⤷ Title: File Upload Attacks: How to Secure Them Properly
════════════════════════
𐀪 Author: 0x4rt1st
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 16:07:33 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #cybersecurity #file_upload_vulnerability #full_stack_developer
════════════════════════
𐀪 Author: 0x4rt1st
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 16:07:33 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #cybersecurity #file_upload_vulnerability #full_stack_developer
Medium
File Upload Attacks: How to Secure Them Properly
A practical breakdown of real-world defenses that stop file upload attacks when implemented together.
⤷ Title: Security Assessment Report: Full Exploit Chain (SQLi to RCE)
════════════════════════
𐀪 Author: Orion
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 23:44:04 GMT
════════════════════════
⌗ Tags: #bad_authlogic #file_upload_vulnerability #web_vulnerabilities #bug_bounty #sqli
════════════════════════
𐀪 Author: Orion
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 23:44:04 GMT
════════════════════════
⌗ Tags: #bad_authlogic #file_upload_vulnerability #web_vulnerabilities #bug_bounty #sqli
Medium
Security Assessment Report: Full Exploit Chain (SQLi to RCE)
Researcher: Hashem Ali Kahil / Orion7715
⤷ Title: CodeIgniter Vulnerability Enables Arbitrary Code Execution (CVSS 9.8)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 00:54:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CodeIgniter #CVE_2026_48062 #File Upload Vulnerability #PHP Security #rce
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 00:54:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CodeIgniter #CVE_2026_48062 #File Upload Vulnerability #PHP Security #rce
Daily CyberSecurity
CodeIgniter Vulnerability Enables Arbitrary Code Execution (CVSS 9.8)
A serious CodeIgniter vulnerability has put many PHP web applications at risk. Tracked as CVE-2026-48062, the flaw carries a critical CVSS score of 9.8. Moreover, it can hand attackers full arbitr…
⤷ Title: Langflow File Upload Flaw: Details and PoC Exploit Publicly Disclosed (CVE-2026-55450)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 19 Jun 2026 01:00:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI workflow security #API security #CVE_2026_55450 #CWE_306 #CWE_400 #Denial of Service #File Upload Vulnerability #Information Disclosure #Langflow #unauthenticated upload
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 19 Jun 2026 01:00:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI workflow security #API security #CVE_2026_55450 #CWE_306 #CWE_400 #Denial of Service #File Upload Vulnerability #Information Disclosure #Langflow #unauthenticated upload
Daily CyberSecurity
Langflow File Upload Flaw: Details and PoC Exploit Publicly Disclosed (CVE-2026-55450)
A critical Langflow file upload flaw (CVE-2026-55450) is public with a PoC, enabling unauthenticated denial-of-service and path disclosure. Patch 1.9.1.
⤷ Title: “byp4ss3d” | picoCTF | Obtain RCE by abusing .htaccess in Apache servers | Web Exploitation
════════════════════════
𐀪 Author: Dr_ro0t
════════════════════════
ⴵ Time: Sat, 20 Jun 2026 19:30:03 GMT
════════════════════════
⌗ Tags: #file_upload_vulnerability #ctf #picoctf #rce_vulnerability
════════════════════════
𐀪 Author: Dr_ro0t
════════════════════════
ⴵ Time: Sat, 20 Jun 2026 19:30:03 GMT
════════════════════════
⌗ Tags: #file_upload_vulnerability #ctf #picoctf #rce_vulnerability
Medium
“byp4ss3d” | picoCTF | Obtain RCE by abusing .htaccess in Apache servers | Web Exploitation
Achieving Remote Code Execution (RCE) by abusing apache .htaccess to upload a php payload.
⤷ Title: Testing File Upload Vulnerability in web applications part-2
════════════════════════
𐀪 Author: cyb3r_Rs
════════════════════════
ⴵ Time: Sat, 27 Jun 2026 07:30:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #xxe #csrf #file_upload_vulnerability
════════════════════════
𐀪 Author: cyb3r_Rs
════════════════════════
ⴵ Time: Sat, 27 Jun 2026 07:30:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #xxe #csrf #file_upload_vulnerability
Medium
Testing File Upload Vulnerability in web applications part-2
Hii hunters Cyb3r_Rs is here with one more informative & knowledgeable Article. I hope you find this helpful.
This is 2nd part of my last…
This is 2nd part of my last…
⤷ Title: Stored XSS via SVG File Upload in a Project Management Application
════════════════════════
𐀪 Author: 0xPinocchioSec
════════════════════════
ⴵ Time: Sat, 27 Jun 2026 17:05:53 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #bug_bounty #file_upload #seurity #xss_attack
════════════════════════
𐀪 Author: 0xPinocchioSec
════════════════════════
ⴵ Time: Sat, 27 Jun 2026 17:05:53 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #bug_bounty #file_upload #seurity #xss_attack
Medium
Stored XSS via SVG File Upload in a Project Management Application
Bug Bounty Write-up | Stored XSS | File Upload Security
⤷ Title: Unauthenticated RCE in CKFinder via Null Byte Injection Vulnerability
════════════════════════
𐀪 Author: Ali İltizar
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 21:44:30 GMT
════════════════════════
⌗ Tags: #file_upload_bypass #rce #misconfiguration
════════════════════════
𐀪 Author: Ali İltizar
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 21:44:30 GMT
════════════════════════
⌗ Tags: #file_upload_bypass #rce #misconfiguration
Medium
Unauthenticated RCE in CKFinder via Null Byte Injection Vulnerability
During an authorized penetration test on a corporate web application, I was performing directory enumeration against the target when I came…
⤷ Title: From File Upload to Admin Account Takeover: Exploring Blind XSS via Malicious File Content
════════════════════════
𐀪 Author: Orion
════════════════════════
ⴵ Time: Sun, 05 Jul 2026 14:16:54 GMT
════════════════════════
⌗ Tags: #file_upload_vulnerability #penetration_testing #xss_attack #bug_bounty #web_application_security
════════════════════════
𐀪 Author: Orion
════════════════════════
ⴵ Time: Sun, 05 Jul 2026 14:16:54 GMT
════════════════════════
⌗ Tags: #file_upload_vulnerability #penetration_testing #xss_attack #bug_bounty #web_application_security
Medium
From File Upload to Admin Account Takeover: Exploring Blind XSS via Malicious File Content
Hi, I’m Hashem Ali Kahil , Orion7715
⤷ Title: HTB Machine Walkthrough: Magic
════════════════════════
𐀪 Author: Balachandar Gowrisankar
════════════════════════
ⴵ Time: Sun, 05 Jul 2026 16:56:07 GMT
════════════════════════
⌗ Tags: #htb_writeup #sql_injection #file_upload_vulnerability #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Balachandar Gowrisankar
════════════════════════
ⴵ Time: Sun, 05 Jul 2026 16:56:07 GMT
════════════════════════
⌗ Tags: #htb_writeup #sql_injection #file_upload_vulnerability #cybersecurity #penetration_testing
Medium
HTB Machine Walkthrough: Magic
Magic is a medium difficulty HTB machine which involves SQL injection attack, arbitrary file upload and SUID binary exploitation.