Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-67614: Use of Hard-coded Credentials in usmannasir cyberpanelCVE-2026-67614 0 CyberPanel versions prior to 3.0.0 contain a critical vulnerability due to a hard-coded JWT secret in the WebTerminal FastAPI SSH service. This flaw allows unauthenticated remote attackers to forge valid JWT authentication tokens, specifying ssh_user=root, to gain an interactive root shell via WebSocket on port 8888 without valid credentials. Join the discussion | CVE Database V5 | 08/13/2026, 17:08:40 UTC Added: 08/13/2026, 17:27:08 UTC |
CVE-2026-67613: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in usmannasir cyberpanelCVE-2026-67613 0 CyberPanel versions prior to 3.0.0 contain a path traversal vulnerability in the cloudAPI ReadReport endpoint. Authenticated administrators can exploit this flaw by supplying unsanitized file paths, allowing them to read arbitrary files on the server filesystem. This includes sensitive files such as credential files, SSL and SSH private keys, and JWT secret files. The vulnerability arises because the reportFile parameter is passed directly to the open() function without validation or allowlisting. The CVSS 4.0 base score is 6.9, indicating a medium severity issue. Join the discussion | CVE Database V5 | 08/13/2026, 17:09:05 UTC Added: 08/13/2026, 17:27:08 UTC |
CVE-2026-71966: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in usmannasir cyberpanelCVE-2026-71966 0 CyberPanel 2.4.3, fixed in commit eca0c3c, contains an authenticated command injection vulnerability in the remote backup transfer feature that allows authenticated attackers to execute arbitrary OS commands by controlling a remote server's API response. Attackers can inject malicious commands through a crafted directory name in the remote server's API response, which bypasses security middleware validation and is passed unsanitized to the OS command execution function. Join the discussion | CVE Database V5 | 08/10/2026, 18:53:12 UTC Added: 08/10/2026, 19:27:01 UTC |
CVE-2026-71965: Insufficient Verification of Data Authenticity in usmannasir cyberpanelCVE-2026-71965 0 CyberPanel 2.4.3, fixed in commit eca0c3c, contains an authenticated remote code execution vulnerability in the remote backup feature that allows authenticated attackers to gain root-level SSH access by supplying a malicious remote server address. Attackers can exploit the unverified SSH public key retrieval process to write an attacker-controlled public key directly to /root/.ssh/authorized_keys, granting persistent root access to the host system. Join the discussion | CVE Database V5 | 08/10/2026, 18:52:40 UTC Added: 08/10/2026, 19:27:01 UTC |
CVE-2026-71964: Improper Link Resolution Before File Access ('Link Following') in usmannasir cyberpanelCVE-2026-71964 0 CyberPanel 2.4.3, fixed in commit eca0c3c, contains an arbitrary file read vulnerability in the file manager component that allows authenticated attackers to read sensitive system files by uploading a crafted ZIP archive containing symbolic links. Attackers can exploit the application's failure to validate symlinks before extraction, causing symbolic links targeting arbitrary filesystem paths outside the user's home directory to persist on disk and be accessed through the web interface. Join the discussion | CVE Database V5 | 08/10/2026, 18:51:43 UTC Added: 08/10/2026, 18:56:59 UTC |
Showing 1 to 5 of 5 results