Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/csprousers/csweb

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2025-60949 is a critical vulnerability in Census CSWeb version 8.0.1 that allows unauthenticated remote attackers to access sensitive configuration files via HTTP. The vulnerability arises because the "app/config" directory is accessible without authentication in some deployments, leading to exposure of secrets such as credentials or keys. This flaw does not require user interaction or privileges and has a CVSS 4.0 score of 9.3, indicating high impact on confidentiality and integrity. The issue is fixed in version 8.1.0 alpha.

Join the discussion

CVE-2025-60947 is a high-severity vulnerability in Census CSWeb version 8.0.1 that allows authenticated remote attackers to upload arbitrary files without proper restrictions. This unrestricted file upload flaw (CWE-434) can lead to remote code execution, compromising confidentiality, integrity, and availability of affected systems. The vulnerability requires authentication but no user interaction beyond that. It has a CVSS score of 8.8, indicating a critical impact if exploited. The issue is fixed in version 8.1.0 alpha.

Join the discussion

CVE-2025-60946 is a high-severity path traversal vulnerability in Census CSWeb version 8.0.1 that allows a remote authenticated attacker to access arbitrary files outside the intended directory. Exploitation requires authentication but no user interaction, and it can lead to full confidentiality, integrity, and availability compromise. The vulnerability arises from improper limitation of pathname input (CWE-22), enabling attackers to traverse directories and access sensitive files. The issue is fixed in version 8.1.0 alpha. While no known exploits are currently reported in the wild, the high CVSS score (8.8) indicates significant risk.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Package: pkg:github/csprousers/csweb
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses