Daily Writeups
3.56K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Website Exploitation: Information Gathering & Vulnerability Scanning on Web and CMS
════════════════════════
𐀪 Author: Habibi
════════════════════════
Time: Sun, 08 Feb 2026 10:52:29 GMT
════════════════════════
Tags: #web #vulnerability_scanning #cms #ethical_hacking #website
Title: The ‘Must-Patch’ Release: WordPress 6.9.2 Scrambles to Fix 10 Critical Flaws from XSS to SSRF
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 03:58:29 +0000
════════════════════════
Tags: #Vulnerability Report #CMS Security #cybersecurity #infosec #Patch Alert #Path Traversal #ssrf #vulnerability management #WordPress 6.9.2 #wordpress security #XSS Vulnerability
Title: Winter CMS Urgently Patches Critical 10.0 CVSS Privilege Escalation Flaw
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 13 Mar 2026 03:24:39 +0000
════════════════════════
Tags: #Vulnerability Report #Access Control #CMS Security #CVE_2026_27591 #CVSS 10 #cybersecurity #infosec #Patch Alert #privilege escalation #vulnerability management #Winter CMS
Title: The WordPress Killer? Cloudflare Unveils EmDash, the AI-Native CMS Built for the Serverless Epoch
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 09:15:52 +0000
════════════════════════
Tags: #Technology #AI_native #Astro 6.0 #cloudflare #cms #Cybersecurity 2026 #EmDash #open_source #serverless #TypeScript #V8 Isolate #WordPress Alternative
Title: Cloudflare Targets WordPress With New AI-Powered EmDash CMS
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
Time: Mon, 06 Apr 2026 14:26:07 +0000
════════════════════════
Tags: #Security #Technology #AI #AI Bot #Artificial Intelligence #CloudFlare #CMS #Cybersecurity #EmDash #Matt Mullenweg #Wordpress
Title: Total CMS Takeover: Movable Type Patches Critical 9.8 CVSS Perl RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 13 Apr 2026 02:12:06 +0000
════════════════════════
Tags: #Vulnerability Report #Admin Panel Security #CMS Security #CVE_2026_25776 #CVE_2026_33088 #cybersecurity #infosec #Movable Type #Perl RCE #rce #Six Apart #sql injection
Title: EspoCRM v9.3.4: From Extension Upload to Remote Code Execution (RCE)
════════════════════════
𐀪 Author: Ali İltizar
════════════════════════
Time: Mon, 13 Apr 2026 09:28:55 GMT
════════════════════════
Tags: #cms #rce
Title: Stored XSS to Privilege Escalation in Azuriom CMS — When “Trusted Users” Become a Security…
════════════════════════
𐀪 Author: CradS
════════════════════════
Time: Fri, 01 May 2026 15:14:40 GMT
════════════════════════
Tags: #cms #cybersecurity #penetration_testing #appsec #cross_site_scripting
Title: Zero-Day Surge: The MetInfo CMS Flaw That Grants Unauthenticated Root Access to Servers
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 07 May 2026 09:24:08 +0000
════════════════════════
Tags: #Vulnerability #Automated Scanning #China Cyber Security #CMS Security #CVE_2026_29014 #Cyber attack 2026 #MetInfo #PHP Code Injection #RCE #remote code execution #VulnCheck #zero_day
Title: Critical Strapi Flaws Enable Unauthenticated Admin Takeover and Server RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 18 May 2026 02:02:16 +0000
════════════════════════
Tags: #Vulnerability Report #Admin Takeover #cms #CVE_2026_22599 #CVE_2026_27886 #Cyber Security #Headless CMS #infosec #Patch Alert #rce #sql injection #Strapi
Title: What Businesses Should Know Before Migrating Their CMS
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
Time: Thu, 18 Jun 2026 15:42:16 +0000
════════════════════════
Tags: #Technology #Business #CMS #Migrating
Title: TryHackme — Lazy Admin Writeup
════════════════════════
𐀪 Author: Fakhri Rahadi
════════════════════════
Time: Sun, 28 Jun 2026 05:40:13 GMT
════════════════════════
Tags: #cybersecurity #tryhackme #ctf #web_penetration_testing #cms
Title: Plone Fixes Critical RCE Flaw and Two Denial-of-Service Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 01 Jul 2026 00:01:16 +0000
════════════════════════
Tags: #Vulnerability Report #Classic portlet #CMS Security #CVE_2026_57149 #Plone #Plone RCE vulnerability #plone.app.portlets #ssrf #TALES injection
Title: CMS Exploitation Campaign Plants Webshells on Business Websites
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 13 Jul 2026 08:50:27 +0000
════════════════════════
Tags: #Cybercriminals #ACSC #CMS Exploitation #CMS Vulnerabilities #Web Security #webshell #wordpress
Title: ACSC Warns: CMS Campaign Installs Web Shells via 17 CVEs
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
Time: Tue, 14 Jul 2026 15:30:56 +0000
════════════════════════
Tags: #Cybercriminals #ACSC Advisory #CMS Security #Craft CMS #joomla #Mass Exploitation #Web Shell #WordPress Vulnerability
Title: Back From Vacation & Launching Open Beta: Help Us Test NextBlock CMS (and Get a $500/yr Lifetime…
════════════════════════
𐀪 Author: NextBlock CMS
════════════════════════
Time: Wed, 22 Jul 2026 19:19:21 GMT
════════════════════════
Tags: #cms #supabase #bug_bounty #nextjs #bounty_program