Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 Cross-Site Scripting (XSS) vulnerability exists in FUEL CMS v1.5.2 and before within the asset upload functionality. The application fails to properly sanitize uploaded SVG files, allowing a low-privileged authenticated user to upload a crafted SVG file containing malicious code. Join the discussion | CVE Database V5 | 04/28/2026, 00:00:00 UTC Added: 04/29/2026, 01:53:35 UTC |
0 A path traversal vulnerability in the Blocks module of Daylight Studio FuelCMS v1.5.2 allows attackers to execute a directory traversal. Join the discussion | CVE Database V5 | 04/27/2026, 00:00:00 UTC Added: 04/27/2026, 17:15:12 UTC |
0 An issue in the Forgot Password feature of Daylight Studio FuelCMS v1.5.2 allows unauthenticated attackers to obtain the password reset token of a victim user via a crafted link placed in a valid e-mail message. Join the discussion | CVE Database V5 | 04/16/2026, 00:00:00 UTC Added: 04/16/2026, 14:32:20 UTC |
0 Daylight Studio FuelCMS v1.5.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the /controllers/Installer.php and the function add_git_submodule. Join the discussion | CVE Database V5 | 04/15/2026, 00:00:00 UTC Added: 04/15/2026, 16:01:59 UTC |
0 Daylight Studio FuelCMS v1.5.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability in the Blocks module. Join the discussion | CVE Database V5 | 04/07/2026, 00:00:00 UTC Added: 04/07/2026, 15:31:13 UTC |
0 An issue in Daylight Studio FuelCMS v1.5.2 allows attackers to exfiltrate users' password reset tokens via a mail splitting attack. Join the discussion | CVE Database V5 | 03/26/2026, 00:00:00 UTC Added: 03/26/2026, 18:59:49 UTC |
0 An issue in the /parser/dwoo component of Daylight Studio FuelCMS v1.5.2 allows attackers to execute arbitrary code via crafted PHP code. Join the discussion | CVE Database V5 | 03/26/2026, 00:00:00 UTC Added: 03/26/2026, 18:59:49 UTC |
0 A reflected Cross-Site Scripting (XSS) vulnerability in FUEL CMS 1.5.2allows attackers to run arbitrary code via crafted string after the group_id parameter. Join the discussion | CVE Database V5 | 02/22/2024, 00:00:00 UTC Added: 02/25/2026, 21:45:09 UTC |
Showing 1 to 8 of 8 results