Daily Writeups
3.45K subscribers
2 photos
127K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Langflow File Upload Flaw: Details and PoC Exploit Publicly Disclosed (CVE-2026-55450)
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Fri, 19 Jun 2026 01:00:39 +0000
════════════════════════
Tags: #Vulnerability Report #AI workflow security #API security #CVE_2026_55450 #CWE_306 #CWE_400 #Denial of Service #File Upload Vulnerability #Information Disclosure #Langflow #unauthenticated upload
Title: “byp4ss3d” | picoCTF | Obtain RCE by abusing .htaccess in Apache servers | Web Exploitation
════════════════════════
𐀪 Author: Dr_ro0t
════════════════════════
Time: Sat, 20 Jun 2026 19:30:03 GMT
════════════════════════
Tags: #file_upload_vulnerability #ctf #picoctf #rce_vulnerability
Title: Testing File Upload Vulnerability in web applications part-2
════════════════════════
𐀪 Author: cyb3r_Rs
════════════════════════
Time: Sat, 27 Jun 2026 07:30:00 GMT
════════════════════════
Tags: #bug_bounty #xxe #csrf #file_upload_vulnerability
Title: Stored XSS via SVG File Upload in a Project Management Application
════════════════════════
𐀪 Author: 0xPinocchioSec
════════════════════════
Time: Sat, 27 Jun 2026 17:05:53 GMT
════════════════════════
Tags: #xss_vulnerability #bug_bounty #file_upload #seurity #xss_attack
Title: Windows to Linux — 5 File Transfer Techniques for Pentesting Exams
════════════════════════
𐀪 Author: Aman Chauhan
════════════════════════
Time: Wed, 01 Jul 2026 16:36:44 GMT
════════════════════════
Tags: #pentesting #file_transfer #ethical_hacking #oscp #cybersecurity
Title: Unauthenticated RCE in CKFinder via Null Byte Injection Vulnerability
════════════════════════
𐀪 Author: Ali İltizar
════════════════════════
Time: Fri, 03 Jul 2026 21:44:30 GMT
════════════════════════
Tags: #file_upload_bypass #rce #misconfiguration
Title: From File Upload to Admin Account Takeover: Exploring Blind XSS via Malicious File Content
════════════════════════
𐀪 Author: Orion
════════════════════════
Time: Sun, 05 Jul 2026 14:16:54 GMT
════════════════════════
Tags: #file_upload_vulnerability #penetration_testing #xss_attack #bug_bounty #web_application_security
Title: HTB Machine Walkthrough: Magic
════════════════════════
𐀪 Author: Balachandar Gowrisankar
════════════════════════
Time: Sun, 05 Jul 2026 16:56:07 GMT
════════════════════════
Tags: #htb_writeup #sql_injection #file_upload_vulnerability #cybersecurity #penetration_testing
Title: The File That Answered Back — XXE Hidden in Cell A2
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
Time: Mon, 06 Jul 2026 06:28:59 GMT
════════════════════════
Tags: #xml #bug_bounty_writeup #bug_bounty #file_upload_vulnerability #xxe
Title: From SQL Injection to Remote Code Execution: A Complete Security Assessment of the NovaCRM CTF
════════════════════════
𐀪 Author: Rajkumaryarra
════════════════════════
Time: Thu, 09 Jul 2026 17:11:30 GMT
════════════════════════
Tags: #vulnerability #rce_vulnerability #login_bypass #sql_injection #file_upload_vulnerability
Title: File Inclusion Challenge (TryHackMe)
════════════════════════
𐀪 Author: Никита Ивашенюта
════════════════════════
Time: Tue, 14 Jul 2026 17:10:47 GMT
════════════════════════
Tags: #tryhackme #pentesting #file_inclusion
Title: File Upload Bypass On Indrive
════════════════════════
𐀪 Author: Mahmoud Elsaidy
════════════════════════
Time: Fri, 17 Jul 2026 04:19:09 GMT
════════════════════════
Tags: #file_upload_vulnerability #amazon_s3 #bug_bounty_writeup
Title: The Unseen Share: How I Downloaded Every File on 9 Tail Fox
════════════════════════
𐀪 Author: 0B1To_X_ucH!h4
════════════════════════
Time: Fri, 17 Jul 2026 09:18:44 GMT
════════════════════════
Tags: #abc #file_sharing #idor #bug_bounty
Title: File Upload Bypass Using a Pre-Signed S3 URL
════════════════════════
𐀪 Author: Mahmoud Elsaidy
════════════════════════
Time: Fri, 17 Jul 2026 04:19:09 GMT
════════════════════════
Tags: #file_upload_vulnerability #amazon_s3 #bug_bounty_writeup
Title: HackTheBox Walkthrough — Nexus
════════════════════════
𐀪 Author: Indigo Shadow
════════════════════════
Time: Sun, 19 Jul 2026 05:51:01 GMT
════════════════════════
Tags: #git_repo_escape #ethical_hacking #htb_walkthrough_nexus #file_upload_vulnerability #git_objects
Title: SolarWinds Patches Three Critical Serv-U Vulnerabilities Enabling RCE
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 21 Jul 2026 17:21:35 +0000
════════════════════════
Tags: #Vulnerability Report #broken access control #CVE_2026_28307 #CVE_2026_28308 #CVE_2026_28321 #File Transfer #IDOR #privilege escalation #rce #SolarWinds #SolarWinds Serv_U
Title: SolarWinds Patches 15 Critical Serv-U Vulnerabilities Enabling Root Access
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 21 Jul 2026 17:21:35 +0000
════════════════════════
Tags: #Vulnerability Report #broken access control #CVE_2026_28307 #CVE_2026_28308 #CVE_2026_28321 #File Transfer #IDOR #privilege escalation #rce #SolarWinds #SolarWinds Serv_U
Title: CTF: Expose TryhackMe Room
════════════════════════
𐀪 Author: Duong
════════════════════════
Time: Wed, 22 Jul 2026 19:34:29 GMT
════════════════════════
Tags: #tryhackme #privilege_escalation #ctf #sqlmap #file_upload
Title: How I Found a Bug Worth $3,500 — In a Feature Nobody Was Watching.
════════════════════════
𐀪 Author: Vishw Bhatt
════════════════════════
Time: Fri, 24 Jul 2026 15:52:09 GMT
════════════════════════
Tags: #admin_panel #file_upload #bug_bounty
Title: Upload de arquivos não é apenas uma funcionalidade: é uma fronteira de segurança
════════════════════════
𐀪 Author: Cristiano Junior
════════════════════════
Time: Sat, 25 Jul 2026 12:58:03 GMT
════════════════════════
Tags: #application_security #secure_coding #file_upload_security #cybersecurity #web_security