Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 1.99, the POST /api/v1/admin/send-test-email endpoint accepts attacker-controlled smtpHost and smtpPort values and establishes a raw JavaMail TCP connection without any IP validation. This completely bypasses WebClientUtils.IP_CHECK_FILTER, which only applies to Spring WebClient HTTP requests. Additionally, the raw MailException.getMessage() is returned verbatim in the API error response, enabling error-based internal port scanning and service banner enumeration. This vulnerability is fixed in 1.99. Join the discussion | CVE Database V5 | 06/24/2026, 21:38:50 UTC Added: 06/24/2026, 22:32:30 UTC |
0 Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the bundled Caddy reverse-proxy's admin API — which has no authentication by default — is bound on 0.0.0.0:2019 inside the container. While this listener is not directly published to the host by docker-compose.yml, it is reachable from the Appsmith server process itself or a SSRF vulnerability. An authenticated low-privileged user can therefore drive the SSRF to issue POST /load (or any other admin-API call) against http://0.0.0.0:2019/, fully replacing the live Caddy configuration and taking over the reverse proxy. This vulnerability is fixed in 2.1. Join the discussion | CVE Database V5 | 06/24/2026, 21:38:07 UTC Added: 06/24/2026, 21:46:06 UTC |
Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the outbound HTTP host filter applied by WebClientUtils (used by the REST API and GraphQL datasource plugins) validates hosts against an exact-match string denylist. The comprehensive address-class check (loopback, any-local, link-local, fc00::/7) exists only on a separate code path used by SMTP, not by the HTTP plugin path. As a result, an authenticated user can craft outbound requests that reach loopback-bound services inside the container. This vulnerability is fixed in 2.1. Join the discussion | CVE Database V5 | 06/24/2026, 21:36:21 UTC Added: 06/24/2026, 21:46:06 UTC |
Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, Appsmith's bundled supervisord exposes an XML-RPC interface on port 9001, reachable from outside the container via a Caddy reverse-proxy route at /supervisor/* on the public ingress. Combined with the APPSMITH_SUPERVISOR_PASSWORD exposed via GET /api/v1/admin/env, any authenticated administrator can send arbitrary XML-RPC calls to supervisord and execute OS commands inside the Docker container via twiddler.addProgramToGroup. This vulnerability is fixed in 2.1. Join the discussion | CVE Database V5 | 06/24/2026, 21:35:00 UTC Added: 06/24/2026, 21:46:05 UTC |
0 Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 1.96, a Critical Stored XSS vulnerability exists in the Table Widget (TableWidgetV2). The root cause is a lack of HTML sanitization in the React component rendering pipeline, allowing malicious attributes to be interpolated into the DOM. By leveraging the "Invite Users" feature, an attacker with a regular user account ([email protected]) can force a System Administrator to execute a high-privileged API call (/api/v1/admin/env), resulting in a Full Administrative Account Takeover. This vulnerability is fixed in 1.96. Join the discussion | CVE Database V5 | 03/09/2026, 22:26:11 UTC Added: 03/09/2026, 22:49:14 UTC |
CVE-2026-24042 is a critical missing authorization vulnerability in Appsmith versions 1.94 and below. It allows unauthenticated users to execute unpublished, edit-mode actions by manipulating the POST /api/v1/actions/execute endpoint with the viewMode parameter. This bypasses the intended publish boundary, exposing sensitive data and enabling execution of development queries and APIs. The flaw can lead to unauthorized data access and unintended side effects. No official patch is available at the time of disclosure. The vulnerability has a CVSS score of 9.4, indicating high exploitability and impact without requiring authentication or user interaction. European organizations using Appsmith for internal tools and dashboards are at risk, especially those with publicly accessible apps. Immediate mitigation and monitoring are advised to prevent exploitation. Join the discussion | CVE Database V5 | 01/22/2026, 03:52:54 UTC Added: 01/22/2026, 04:05:55 UTC |
CVE-2026-22794 is a critical origin validation vulnerability in Appsmith versions prior to 1.93. The server improperly uses the Origin header from HTTP requests as the base URL for password reset and email verification links without validation. An attacker who can control the Origin header can craft emails with links pointing to a malicious domain, exposing authentication tokens and enabling account takeover. This vulnerability affects confidentiality, integrity, and availability of user accounts. It requires no privileges but does require user interaction to click the malicious link. The issue is fixed in Appsmith version 1.93. European organizations using vulnerable Appsmith versions should urgently update to mitigate risk. Countries with significant adoption of Appsmith and critical internal tooling deployments are most at risk. Join the discussion | CVE Database V5 | 01/12/2026, 21:54:52 UTC Added: 01/12/2026, 22:08:45 UTC |
Three Bitnami Helm charts mount Kubernetes Secrets under a predictable path (/opt/bitnami/*/secrets) that is located within the web server document root. In affected versions, this can lead to unauthenticated access to sensitive credentials via HTTP/S. A remote attacker could retrieve these secrets by accessing specific URLs if the application is exposed externally. The issue affects deployments using the default value of usePasswordFiles=true, which mounts secrets as files into the container filesystem. Join the discussion | CVE Database V5 | 07/24/2025, 06:42:25 UTC Added: 07/24/2025, 06:47:45 UTC |
Showing 1 to 8 of 8 results