THREAT OPS › Threat News
Threat Intelligence News
11691 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- [GHSA] GHSA-cqhc-2h57-wpxf (high) — MariaDB's connector leaks the cleartext password to an MitM despite `ssl: true`github_advisories · 2026-08-28
- [GHSA] GHSA-r82h-mqw3-fc56 (critical) — plone.app.event vulnerable to denial of service via iCalendar importgithub_advisories · 2026-08-28
- [GHSA] GHSA-c9f5-j9c3-mhrg (high) — Incus has a project restriction bypass in instance copy across projectsgithub_advisories · 2026-08-28
- [GHSA] GHSA-64f3-v33m-w89f (high) — Incus has a project restriction bypass for custom volume copy across projectsgithub_advisories · 2026-08-28
- [GHSA] GHSA-2q2q-jr9g-v9rf (high) — Weblate has IDOR in GroupViewSet that allows authenticated project manager to gain unauthorized read access to any private projectgithub_advisories · 2026-08-28
- [GHSA] GHSA-2p9g-x3cv-5hh4 (medium) — Private Weblate projects vulnerable to observable object existence disclosure via globally scoped object lookupsgithub_advisories · 2026-08-28
- [GHSA] GHSA-wjmf-p669-5m5p (high) — Protego has exponential backtracking ReDoS in robots.txt URL wildcard matchinggithub_advisories · 2026-08-28
- [GHSA] GHSA-x5g3-w747-2h8q (critical) — plone.app.portlets vulnerable to denial of service via RSS feed portletgithub_advisories · 2026-08-28
- [GHSA] GHSA-jqvf-j3ww-r8c7 (high) — PowSyBl Core has Command Injection in LocalCommandExecutor-sgithub_advisories · 2026-08-28
- [GHSA] GHSA-p68j-q7hf-3qcp (high) — Spinnaker: Improper yaml processing on kustomize bake operationsgithub_advisories · 2026-08-28
- [GHSA] GHSA-f9qc-qg88-7pq5 (medium) — Buffa Vulnerable to Memory Exhaustion Denial of Service in decode_unknown_field via Unbounded Allocationgithub_advisories · 2026-08-28
- [GHSA] GHSA-9pwq-gcrx-wghh (medium) — Buffa has a Use-After-Free in OwnedView via Unsound 'static Lifetime Promotion in Derefgithub_advisories · 2026-08-28
- [GHSA] GHSA-86m2-fcxq-5q7c (high) — 9router: Unauthenticated `/v1` proxy access via `Host`-header spoofing → open AI relay + SSRFgithub_advisories · 2026-08-28
- [GHSA] GHSA-8gmq-j984-vp4r (high) — 9router: Unauthenticated LLM proxy access via /codex rewrite authorization bypassgithub_advisories · 2026-08-28
- [GHSA] GHSA-786w-p5pm-cvgh (high) — phpSysInfo has an IP allowlist (PSI_ALLOWED) bypass via spoofed X-Forwarded-For / Client-IP headersgithub_advisories · 2026-08-28
- [GHSA] GHSA-w98g-5w9p-p3rc (high) — Bifrost's SSRF deny-list is incomplete: isPublicIP permits CGNAT, IPv6 6to4/NAT64, and site-local in FetchAndEncodeURLgithub_advisories · 2026-08-28
- [GHSA] GHSA-298f-872v-2rcx (low) — ORAS CLI: Cyclic Referrer Graph Can Cause Unbounded Recursion and Resource Consumptiongithub_advisories · 2026-08-28
- [GHSA] GHSA-2gh4-jmwq-rr8w (high) — piccolo-admin has a privilege escalation issue - admin to superuser via session-token disclosure in GET /api/tables/sessions/.github_advisories · 2026-08-28
- [GHSA] GHSA-p6gw-4frg-j7jw (high) — WsgiDAV MySQL provider has a blind SQL injectiongithub_advisories · 2026-08-28
- [GHSA] GHSA-q79r-r9xg-r863 (medium) — Graylog Server: System Catalog titles endpoint can be used to retrieve values of protected database fieldsgithub_advisories · 2026-08-28
- [GHSA] GHSA-575r-357h-fhch (high) — Snipe-IT vulnerable to cross-company asset maintenance re-parenting via API updategithub_advisories · 2026-08-28
- [GHSA] GHSA-35cr-9hqq-p2mg (medium) — Snipe-IT: Cross-company deletion of pending checkout acceptances via unscoped report endpointgithub_advisories · 2026-08-28
- [GHSA] GHSA-w7qw-5wfv-gwx9 (medium) — Snipe-IT has CSS Injection via `header_color` Settinggithub_advisories · 2026-08-28
- [GHSA] GHSA-8frh-vhgh-64cf (medium) — Snipe-IT has incorrect permission for legacy license checkin API github_advisories · 2026-08-28
- [GHSA] GHSA-crv3-j83j-f3r6 (medium) — Snipe-IT has missing object-level authorization in Kits APIgithub_advisories · 2026-08-28
- [GHSA] GHSA-53jc-27pc-x8r8 (medium) — Snipe-IT Vulnerable to Unauthorized Asset Request Cancellation via Unguarded cancel_by_admin Parametergithub_advisories · 2026-08-28
- [GHSA] GHSA-c6f4-wj38-m3g3 (high) — Snipe-IT vulnerable to directory traversal in displaySiggithub_advisories · 2026-08-28
- [GHSA] GHSA-8w8c-8mx9-52cw (medium) — Snipe-IT's API Location Creation Bypasses FMCS Parent-Child Company Boundary Validationgithub_advisories · 2026-08-28
- [GHSA] GHSA-xr9m-gphc-9p63 (low) — Snipe-IT has a path traversal vulnerability via CSV import `image` fieldgithub_advisories · 2026-08-28
- [GHSA] GHSA-jhph-5q74-pmfx (medium) — Snipe-IT vulnerable to stored XSS via inline-served attachmentgithub_advisories · 2026-08-28
- [GHSA] GHSA-r52f-r9v5-66xr (medium) — Snipe-IT vulnerable to stored XSS via Markdown custom field github_advisories · 2026-08-28
- [GHSA] GHSA-fc33-6w3q-538h (medium) — Snipe-IT has an authorization bypass on print inventory pagegithub_advisories · 2026-08-28
- [GHSA] GHSA-wg2f-x2c2-c4rp (medium) — Snipe-IT has an Open Redirect After User Editgithub_advisories · 2026-08-28
- [chaos] corematerials.com posted to leak siteransomware_live · 2026-08-28
- [chaos] macallister.com posted to leak siteransomware_live · 2026-08-28
- [GHSA] GHSA-vgx7-c78r-69w9 (high) — Snipe-IT has an authorization bypass on bulk editing usersgithub_advisories · 2026-08-28
- [GHSA] GHSA-whrx-mmgr-gpcf (medium) — Snipe-IT has CSV formula injection in Activity Report exportgithub_advisories · 2026-08-28
- [GHSA] GHSA-9272-wg2r-7xmx (medium) — Yamcs has DOM XSS in Extension Routinggithub_advisories · 2026-08-28
- [qilin] Newton County School System posted to leak siteransomware_live · 2026-08-28
- [GHSA] GHSA-c64q-hj4j-375f (critical) — Yamcs vulnerable to authenticated remote code execution via unescaped StreamSQL `LIKE` pattern compiled by Janino (`LikeExpression`)github_advisories · 2026-08-28
- [GHSA] GHSA-73mf-m39p-wpm9 (critical) — Yamcs vulnerable to Remote Code Execution via instance-template argument YAML injection (createInstance)github_advisories · 2026-08-28
- [GHSA] GHSA-9jg3-g3wh-w9pj (high) — Yamcs has Unauthenticated Directory Traversalgithub_advisories · 2026-08-28
- [GHSA] GHSA-rxpg-wjf8-qv9c (medium) — Yamcs has Reflected XSS in the URL of the Authorize Endpointgithub_advisories · 2026-08-28
- [GHSA] GHSA-8xjq-pr36-ccgf (medium) — Yamcs: Insecure Direct Object Reference (IDOR) in PacketsApi allows unprivileged users to dump all telemetry packetsgithub_advisories · 2026-08-28
- [GHSA] GHSA-cvw4-55pp-3hfq (medium) — Yamcs's Missing Authorization on Role and Privilege Enumeration Endpoints Allows Any Authenticated User to Disclose Full Security Configurationgithub_advisories · 2026-08-28
- Attackers Chain Two PaperCut Flaws to Execute Code Without Authenticationthehackernews · 2026-08-28
- [GHSA] GHSA-fwww-cp23-7f5g (medium) — Yamcs's WebSocket subscription handlers omit the privilege checks their REST siblings enforcegithub_advisories · 2026-08-28
- [GHSA] GHSA-962x-ccwf-8x6p (high) — Yamcs Core API has Multiple Missing Function Level Access Control vulnerabilitiesgithub_advisories · 2026-08-28
- [GHSA] GHSA-3g44-3m7x-cgg2 (critical) — Yamcs vulnerable to authenticated RCE via StreamSQL aggregate-compiler column-name injection in Yamcs `executeSql`github_advisories · 2026-08-28
- [GHSA] GHSA-x8mj-6p3q-g5pp (critical) — free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpointsgithub_advisories · 2026-08-28
- [GHSA] GHSA-569v-q83c-3j3g (medium) — Vikunja vulnerable to authenticated cross-tenant kanban-bucket relocation via `project_view_id` mass-assignmentgithub_advisories · 2026-08-28
- [GHSA] GHSA-5pg6-m483-7vrg (high) — Vikunja has cross-tenant IDOR in kanban move-task endpoint via unauthorized body task_idgithub_advisories · 2026-08-28
- [GHSA] GHSA-gg93-x632-9ccv (high) — Vikunja vulnerable to Improper Authorization and Authorization Bypass Through User-Controlled Keygithub_advisories · 2026-08-28
- [GHSA] GHSA-44v6-7fxq-vgf4 (medium) — Vikunja has an incomplete fix for CVE-2026-35595: Write-only user can detach shared project from parent hierarchy via parent_project_id=0github_advisories · 2026-08-28
- [GHSA] GHSA-f27p-pw2p-9pr4 (medium) — Vikunja has a project duplication bypasses write-permission check on the target parent projectgithub_advisories · 2026-08-28
- [GHSA] GHSA-gpwf-4h98-v82q (high) — datadog-opentelemetry has unbounded W3C tracestate parsing that may lead to DoSgithub_advisories · 2026-08-28
- [GHSA] GHSA-2wvm-8mvp-22qv (medium) — Pocket-ID has an Open Redirect on the OIDC /authorize page via unvalidated redirect_uri with prompt=nonegithub_advisories · 2026-08-28
- [GHSA] GHSA-mf5c-hw34-4hpp (medium) — Aqua's archive extraction follows attacker-planted symlinks, allowing writes outside the install directorygithub_advisories · 2026-08-28
- [GHSA] GHSA-cgc5-v3f2-8m2v (critical) — Klever: Integer overflow in split-royalty validation enables unbounded minting of KLV (native token)github_advisories · 2026-08-28
- [GHSA] GHSA-p7gw-2pcp-5pf8 (critical) — Klever: Marketplace settlement mints KLV when referral % + royalty % exceed the bid (negative seller share silently skipped)github_advisories · 2026-08-28
- Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providersthehackernews · 2026-08-28
- [GHSA] GHSA-jw39-3688-r4rx (high) — Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-evaluation of Untrusted Datagithub_advisories · 2026-08-28
- [GHSA] GHSA-fmgp-q6jx-gg3x (high) — KubeVela Terraform remote loader DoS via unbounded file readgithub_advisories · 2026-08-28
- [GHSA] GHSA-2vh6-hw4j-32ww (medium) — gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)github_advisories · 2026-08-28
- [GHSA] GHSA-8x7x-83cf-c3pg (medium) — Hatchet allows cross-tenant write/DoS to other tenants' workers via Dispatcher gRPC UpsertWorkerLabels and Unsubscribegithub_advisories · 2026-08-28
- [GHSA] GHSA-x7rj-f32v-7jjg (high) — Phalcon: Catastrophic backtracking (ReDoS) in the default Phalcon Router route lead to remote unauthenticated DoSgithub_advisories · 2026-08-28
- [GHSA] GHSA-8jqh-95g6-7jpj (high) — Phalcon: Non-constant-time HMAC verification in `Encryption\Crypt::decrypt` (timing side-channel)github_advisories · 2026-08-28
- ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Bodythehackernews · 2026-08-28
