Daily Writeups
3.58K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: decompress npm Vulnerability CVE-2026-53486 (CVSS 9.1) Threatens 2.8 Million Weekly Downloads
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Sun, 12 Jul 2026 13:00:11 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_53486 #decompress #Node.js Security #npm Security #Path Traversal #Supply Chain Security
Title: CVE-2026-59948: PHP Composer Flaw Lets Packages Execute Code Outside the Project Context
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 14 Jul 2026 13:30:50 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_59946 #CVE_2026_59947 #CVE_2026_59948 #Path Traversal #PHP Composer #Supply Chain
Title: Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
Title: CVE-2026-49488: Arbitrary File Read Flaw in Apache OpenMeetings Exposes Server Credentials
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 21 Jul 2026 12:25:58 +0000
════════════════════════
Tags: #Vulnerability Report #apache #Apache OpenMeetings #Arbitrary File Read #Path Traversal
Title: Vitest Flaw Rated CVSS 9.4 Hits an npm Package With 65 Million Weekly Downloads
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 22 Jul 2026 02:12:08 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Read #GHSA_p63j_vcc4_9vmv #javascript #npm #Path Traversal #Supply Chain Security #Vite #Vitest #Vitest Browser Mode
Title: ADAudit Plus Flaw CVE-2026-6516 Allows Unauthenticated Remote Code Execution at CVSS 10
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Fri, 24 Jul 2026 02:50:50 +0000
════════════════════════
Tags: #Vulnerability Report #active directory #ADAudit Plus #Authentication Bypass #CVE_2026_6516 #ManageEngine #patch management #Path Traversal #unauthenticated RCE #Zoho
Title: How a Simple language Parameter Exposed an Internal Drupal CMS
════════════════════════
𐀪 Author: Thomas Youssef
════════════════════════
Time: Tue, 28 Jul 2026 13:19:31 GMT
════════════════════════
Tags: #cybersecurity #bug_bounty #path_traversal #bug_bounty_tips #bug_bounty_writeup
Title: Lab Solved: File Path Traversal — Absolute Path Bypass
════════════════════════
𐀪 Author: Ethical Hacker
════════════════════════
Time: Tue, 28 Jul 2026 14:51:38 GMT
════════════════════════
Tags: #bug_bounty #ethical_hacking #information_disclosure #cybersecurity #path_traversal
Title: IBM Aspera Vulnerabilities Patched in Faspex 5 and Desktop App
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 29 Jul 2026 02:03:05 +0000
════════════════════════
Tags: #Vulnerability Report #Aspera Faspex #CVE_2026_14958 #CVE_2026_14959 #CVE_2026_14973 #IBM Aspera #IBM Aspera Desktop #Path Traversal #Remote Code Execution
Title: CVE-2026-63223: CodeIgniter4 RCE Vulnerability Rated CVSS 9.8
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Fri, 31 Jul 2026 09:19:03 +0000
════════════════════════
Tags: #Vulnerability Report #CodeIgniter4 #CVE_2026_63223 #File Upload Vulnerability #Path Traversal #PHP Framework #Remote Code Execution #sql injection #Web Security
Title: Gitea Vulnerability CVE-2026-59774 Enables Unauthenticated Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 04 Aug 2026 07:53:22 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Read #CVE_2026_59774 #Gitea #Path Traversal #rce #Remote Code Execution #Vulnerability
Title: Linux Privilege Escalation: Capabilities & PATH Hijacking | TryHackMe
════════════════════════
𐀪 Author: Dharavathnagaraju
════════════════════════
Time: Thu, 13 Aug 2026 16:28:00 GMT
════════════════════════
Tags: #ethical_hacking #tryhackme #privilege_escalation #capabilities #path_hijacking
Title: BigBlueButton Fixes Maximum Severity Arbitrary File Read Flaw
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 18 Aug 2026 00:09:09 +0000
════════════════════════
Tags: #Vulnerability Report #BigBlueButton #CVE_2026_XXXX #Path Traversal
Title: CVE-2026-18051 (CVSS 10): Unauthenticated Arbitrary File Write Hits 900k W3 Total Cache Sites
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 19 Aug 2026 08:53:14 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_18051 #Path Traversal #W3 Total Cache #wordpress #WordPress Plugin #wpscan
Title: IBM Db2 Mirror for i Hit by CVE-2026-17186 RCE Flaw (CVSS 9.9)
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 19 Aug 2026 13:15:45 +0000
════════════════════════
Tags: #Vulnerability Report #Authentication Bypass #Command Injection #CVE_2026_17182 #CVE_2026_17184 #CVE_2026_17186 #Db2 Mirror for i #IBM #IBM i #Path Traversal #Remote Code Execution
Title: CVE-2026 — 75855 : Path Traversal in ArcadeDB - Arbitrary File Write and Delete via Database Names
════════════════════════
𐀪 Author: Pervin Zahidli
════════════════════════
Time: Thu, 20 Aug 2026 07:32:12 GMT
════════════════════════
Tags: #cybersecurity #application_security #cve #vulnerability #path_traversal