Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'vulnerability'

View all threats tagged with 'vulnerability'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: vulnerability

Threats Tagged 'vulnerability'

Click on any threat for detailed analysis and mitigation recommendations

How We Hacked Thousands of Data Centers in Minutes Using a 20-Year-Old Vulnerability
0

How We Hacked Thousands of Data Centers in Minutes Using a 20-Year-Old Vulnerability Source: https://lavahq.io/bmcradar

Join the discussion
Share Point Vulnerability
0

Share Point Vulnerability Source: https://gist.github.com/testanull/0868e02d81d57d6c59a91261969f7f81

Join the discussion
CISA Issues Emergency Directive to Patch Critical Remote Code Execution Vulnerability in Langflow AI Framework
0

CISA has issued an emergency directive to patch a critical remote code execution vulnerability (CVE-2026-0770) in the widely used Langflow AI framework, which is actively exploited in the wild. The flaw allows unauthenticated attackers to execute code as root, posing significant risk to exposed deployments. The advisory includes detailed mitigation steps such as restricting internet exposure and auditing logs for exploitation attempts.

Join the discussion
6 days vs. 1 hour to Fix the Same Vulnerability: Check Point's Exposure Gap Report AMA
0

This report discusses the significant variation in remediation times for critical vulnerabilities across different teams, ranging from under one hour to over six days. The difference in speed is attributed more to prioritization, ownership, and process issues rather than tooling or effort. The Check Point Exposure Management team offers insights into what slows down remediation and how faster teams manage exposure differently. The content is based on an AMA session with Check Point experts sharing their experience and observations on vulnerability remediation speed.

Join the discussion
I’m Quincy Castro, CISO at Chainguard — Ask Me Anything about software vulnerability discovery and remediation using frontier AI models!
0

This entry is an announcement of a Reddit 'Ask Me Anything' session with Quincy Castro, CISO at Chainguard, discussing software vulnerability discovery and remediation using advanced AI models. It highlights the evolving landscape of vulnerability detection accelerated by frontier AI, and the formation of an industry coalition, Athena, to coordinate defense efforts. No specific vulnerability or exploit details are provided.

Join the discussion
Critical Google Chrome Zero-Day Vulnerability Enables Sandbox Escape – Immediate Update Required
0

A critical zero-day vulnerability in Google Chrome's V8 JavaScript engine allows attackers to escape the browser sandbox and execute malicious code with user-level privileges, risking theft of passwords and sensitive data. The exploit is actively used in the wild by APT groups, prompting urgent patching directives from federal agencies including CISA. Immediate manual updating of Chrome and Chromium-based browsers is essential to mitigate this threat.

Join the discussion
CVE-2026-20896: Critical Gitea Docker Authentication Bypass – Technical Analysis and Immediate Fix Guide
0

This article provides a detailed technical analysis of the critical CVE-2026-20896 vulnerability in Gitea Docker images, which allows unauthenticated attackers to bypass authentication via a misconfigured reverse proxy trust setting. It includes actionable remediation steps such as immediate patching to version 1.26.4 or applying configuration fixes to restrict trusted proxies, helping defenders mitigate active exploitation risks.

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: vulnerability
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses