Full Disclosure·2h agodive tar-slip in image file extraction#dive#tar-slip#path-traversalVulnerability
Full Disclosure·2h ago high[0day-rubbish] FME Flow 2026.2 Zip-Slip arbitrary file write to code execution as LocalSystem (8.8)#fme-flow#safe-software#zip-slipVulnerability
Full Disclosure·2h ago[NotCVE-2026-0014] Input Leap 3.0.3 Drag-and-Drop File Transfer Path Traversal Allows Arbitrary File Write Outside the Drop Directory#input-leap#path-traversal#arbitrary-file-writeVulnerability 4 sources
GBHackers·22h ago criticalCISA Flags WSO2 Security Flaw Under Active Exploitation#wso2#cve-2026-5430#cisa 7 sources in the wild 3 min1
BleepingComputer·23h ago criticalHackers start exploiting critical WordPress flaw for code execution#wordpress#cve-2026-87902#rce 16 sources in the wild 3 min1
Cyber Security News·1d ago highAI agents Tried to Hack Public Websites After Failing to Access Data Through Normal Methods#ai-agents#openai#agent-security 22 sources in the wild 3 min
BleepingComputer·1d ago highShinyHunters hacked Clop leak site using Grav CMS path traversal flaw#shinyhunters#clop#grav-cms 6 sources in the wild 4 min1
Cyber Security News·1d ago criticalCISA Warns of Multiple Check Point Product Vulnerabilities Exploited in Attacks#check-point#cisa#kev 15 sources in the wild 2 min
CISA Advisories·2d ago highCISA Adds Two Known Exploited Vulnerabilities to Catalog#cisa#kev#wso2CVE-2026-5430 in the wild
CISA Advisories·2d ago highSiemens SIMOVE Fleetmanager and SIPLANT#siemens#ics#cisaCVE-2026-67367 5 sources 4 min
oss-security·3d agoCVE-2026-82331: Apache BuildStream: tar source extraction escape#cve-2026-82331#apache#buildstreamCVE-2026-82331
Wordfence·4d ago highPSA: Critical Unauthenticated Path Traversal Vulnerability Patched in WordPress Core#wordpress#path-traversal#local-file-inclusion
Hacker News · security·4d ago highWordPress: Unauthenticated path traversal leading to conditional RCE#wordpress#path-traversal#rceVulnerability
oss-security·5d agoCVE-2026-93712: Dancer2 versions from 2.1.0 before 2.2.0 for Perl serve files from outside public_dir via relative path segments in the File route handler#cve-2026-93712#dancer2#perlCVE-2026-93712 4 sources
GBHackers·8d agoWordPress 7.1.1 Fixes 11 Security Flaws Including Stored XSS and Path Traversal#authorization-bypass#cms#patch 3 min
Cyber Security News·8d agoWordPress Urges Immediate Update After Fixing 11 Security Vulnerabilities#authorization-bypass#cms#path-traversal 3 min1
WordPress.org · Security·9d agoWordPress 7.1.1 Maintenance and Security Release#cms#patching#path-traversal 4 min
CISA Advisories·9d ago highHitachi Energy FACTS Control Platform (FCP)#authentication-bypass#cisa#energyCVE-2024-4872 9 min
Cisco Security Advisories·10d agoCisco Identity Services Engine Multiple Path Traversal Vulnerabilities#cisco#ise#ise-picAdvisory 14 sources1
oss-security·10d ago highCVE-2026-87976: Apache NiFi Registry: Improper Limitation of Pathname in Persisted Extension Bundles#apache#extension-bundles#javaCVE-2026-87976 5 sources1
Ubuntu Security Notices·11d agoUSN-8766-1: Suricata-Update vulnerability#arbitrary-file-write#ids#path-traversalAdvisory
CSO Online·11d ago highExposed Vite servers are being probed for AWS and Azure credentials#cloud-credentials#cve-2026-39364#honeypot in the wild 3 min1
CSO Online·12d ago criticalA maximum severity GitLab flaw could turn your CI/CD server into an attacker’s treasure trove#ci-cd#cisa-kev#cve-2026-85706 in the wild 4 min