- [rhysida] Valley Health Team posted to leak siteransomware_live · 2026-08-28
- 19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Codethehackernews · 2026-08-28
- cPanel security advisory (AV26-861)cccs_ca · 2026-08-28
- WebPros security advisory (AV26-861)cccs_ca · 2026-08-28
- Grafana security advisory (AV26-860)cccs_ca · 2026-08-28
- [akira] Alumax posted to leak siteransomware_live · 2026-08-28
- Redis security advisory (AV26-859)cccs_ca · 2026-08-28
- [rhysida] Berlin, Germany posted to leak siteransomware_live · 2026-08-28
- [akira] BEPeterson posted to leak siteransomware_live · 2026-08-28
- [akira] JRT Mechanical posted to leak siteransomware_live · 2026-08-28
- PaperCut security advisory (AV26-858)cccs_ca · 2026-08-28
- Why a cryptographic inventory is key for addressing the quantum computing threattenable · 2026-08-28
- ServiceNow security advisory (AV26-857)cccs_ca · 2026-08-28
- Protect your WhatsApp account with new passkey and 2FA upgradesmalwarebytes_blog · 2026-08-28
- [moneymessage] ProCare posted to leak siteransomware_live · 2026-08-28
- [qilin] DigiGround posted to leak siteransomware_live · 2026-08-28
- [qilin] Tramigo posted to leak siteransomware_live · 2026-08-28
- [qilin] Cosmocolor SA de CV posted to leak siteransomware_live · 2026-08-28
- [emperador] Hanwha Renewables posted to leak siteransomware_live · 2026-08-28
- [Control Systems] National Instruments security advisory (AV26-856)cccs_ca · 2026-08-28
- [NVD] CVE-2026-82252 (HIGH 7.5) — gitoxide before 0.52.1 follows symlinks when reading the worktree .gitmodules file, allowing attackers to inject out-of-repository bytes into submodule metadata. Attackers can create a malicious repository with a symlinked .gitmodules pointing outside the repository tree, causingnvd · 2026-08-28
- [NVD] CVE-2026-82251 (HIGH 7.5) — gitoxide before 0.52.1 fails to validate submodule names from .gitmodules configuration, allowing path traversal when deriving submodule git directories. Attackers can craft malicious submodule names with traversal segments to redirect state() and open() functions to repositoriesnvd · 2026-08-28
- [NVD] CVE-2026-81733 — WWBN AVideo through 30.0 (and master up to commit 4cb576e) contains a cross-site request forgery vulnerability in plugin/Live/myLiveControls.save.json.php. The endpoint only checks that a user is logged in and processes customUrl, customMessage, and autoRedirect parameters from $nvd · 2026-08-28
- [NVD] CVE-2026-81732 — WWBN AVideo through version 30.0 fails to enforce authentication on the report4.json.php and report4.1.json.php endpoints, allowing unauthenticated access to user registration statistics. Attackers can send GET requests to these endpoints to retrieve daily and cumulative user-regnvd · 2026-08-28
- Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooththehackernews · 2026-08-28
- [unsafe] amzur.com posted to leak siteransomware_live · 2026-08-28
- Key Reasons Why Identity Fabric Matters in 2026thehackernews · 2026-08-28
- The AI agent swarm that attacked Hugging Face is a warning for the futuremalwarebytes_blog · 2026-08-28
- [Panzer] Directorate-General for Education posted to leak siteransomware_live · 2026-08-28
- Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQLthehackernews · 2026-08-28
- OpenAI Urges Cyber Defense Against AI Threatssocradar_blog · 2026-08-28
- AI Doesn’t Mean the End of Mathematics—at Least Not Yetschneier · 2026-08-28