code generation tasks and realistic laboratory inventory simulations, allowing the attacker to obtain prohibited procedural information under the guise of academic chemistry modeling and software utility development.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 91
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw exploits fictional world-building and role-based persona framing by casting the model as an investigator drafting a court-ready crime report, which shifts the interaction into an authoritative documentation mode and allows the attacker to elicit prohibited how-focused procedural explanations under the guise of factual reporting.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 91
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw exploits forensic and training-oriented documentation framing by requesting prohibited knowledge as a neutral field identification manual with strict observational constraints, shifting the model into an expert evidence-recognition mode with relaxed safety enforcement and allowing the attacker to extract detailed illicit process knowledge under the guise of harm prevention and situational awar...
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 95
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw exploits models' willingness to decode hexadecimal-encoded strings embedded inside fictional scientific recipe task prompts, which the attacker frames as humanitarian or life-saving efforts. This allows the attacker to bypass safety filters by disguising illegal synthesis instructions as encoded inputs passed to a technical recipe generator.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 91
  • A guardrail jailbreak vulnerability has been discovered affecting multiple models. The specific flaw manifests when the attacker presents detailed information about illicit synthesis methods under the guise of "forensic chemical investigations" and then requests corrections to the provided information, thereby allowing the attacker to bypass inference restrictions around providing information hazards and violating laws.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 82
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw exploits model handling of stop sequences and meta control cues by injecting fabricated end-of-response markers alongside normalization and debugging instructions, causing the model to treat a prohibited request as a benign technical repair task and allowing the attacker to obtain restricted procedural information.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 86
  • A guardrail jailbreak vulnerability has been discovered affecting multiple models. The specific flaw manifests when the attacker presents an incomplete list of chemicals and simply asks "what is missing?", leveraging the model's tendency to complete patterns even when the subject matter involves precursor chemicals for illicit substances. This technique allows the attacker to bypass inference restrictions around providing information hazards and violating laws.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 82
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw manifests when an attacker incrementally reframes a restricted request as a legitimate forensic or regulatory analysis, leveraging role-based authority, academic justification, and step-by-step research documentation formatting to shift the model into an analytical compliance mode and allows the attacker to extract otherwise prohibited instructional content under the guise of public safety and...
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 95
  • A Guardrail Jailbreak vulnerability has been discovered affecting multiple models. The specific flaw manifests when an attacker combines reverse psychology with chaff-heavy encoding and role-based framing, presenting an illicit request as an awareness-driven, fictional design task, which causes the model to prioritize task completion over safety checks and allows the attacker to obtain detailed instructions for illegal activities.
    SEVERITY: Low
    BOUNDARY: Guardrail Jailbreak
    MODELS AFFECTED:
    MAX SCORE: 100
Want access to 762 more reports?
Unlock 0-Day Access