Daily Writeups
3.55K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: EspoCRM v9.3.4: From Extension Upload to Remote Code Execution (RCE)
════════════════════════
𐀪 Author: Ali İltizar
════════════════════════
Time: Mon, 13 Apr 2026 09:28:55 GMT
════════════════════════
Tags: #cms #rce
Title: Stored XSS to Privilege Escalation in Azuriom CMS — When “Trusted Users” Become a Security…
════════════════════════
𐀪 Author: CradS
════════════════════════
Time: Fri, 01 May 2026 15:14:40 GMT
════════════════════════
Tags: #cms #cybersecurity #penetration_testing #appsec #cross_site_scripting
Title: Zero-Day Surge: The MetInfo CMS Flaw That Grants Unauthenticated Root Access to Servers
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 07 May 2026 09:24:08 +0000
════════════════════════
Tags: #Vulnerability #Automated Scanning #China Cyber Security #CMS Security #CVE_2026_29014 #Cyber attack 2026 #MetInfo #PHP Code Injection #RCE #remote code execution #VulnCheck #zero_day
Title: Critical Strapi Flaws Enable Unauthenticated Admin Takeover and Server RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 18 May 2026 02:02:16 +0000
════════════════════════
Tags: #Vulnerability Report #Admin Takeover #cms #CVE_2026_22599 #CVE_2026_27886 #Cyber Security #Headless CMS #infosec #Patch Alert #rce #sql injection #Strapi
Title: What Businesses Should Know Before Migrating Their CMS
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
Time: Thu, 18 Jun 2026 15:42:16 +0000
════════════════════════
Tags: #Technology #Business #CMS #Migrating
Title: TryHackme — Lazy Admin Writeup
════════════════════════
𐀪 Author: Fakhri Rahadi
════════════════════════
Time: Sun, 28 Jun 2026 05:40:13 GMT
════════════════════════
Tags: #cybersecurity #tryhackme #ctf #web_penetration_testing #cms
Title: Plone Fixes Critical RCE Flaw and Two Denial-of-Service Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 01 Jul 2026 00:01:16 +0000
════════════════════════
Tags: #Vulnerability Report #Classic portlet #CMS Security #CVE_2026_57149 #Plone #Plone RCE vulnerability #plone.app.portlets #ssrf #TALES injection
Title: CMS Exploitation Campaign Plants Webshells on Business Websites
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 13 Jul 2026 08:50:27 +0000
════════════════════════
Tags: #Cybercriminals #ACSC #CMS Exploitation #CMS Vulnerabilities #Web Security #webshell #wordpress
Title: ACSC Warns: CMS Campaign Installs Web Shells via 17 CVEs
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
Time: Tue, 14 Jul 2026 15:30:56 +0000
════════════════════════
Tags: #Cybercriminals #ACSC Advisory #CMS Security #Craft CMS #joomla #Mass Exploitation #Web Shell #WordPress Vulnerability
Title: Back From Vacation & Launching Open Beta: Help Us Test NextBlock CMS (and Get a $500/yr Lifetime…
════════════════════════
𐀪 Author: NextBlock CMS
════════════════════════
Time: Wed, 22 Jul 2026 19:19:21 GMT
════════════════════════
Tags: #cms #supabase #bug_bounty #nextjs #bounty_program