Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'exploit'

View all threats tagged with 'exploit'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: exploit

Threats Tagged 'exploit'

Click on any threat for detailed analysis and mitigation recommendations

Splunk Enterprise Vulnerability Exploited in Attacks Days After Disclosure
0

A critical vulnerability (CVE-2026-20253) in Splunk Enterprise allows unauthenticated attackers to create or truncate arbitrary files via a PostgreSQL sidecar service endpoint lacking authentication controls. The flaw affects Splunk Enterprise versions 10.2 before 10.2.4 and 10.0 before 10.0.7. Exploitation was confirmed shortly after public disclosure, with proof-of-concept code published. CISA has added this vulnerability to its Known Exploited Vulnerabilities catalog and mandated rapid patching for federal agencies. Splunk has released patches to remediate the issue and strongly recommends upgrading to fixed versions.

Join the discussion
CVE-2026-23111: exploiting and detecting a nftables UAF born from a security fixCVE-2026-23111
0

CVE-2026-23111 is a use-after-free (UAF) vulnerability in the Linux kernel's nftables subsystem, introduced by a security fix for a previous vulnerability (CVE-2023-4244). This flaw affects nf_tables and is reachable from an unprivileged user namespace. The vulnerability enables advanced exploitation techniques including kernel address space layout randomization (KASLR) leaks, arbitrary reads, kernel structure traversal, and privilege escalation to root (uid=0) without hardcoded addresses. The exploit and detection methods have been publicly disclosed, emphasizing detection strategies beyond payload identification. No specific affected versions or vendor patches are detailed in the provided information.

Join the discussion
Microsoft - NTLMv2 Hash Capture
0

Microsoft - NTLMv2 Hash Capture

Join the discussion
WordPress OrderConvo 14 - Path Traversal
0

WordPress OrderConvo 14 - Path Traversal

Join the discussion
Drupal Core 10.5.5 - Error-Based SQL Injection
0

Drupal Core 10.5.5 - Error-Based SQL Injection

Join the discussion
cPanel - CRLF Injection
0

cPanel - CRLF Injection

Join the discussion
Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover
0

Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

Join the discussion
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service
0

Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

Join the discussion
Grav CMS 2.0.0-beta.2 - Remote Code Execution
0

Grav CMS 2.0.0-beta.2 - Remote Code Execution

Join the discussion
Realtek rtl819x - Local Privilege
0

Realtek rtl819x - Local Privilege

Join the discussion

Showing 1 to 10 of 42 results

Filters:Tag: exploit
Page 1 of 5
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses