Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

CVE-2026-24770: Critical RAGFlow MinerU Zip Slip Flaw Enables Remote Code Execution via Malicious ZIP Uploads

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 202611 mins0
CVE-2026-24770 CVE ID: CVE-2026-24770Product: RAGFlow – MinerU ingestion componentAffected Versions: All versions ≤ 0.23.1Vulnerability Type: Zip Slip…
continue reading..

CVE-2026-24765: Silent PHPUnit Test Runs Can Turn CI Pipelines into a Code-Execution Trap

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 20269 mins0
CVE-2026-24765 – Unsafe Deserialization Leading to Code Execution in PHPUnit CVE ID: CVE-2026-24765Component: PHPUnit – PHPT Code…
continue reading..

CVE-2026-24747: “Trusted” PyTorch Model Files Can Trigger Memory Corruption and Lead to Remote Code Execution

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 202613 mins0
CVE-2026-24747 – PyTorch Memory Corruption via Pickle Leading to Potential RCE CVE ID: CVE-2026-24747Severity: HighCVSS v3.1 Score:…
continue reading..

CVE-2026-24741: High-Severity ConvertX Flaw Lets Attackers Delete Arbitrary Server Files via Simple Path Traversal

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 20268 mins0
Vulnerability Overview CVE ID: CVE-2026-24741Product: ConvertXAffected Versions: All versions prior to 0.17.0Fixed Version: 0.17.0 and laterSeverity: HighCVSS…
continue reading..

CVE-2026-24740: Breaking Dozzle Flaw Allows Low-Privilege Users to Bypass Container Isolation and Spawn Unauthorized Root Shells

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 20269 mins0
Vulnerability Overview CVE ID: CVE-2026-24740Affected Product: Dozzle (Container Log Viewer with Shell/Exec capability)Affected Versions: All versions below…
continue reading..

Critical Flaws Expose SolarWinds Web Help Desk to Silent Takeover and Full System Compromise

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 20267 mins0
SolarWinds Web Help Desk Product: SolarWinds Web Help DeskApplication Stack: Java (JVM), Embedded Web Server, Backend APIsTrust…
continue reading..

Grafana Hit by High-Risk Vulnerabilities Enabling Privilege Escalation and Service Disruption

  • Vulnerabilities
AegironJanuary 31, 2026January 31, 20269 mins0
Product Overview Grafana is a widely used open-source observability and visualization platform. It enables organizations to build…
continue reading..

175,000 Ollama AI Servers Found Exposed Online, Raising Global Security Concerns

  • Uncategorized
CyberDefenderJanuary 30, 2026January 30, 20264 mins0
A joint investigation by SentinelOne’s SentinelLABS and Censys has uncovered approximately 175,000 publicly accessible Ollama AI server…
continue reading..

New Critical SmarterMail Vulnerability Allows Attackers to Take Over Mail Servers Without Authentication

  • CyberSecurity News
CyberDefenderJanuary 30, 2026January 30, 20267 mins0
CVE-2026-24423 is a critical unauthenticated remote code execution (RCE) vulnerability in SmarterTools SmarterMail.The flaw exists in an…
continue reading..

Wireshark 4.6.3 Patches Dissector and Parser Crashes Triggered by Malformed Traffic

  • CyberSecurity News
CyberDefenderJanuary 30, 2026January 30, 20264 mins0
The Wireshark team has released version 4.6.3 of its widely used open-source network protocol analyzer. This release…
continue reading..
  • 1
  • …
  • 104
  • 105
  • 106
  • 107
  • 108
  • …
  • 217

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©CyberP1 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service