Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-73482: Cross-Site Request Forgery (CSRF) in phplist phplist3CVE-2026-73482 0 phpList before version 3.7.0-RC5 contains a cross-site request forgery (CSRF) vulnerability in the administrator deletion functionality. This flaw allows a remote attacker to trick a logged-in super-administrator into deleting any non-self administrator account by loading a crafted URL that lacks proper CSRF token protection. Join the discussion | CVE Database V5 | 08/13/2026, 18:49:02 UTC Added: 08/13/2026, 18:56:57 UTC |
CVE-2026-73481: Cross-Site Request Forgery (CSRF) in phplist phplist3CVE-2026-73481 0 phpList versions before 3.7.0-RC5 have a Cross-Site Request Forgery (CSRF) vulnerability in the bounce rule deletion endpoint. The application fails to enforce CSRF token validation properly when deleting bounce rules via a GET request, allowing an attacker to trick an authenticated administrator into deleting arbitrary bounce rules without a valid CSRF token. This vulnerability has a medium severity rating with a CVSS score of 5.3. Join the discussion | CVE Database V5 | 08/13/2026, 18:48:42 UTC Added: 08/13/2026, 18:56:57 UTC |
Showing 1 to 2 of 2 results