Threat intelligence dashboard
Today's CVEs, attack reports, and CISA KEV — CVSS, EPSS, and MITRE context at a glance.
Attack reports – last 7 days · through Monday 29 June 2026 (34)
-
Confidence 100 2 MITREs 3 IOCs 3 Observables
-
Confidence 100 16 MITREs 108 IOCs 108 Observables
-
Confidence 100 26 MITREs 1 Malware 29 IOCs 12 Observables 1 APT
-
Confidence 100 3 Malwares 18 IOCs
-
Confidence 100 15 MITREs 3 Malwares 96 IOCs 77 Observables
Vulnerabilities today (135)
The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to …
- Published
- 29/06/2026
Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions.
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
Improper privilege handling could be used by users with Project Owner role to escalate privileges, in Rancher versions 2.14 before 2.14.2, 2.13 …
- Published
- 29/06/2026
Improper neutralization in the Snowpark annotation processor callback template in Snowflake CLI versions prior to 3.19 allowed arbitrary code execution during application …
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
A vulnerability has been found in Edimax EW-7478APC 1.04. Impacted is the function formUSBFolder of the file /goform/formUSBFolder of the component POST …
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
A flaw has been found in Edimax EW-7478APC 1.04. This issue affects the function formUSBAccount of the file /goform/formUSBAccount of the component …
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
A security vulnerability has been detected in Edimax EW-7478APC 1.04. This affects the function formQoS of the file /goform/formQoS of the component …
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
FrontAccounting before 2.4.20 contains a path traversal vulnerability in the attachment upload handler that allows authenticated attackers to execute arbitrary code by …
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
A flaw was found in the vscode-java extension, which provides Java language support for Visual Studio Code. The extension incorrectly trusts all …
- Attack vector
- Network
- Complexity
- Low
- Published
- 29/06/2026
A vulnerability was found in Edimax EW-7478APC 1.04. Affected is the function formPPPoESetup of the file /goform/formPPPoESetup of the component POST Request …
- Attack vector
- Network
- Complexity
- Low
- Published
- 29/06/2026
A vulnerability has been found in Edimax EW-7478APC 1.04. This impacts the function formL2TPSetup of the file /goform/formL2TPSetup of the component POST …
- Attack vector
- Network
- Complexity
- Low
- Published
- 29/06/2026
A flaw has been found in Edimax EW-7478APC 1.04. This affects the function formiNICSiteSurvey of the file /goform/formiNICSiteSurvey of the component POST …
- Attack vector
- NETWORK
- Complexity
- LOW
- Published
- 29/06/2026
A relative path traversal bug problem when processing repository metadata in libzypp before 17.38.10 could be used by remote attackers supplying repositories …
- Attack vector
- Network
- Complexity
- Low
- Published
- 29/06/2026
A vulnerability has been found in D-Link DCS-935L 1.10.01. This affects the function sub_400E40 of the file setconf.cgi of the component POST …
- Attack vector
- Network
- Complexity
- Low
- Published
- 29/06/2026
A vulnerability was identified in Wavlink WL-NU516U1-A M16U1_V240425. The impacted element is the function sub_407504 of the file /cgi-bin/wireless.cgi of the component …
- Attack vector
- Network
- Complexity
- Low
- Published
- 29/06/2026