Daily Writeups
3.53K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: CVE-2026-49844: Apache Log4j Emits Invalid JSON Logs
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 13 Jul 2026 00:00:08 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Log4j #CVE_2026_34481 #CVE_2026_49844 #JsonTemplateLayout #log4j_api #Vulnerability
Title: Apache IoTDB Patches Five Security Flaws, Upgrade to 2.0.10
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Thu, 16 Jul 2026 13:00:01 +0000
════════════════════════
Tags: #Vulnerability Report #Apache IoTDB #CVE_2026_28564 #CVE_2026_40005 #CVE_2026_40006 #CVE_2026_40008 #CVE_2026_40009 #IoT security #Time_Series Database
Title: Critical Apache Doris Flaw (CVE-2026-58319) Exposes Admin APIs to Unauthenticated Attackers
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 20 Jul 2026 13:30:28 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Doris #CVE_2026_58319 #database security #improper authentication #Vulnerability
Title: Three SQL Injection Flaws Patched in Apache Fineract Core Banking Platform
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 21 Jul 2026 13:15:50 +0000
════════════════════════
Tags: #Vulnerability Report #apache #Apache Fineract #Core Banking #sql injection
Title: CVE-2026-49488: Arbitrary File Read Flaw in Apache OpenMeetings Exposes Server Credentials
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 21 Jul 2026 12:25:58 +0000
════════════════════════
Tags: #Vulnerability Report #apache #Apache OpenMeetings #Arbitrary File Read #Path Traversal
Title: HTTP/2 DoS Vulnerability Lets Attackers Exhaust Server Memory via Stalled Flow Control
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Thu, 23 Jul 2026 15:00:18 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Traffic Server #CVE_2026_44909 #CVE_2026_59173 #CVE_2026_59762 #Denial of Service #HTTP/2 DoS vulnerability #memory exhaustion #stalled flow control
Title: Apache Syncope Patches SQL Injection and Privilege Escalation Flaws
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Thu, 23 Jul 2026 14:10:21 +0000
════════════════════════
Tags: #Vulnerability Report #Apache security #Apache Syncope vulnerabilities #CVE_2026_57308 #CVE_2026_62183 #Identity Management #patch management #privilege escalation flaw #sql injection
Title: Apache Fory Patches Four Deserialization Flaws Across Java, C++, and Rust
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 27 Jul 2026 12:51:40 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Fory #Apache Fury #CVE_2026_60080 #CVE_2026_64606 #CVE_2026_64608 #CVE_2026_64609 #Deserialization #open_source #Serialization #Type Confusion #use after free
Title: Apache ActiveMQ Patches Authorization Bypass and DoS Flaws
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 28 Jul 2026 02:05:15 +0000
════════════════════════
Tags: #Vulnerability Report #ActiveMQ vulnerability #Apache ActiveMQ #Authorization Bypass #CVE_2026_59878 #CVE_2026_61487 #Denial of Service #Message Broker Security
Title: CVE Weekly Roundup: July 27 – August 2, 2026
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 03 Aug 2026 01:57:54 +0000
════════════════════════
Tags: #Weekly Recap #Apache Traffic Server #CISA KEV #Cisco FMC #CVE Roundup #Fortinet #VeloCloud #Weekly Report #wordpress security
Title: Multiple Apache NiFi Vulnerabilities Fixed in Version 2.11.0
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 04 Aug 2026 01:51:26 +0000
════════════════════════
Tags: #Vulnerability Report #Apache NiFi #CVE #security patch
Title: Apache Traffic Server Fixes 38 Vulnerabilities in 9.2.15 and 10.1.4
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 04 Aug 2026 13:37:27 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Traffic Server #ATS #CDN Security #CVE_2026_22068 #CVE_2026_58154 #request smuggling
Title: N-able N-central Flaw Exploited in the Wild as CISA Adds Three to KEV Catalog
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 05 Aug 2026 01:53:27 +0000
════════════════════════
Tags: #Vulnerability Report #apache Tomcat #CISA KEV #CVE_2026_18556 #CVE_2026_34486 #CVE_2026_9198 #exploited in the wild #IBM Langflow #N_able #N_central #RMM