Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-75593: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in moby buildkitCVE-2026-75593 0 BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. Prior to 0.31.2, a custom client can produce such an upload request to the BuildKit daemon that files can escape from the BuildKit-controlled state directory. The client needs to have valid permissions to access BuildKit control API to issue builds, eg., bypass authentication, etc. This issue is fixed in version 0.31.2. Join the discussion | CVE Database V5 | 08/19/2026, 20:06:54 UTC Added: 08/19/2026, 20:22:53 UTC |
CVE-2026-61712: CWE-770: Allocation of Resources Without Limits or Throttling in moby buildkitCVE-2026-61712 0 BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. Prior to 0.31.1, BuildKit read attacker-controlled /etc/passwd and /etc/group files without an upper bound while resolving a username to a user identifier or group identifier in executor/oci/user.go and solver/llbsolver/ops/user_linux.go. A malicious base image or build could provide oversized files that exhausted memory during user resolution and caused out-of-memory termination of the buildkitd process. This issue is fixed in version 0.31.1. Join the discussion | CVE Database V5 | 08/19/2026, 20:01:18 UTC Added: 08/19/2026, 20:22:53 UTC |
CVE-2026-61711: CWE-20: Improper Input Validation in moby buildkitCVE-2026-61711 0 BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. Prior to 0.31.1, a custom frontend could place an invalid SecurityMode value in a crafted build request, and executor/oci/spec_linux.go treated the unsupported value as a non-sandbox mode without requiring the security.insecure entitlement. This disabled Seccomp and AppArmor protections for the build container even though Linux capabilities remained restricted. This issue is fixed in version 0.31.1. Join the discussion | CVE Database V5 | 08/19/2026, 20:03:38 UTC Added: 08/19/2026, 20:22:53 UTC |
Showing 1 to 3 of 3 results