⤷ Title: Public Exploits Released for Three Gogs RCE Flaws, CVSS Up to 10
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 26 Jun 2026 02:00:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_52813 #Git hooks #Gogs #Gogs RCE vulnerability #Path Traversal #proof_of_concept exploit #rce #self_hosted Git
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 26 Jun 2026 02:00:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_52813 #Git hooks #Gogs #Gogs RCE vulnerability #Path Traversal #proof_of_concept exploit #rce #self_hosted Git
Daily CyberSecurity
Public Exploits Released for Three Gogs RCE Flaws, CVSS Up to 10
Public proof-of-concept code targets three Gogs RCE vulnerabilities scoring up to CVSS 10. Update self-hosted Gogs to version 0.14.3 right now.
⤷ Title: Cybersecurity Practice Lab 2
════════════════════════
𐀪 Author: Akhil Thakur
════════════════════════
ⴵ Time: Sun, 28 Jun 2026 06:42:12 GMT
════════════════════════
⌗ Tags: #labs #path_transversal #cybersecurity #ethical_hacking #basics
════════════════════════
𐀪 Author: Akhil Thakur
════════════════════════
ⴵ Time: Sun, 28 Jun 2026 06:42:12 GMT
════════════════════════
⌗ Tags: #labs #path_transversal #cybersecurity #ethical_hacking #basics
Medium
Cybersecurity Practice Lab 2
Path Transversal
⤷ Title: Server-1: Vulnerable Job Portal — Path Traversal Walkthrough (5 Flags)
════════════════════════
𐀪 Author: Enric-xX
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 14:49:54 GMT
════════════════════════
⌗ Tags: #tryhackme #cibersecurity #path_traversal #ctf #bug_bounty
════════════════════════
𐀪 Author: Enric-xX
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 14:49:54 GMT
════════════════════════
⌗ Tags: #tryhackme #cibersecurity #path_traversal #ctf #bug_bounty
Medium
Server-1: Vulnerable Job Portal — Path Traversal Walkthrough (5 Flags)
Server-1 is a deliberately vulnerable web server designed for practicing bug bounty reconnaissance and path traversal. It simulates a…
⤷ Title: DCMTK Vulnerabilities Expose Medical Imaging Systems to File Write and DoS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 04 Jul 2026 01:00:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA medical advisory #CVE_2026_50003 #DCMTK #DICOM #DICOM toolkit #medical imaging #OFFIS DCMTK #Path Traversal
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 04 Jul 2026 01:00:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA medical advisory #CVE_2026_50003 #DCMTK #DICOM #DICOM toolkit #medical imaging #OFFIS DCMTK #Path Traversal
Daily CyberSecurity
DCMTK Vulnerabilities Expose Medical Imaging Systems to File Write and DoS
TL;DR CISA published an advisory for five DCMTK vulnerabilities on 30 June 2026. The DICOM toolkit powers medical imaging on many hospital systems. The worst flaw lets a malicious server write fil…
⤷ Title: Active ColdFusion Arbitrary Code Execution Flaw Scores CVSS 10
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 04:09:29 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #ColdFusion #CVE_2026_48282 #Path Traversal
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 04:09:29 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #ColdFusion #CVE_2026_48282 #Path Traversal
Daily CyberSecurity
Active ColdFusion Arbitrary Code Execution Flaw Scores CVSS 10
TL;DR CVE-2026-48282, a critical CVSS 10 ColdFusion arbitrary code execution vulnerability, is under active attack. Hackers are exploiting this path traversal flaw in the wild. Administrators must…
⤷ Title: Apache Lucene.NET Vulnerability Trio Fixed in Beta 18
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 14:33:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Lucene.NET #CVE_2026_47896 #CVE_2026_47897 #CVE_2026_47898 #Lucene.Net.Replicator #Path Traversal #xxe
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 14:33:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Lucene.NET #CVE_2026_47896 #CVE_2026_47897 #CVE_2026_47898 #Lucene.Net.Replicator #Path Traversal #xxe
Daily CyberSecurity
Apache Lucene.NET Vulnerability Trio Fixed in Beta 18
The Apache project patched three Apache Lucene.NET vulnerability issues in the 4.8.0-beta00018 release. Two of the flaws carry a high CVSS score of 8.9. Both live inside the Lucene.Net.Replicator …
⤷ Title: Apache IoTDB Fixes Path Traversal and Authentication Bypass Flaws (CVE-2026-24014)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:37:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache IoTDB #Arbitrary File Write #Authentication Bypass #CVE_2026_24012 #CVE_2026_24013 #CVE_2026_24014 #IoT security #Path Traversal
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:37:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache IoTDB #Arbitrary File Write #Authentication Bypass #CVE_2026_24012 #CVE_2026_24013 #CVE_2026_24014 #IoT security #Path Traversal
Daily CyberSecurity
Apache IoTDB Fixes Path Traversal and Authentication Bypass Flaws (CVE-2026-24014)
TL;DR Apache IoTDB has patched three flaws in its time-series database. The worst is a critical path traversal bug, CVE-2026-24014, scored 9.8. A second flaw allows an authentication bypass, and a…
⤷ Title: decompress npm Vulnerability CVE-2026-53486 (CVSS 9.1) Threatens 2.8 Million Weekly Downloads
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sun, 12 Jul 2026 13:00:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_53486 #decompress #Node.js Security #npm Security #Path Traversal #Supply Chain Security
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sun, 12 Jul 2026 13:00:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_53486 #decompress #Node.js Security #npm Security #Path Traversal #Supply Chain Security
Daily CyberSecurity
decompress npm Vulnerability CVE-2026-53486 (CVSS 9.1) Threatens 2.8 Million Weekly Downloads
TL;DR A high-severity decompress npm vulnerability lets crafted archives write files outside the extraction folder. Tracked as CVE-2026-53486, the flaw carries a CVSS score of 9.1. It sits in a li…
⤷ Title: CVE-2026-59948: PHP Composer Flaw Lets Packages Execute Code Outside the Project Context
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 13:30:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_59946 #CVE_2026_59947 #CVE_2026_59948 #Path Traversal #PHP Composer #Supply Chain
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 13:30:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_59946 #CVE_2026_59947 #CVE_2026_59948 #Path Traversal #PHP Composer #Supply Chain
Daily CyberSecurity
CVE-2026-59948: PHP Composer Flaw Lets Packages Execute Code Outside the Project Context
TL;DR PHP Composer, the main dependency manager for the language, patched three security flaws. The most serious, CVE-2026-59948, is an arbitrary file write rated CVSS 7.0. A malicious package can…
⤷ Title: Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
Daily CyberSecurity
Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
TL;DR Notepad++ v8.9.7 fixes five security flaws in the popular Windows editor. Technical details and proof-of-concept exploit code for all five Notepad++ vulnerabilities are public in the project…