Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-73537: Cross-site scripting (XSS) in Japan Science and Technology Agency (JST) Miraikan Assist App Android versionCVE-2026-73537 0 Cross-site scripting vulnerability exists in Miraikan Assist App. If this vulnerability is exploited, an arbitrary script may be executed in the browser component (WebView) running on the affected product, resulting in the displayed content being altered. Join the discussion | CVE Database V5 | 08/21/2026, 07:23:17 UTC Added: 08/21/2026, 07:38:03 UTC |
CVE-2026-16323: CWE-698 Execution after redirect (EAR) in FuyaWeb Internet and Informatics Services ArchitectPanel Web Admin PanelCVE-2026-16323 0 Execution after redirect (EAR) vulnerability in FuyaWeb Internet and Informatics Services ArchitectPanel Web Admin Panel allows Authentication Bypass. This issue affects ArchitectPanel Web Admin Panel: through 28072026. Join the discussion | CVE Database V5 | 08/21/2026, 07:20:33 UTC Added: 08/21/2026, 07:38:03 UTC |
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities 0 Two critical vulnerabilities (CVE-2026-72529 and CVE-2026-72530) in TrueConf Server have been actively exploited by the hacktivist group Head Mare to deploy PhantomCore malware. These flaws allow remote attackers with access to the TrueConf server port to execute arbitrary code and escape isolated environments. The vulnerabilities were patched in June 2026 in TrueConf Server versions 5.3.9, 5.4.9, and 5.5.5. CISA has added these vulnerabilities to its Known Exploited Vulnerabilities catalog and urges immediate patching. The attackers replaced legitimate client installers with malicious ones to spread malware and installed backdoors using TrueConf protocol and GitHub for command-and-control communications. Join the discussion | SecurityWeek | 08/21/2026, 07:25:50 UTC Added: 08/21/2026, 07:37:10 UTC |
40 Fake npm Packages. WSL Was the Real Target. 0 A typosquatting campaign involved 40 fake npm packages impersonating popular libraries such as chalk, axios, lodash, react, typescript, and commander. The malicious install scripts detected Windows Subsystem for Linux (WSL) environments and used this as a vector to execute native payloads on the underlying Windows host. These payloads targeted cryptocurrency wallets, Chromium browser data, and Telegram sessions. Although the npm packages were removed after about 84 minutes, the payload hosted on GitHub remained active for approximately 39 hours, continuing the attack beyond the removal of the delivery mechanism. Join the discussion | Reddit Cybersecurity | 08/21/2026, 07:12:51 UTC Added: 08/21/2026, 07:22:03 UTC |
CVE-2026-75796: CWE-269 Improper Privilege Management in AI EngineCVE-2026-75796 0 CVE-2026-75796 is a privilege management vulnerability in the AI Engine WordPress plugin before version 3.6.1. It allows users with the Administrator role on a Multisite sub-site to perform privileged user management operations without proper authorization checks. This flaw enables such users to take over any account on the network, including the Network Administrator's account. Join the discussion | CVE Database V5 | 08/21/2026, 06:00:17 UTC Added: 08/21/2026, 06:22:57 UTC |
CVE-2026-19435: CWE-200 Information Exposure in Duplicate PostCVE-2026-19435 0 The Duplicate Post WordPress plugin before version 1.5.6 contains an information exposure vulnerability. It fails to verify user capabilities before returning post data, which allows users with delegated roles to access content, metadata, and passwords of posts they should not have permission to view, including private and draft posts belonging to other users. Join the discussion | CVE Database V5 | 08/21/2026, 06:00:17 UTC Added: 08/21/2026, 06:22:57 UTC |
CVE-2026-19085: CWE-639 Authorization Bypass Through User-Controlled Key in Duplicate PostCVE-2026-19085 0 The Duplicate Post WordPress plugin before version 1.5.6 contains an authorization bypass vulnerability. It fails to verify whether a user has permission to read a post before allowing duplication. This flaw enables users with delegated roles to duplicate password-protected posts and republish them as publicly accessible content. Join the discussion | CVE Database V5 | 08/21/2026, 06:00:17 UTC Added: 08/21/2026, 06:22:57 UTC |
CVE-2026-18781: CWE-94 Improper Control of Generation of Code ('Code Injection') in Drag and Drop Multiple File Upload for Contact Form 7CVE-2026-18781 0 CVE-2026-18781 is a code injection vulnerability in the Drag and Drop Multiple File Upload for Contact Form 7 WordPress plugin before version 1.3.9.9. The plugin fails to properly validate the final name of uploaded files after character stripping, allowing unauthenticated users to bypass file type restrictions and execute arbitrary code on the server. No official patch or remediation guidance is currently available. There are no known exploits in the wild at this time. Join the discussion | CVE Database V5 | 08/21/2026, 06:00:16 UTC Added: 08/21/2026, 06:22:55 UTC |
CVE-2026-16962: CWE-862 Missing Authorization in Tamara CheckoutCVE-2026-16962 0 The Tamara Checkout WordPress plugin up to version 1.9.9.20 contains a missing authorization vulnerability. It does not verify order keys, nonces, or user capabilities on its public payment cancel/fail return URLs. This allows an unauthenticated attacker to change the status of arbitrary WooCommerce orders by supplying numeric order IDs, potentially triggering stock release and notification side effects. Join the discussion | CVE Database V5 | 08/21/2026, 06:00:15 UTC Added: 08/21/2026, 06:22:55 UTC |
CVE-2026-16959: CWE-89 SQL Injection in Media Library AssistantCVE-2026-16959 0 A SQL injection vulnerability exists in the Media Library Assistant WordPress plugin before version 3.40. The flaw arises because the plugin does not validate a search parameter before including it in a SQL query within one of its media-library query handlers. This allows users with the Author role to perform SQL injection attacks. Join the discussion | CVE Database V5 | 08/21/2026, 06:00:16 UTC Added: 08/21/2026, 06:22:55 UTC |
Showing 1 to 10 of 18129 results