Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-86315: CWE-197 Numeric truncation error in Samsung Opensource EscargotCVE-2026-86315 0 An out-of-bounds write caused by numeric truncation Samsung Open Source Escargot on Linux x86-64 allows an attacker who can supply JavaScript for execution to corrupt native memory and crash the host process via a crafted class definition whose instance initialization entry count exceeds UINT16_MAX. This issue affects Escargot: 5dc93606abd42b859045add05d704a038e197359. Join the discussion | CVE Database V5 | 09/07/2026, 04:01:28 UTC Added: 09/07/2026, 04:22:46 UTC |
CVE-2026-86269: SQL Injection in itsourcecode Sales and Inventory SystemCVE-2026-86269 0 A flaw has been found in itsourcecode Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/emp_edit1.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used. Join the discussion | CVE Database V5 | 09/07/2026, 04:00:10 UTC Added: 09/07/2026, 04:22:46 UTC |
CVE-2026-86267: SQL Injection in itsourcecode Information System Society Membership SystemCVE-2026-86267 0 A security vulnerability has been detected in itsourcecode Information System Society Membership System 1.0. This issue affects some unknown processing of the file /society/check_student.php. The manipulation of the argument student_id leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. Join the discussion | CVE Database V5 | 09/07/2026, 03:30:08 UTC Added: 09/07/2026, 03:52:43 UTC |
CVE-2026-86268: SQL Injection in itsourcecode School Management SystemCVE-2026-86268 0 A vulnerability was detected in itsourcecode School Management System 1.0. Impacted is an unknown function of the file User_Login.php. The manipulation of the argument email results in sql injection. The attack can be executed remotely. The exploit is now public and may be used. Join the discussion | CVE Database V5 | 09/07/2026, 03:45:08 UTC Added: 09/07/2026, 03:52:43 UTC |
CVE-2026-86265: SQL Injection in itsourcecode Sales and Inventory SystemCVE-2026-86265 0 A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/us_transac.php. Such manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Join the discussion | CVE Database V5 | 09/07/2026, 03:15:08 UTC Added: 09/07/2026, 03:37:47 UTC |
CVE-2026-86264: Cross Site Scripting in sfturing ssm_proCVE-2026-86264 0 A flaw has been found in sfturing ssm_pro up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Endpoint. This manipulation of the argument hospitalName/officesName/doctorName causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet. Join the discussion | CVE Database V5 | 09/07/2026, 03:00:07 UTC Added: 09/07/2026, 03:07:41 UTC |
CVE-2026-86314: CWE-190 Integer overflow or wraparound in Samsung Opensource WalrusCVE-2026-86314 0 Integer overflow in the source-bounds check in Memory::init() (src/runtime/Memory.cpp) in Samsung walrus on all platforms allows a remote attacker to cause an out-of-bounds heap read and denial of service via a crafted WebAssembly module in which a 32-bit unsigned addition wraps around and bypasses the bounds check. This issue affects Walrus: ff3bf5ff5c4878f8e5572c9593d303f6bc997443. Join the discussion | CVE Database V5 | 09/07/2026, 02:22:42 UTC Added: 09/07/2026, 02:52:44 UTC |
CVE-2026-86262: Authorization Bypass in sfturing hosp_orderCVE-2026-86262 0 A security vulnerability has been detected in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This affects the function updateOrderSta1/updateOrderdiseaseInfo of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Handler. The manipulation of the argument userID/id leads to authorization bypass. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. This product adopts a rolling release strategy to maintain continuous delivery. Therefore, version details for affected or updated releases cannot be specified. The project was informed of the problem early through an issue report but has not responded yet. Join the discussion | CVE Database V5 | 09/07/2026, 02:30:11 UTC Added: 09/07/2026, 02:52:44 UTC |
CVE-2026-86313: CWE-787 Out-of-bounds write in Samsung Opensource WalrusCVE-2026-86313 0 Out-of-bounds write vulnerability in Samsung Opensource Walrus allows Overflow Buffers. This issue affects Walrus: af80e665ea49d9003695a66502f841ed1d8397e7. Join the discussion | CVE Database V5 | 09/07/2026, 02:03:59 UTC Added: 09/07/2026, 02:22:41 UTC |
CVE-2026-86261: Authorization Bypass in sfturing hosp_orderCVE-2026-86261 0 A weakness has been identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. The impacted element is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Controller. Executing a manipulation of the argument userIdenf can lead to authorization bypass. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The project was informed of the problem early through an issue report but has not responded yet. Join the discussion | CVE Database V5 | 09/07/2026, 02:15:09 UTC Added: 09/07/2026, 02:22:41 UTC |
Showing 1 to 10 of 16893 results