Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-7059 is a path traversal vulnerability in the 666ghj MiroFish application versions up to 0.1.2. It affects the get_simulation_posts function in the backend/app/api/simulation.py file, specifically the Query Parameter Handler component. An attacker can remotely manipulate the Platform argument to perform path traversal. The vulnerability has a CVSS 4.0 base score of 6.9, indicating medium severity. No official patch or remediation guidance is currently available, and no known exploits are reported in the wild. Join the discussion | CVE Database V5 | 04/26/2026, 20:00:16 UTC Added: 04/26/2026, 20:15:07 UTC |
0 CVE-2026-7058 is a command injection vulnerability in the 666ghj MiroFish product versions up to 0.1.2. The flaw exists in the SimulationIPCClient.send_command function within the Inter-Process Communication component. This vulnerability allows remote attackers to execute arbitrary commands. The issue has been publicly disclosed and an exploit is available, but the vendor has not yet responded or provided a fix. The CVSS 4.0 base score is 6.9, indicating medium severity. Join the discussion | CVE Database V5 | 04/26/2026, 19:45:13 UTC Added: 04/26/2026, 20:13:22 UTC |
0 CVE-2026-7042 is a medium severity vulnerability in 666ghj MiroFish versions up to 0.1.2. It involves missing authentication in the create_app function of the REST API endpoint, allowing remote attackers to manipulate the application without proper authentication. Although an exploit has been published, the vendor has not yet responded or issued a fix. No official patch or remediation guidance is currently available. Join the discussion | CVE Database V5 | 04/26/2026, 13:00:17 UTC Added: 04/26/2026, 13:36:04 UTC |
0 CVE-2026-7041 is an information disclosure vulnerability in 666ghj MiroFish versions up to 0.1.2. It affects an unknown function in the Werkzeug Debugger PIN Handler component, specifically in the /console file. The vulnerability can be triggered remotely by manipulating the SECRET argument. Exploitation is considered difficult due to high attack complexity. Although the exploit is publicly available, there is no vendor response or patch at this time. The CVSS 4.0 base score is 6.3, indicating medium severity. Join the discussion | CVE Database V5 | 04/26/2026, 12:45:12 UTC Added: 04/26/2026, 13:06:04 UTC |
Showing 1 to 4 of 4 results