Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-7847 is a low-severity vulnerability in chatchat-space Langchain-Chatchat versions up to 0.3.1.3. It involves insufficiently random values generated by the _get_file_id function in the uploaded file handler component. Exploitation requires local network access and is considered difficult due to high attack complexity. Although a public exploit exists, the vendor has not yet responded or provided a fix. Join the discussion | CVE Database V5 | 05/05/2026, 16:30:13 UTC Added: 05/05/2026, 16:51:26 UTC |
A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the file libs/chatchat-server/chatchat/server/api_server/openai_routes.py of the component OpenAI-Compatible File Upload API. Such manipulation of the argument file.filename leads to time-of-check time-of-use. Access to the local network is required for this attack to succeed. The attack requires a high level of complexity. The exploitability is considered difficult. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet. Join the discussion | CVE Database V5 | 05/05/2026, 16:00:15 UTC Added: 05/05/2026, 16:21:52 UTC |
A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.tobytes of the file libs/chatchat-server/chatchat/webui_pages/dialogue/dialogue.py of the component Vision Chat Paste Image Handler. This manipulation of the argument paste_image.image_data causes use of weak hash. The attacker needs to be present on the local network. The attack is considered to have high complexity. The exploitability is assessed as difficult. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet. Join the discussion | CVE Database V5 | 05/05/2026, 15:45:12 UTC Added: 05/05/2026, 16:21:52 UTC |
CVE-2026-7844 is a medium severity vulnerability in chatchat-space Langchain-Chatchat versions up to 0.3.1.3. It involves missing authentication in several file-related API functions, allowing an attacker with local network access to potentially manipulate files without proper authorization. The vulnerability affects the Compatible File Service component. Although the issue was reported early, the project has not yet responded or provided a fix. The exploit code is publicly available, increasing the risk of exploitation. Join the discussion | CVE Database V5 | 05/05/2026, 15:00:13 UTC Added: 05/05/2026, 16:21:52 UTC |
A vulnerability, which was classified as critical, has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This issue affects some unknown processing of the file /v1/file. The manipulation of the argument flag leads to path traversal. The exploit has been disclosed to the public and may be used. Join the discussion | CVE Database V5 | 06/29/2025, 09:00:15 UTC Added: 06/29/2025, 09:09:38 UTC |
A vulnerability classified as problematic was found in chatchat-space Langchain-Chatchat up to 0.3.1. This vulnerability affects unknown code of the file /v1/files?purpose=assistants. The manipulation leads to path traversal. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Join the discussion | CVE Database V5 | 06/29/2025, 08:31:04 UTC Added: 06/29/2025, 08:54:26 UTC |
A vulnerability classified as critical has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This affects the function upload_temp_docs of the file /knowledge_base/upload_temp_docs of the component Backend. The manipulation of the argument flag leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Join the discussion | CVE Database V5 | 06/29/2025, 07:31:05 UTC Added: 06/29/2025, 07:39:26 UTC |
Showing 1 to 7 of 7 results