Skip to content
Product
Use it
Threat intelligence API
Free key, 70+ endpoints, OpenAPI. The product.
Get started
Pick your stack, make your first call.
Live feed
The console: incidents, filters, entities, search.
Recipes
Runnable examples for the free key.
Free feeds
RSS, ransomware feed, IOC blocklist, MISP — no key.
CLI & agents
tc from a terminal; agent keys with scoped budgets.
The data
Incident records
900 articles a day become ~70 scored incidents.
Dark web
First-party leak-site collection: victims, groups, markets.
Validated IOCs
Indicators with a false-positive gate; STIX, MISP, CSV.
Vulnerabilities
CVEs with EPSS, KEV and exploit status.
Entity graph
Actors, malware, CVEs, companies — pivotable.
For teams
For service providers
Per-client feeds, alerts and branded digests.
Use cases
How teams and builders use the corpus.
About ThreatCluster
What it is and how it is built.
Pricing
Docs
Reference
OpenAPI (Swagger)
Every endpoint, parameter and response model.
ReDoc
The same reference, long-form.
Examples on GitHub
curl, Python and Node quickstarts; daily spec snapshot.
Guides
Quickstart & plans
Key, scopes, budgets, tiers.
Integrations
Splunk, Sentinel, Elastic, agents and terminals, step by step
Export formats
STIX 2.1, MISP, CSV, text.
CLI setup
Install, log in, wire an agent.
No results found
Sign in
Get a free key
No results found
Product
Threat intelligence API
Get started
Live feed
Recipes
Free feeds
CLI & agents
The data
Incident records
Dark web
Validated IOCs
Vulnerabilities
Entity graph
For teams
For service providers
Use cases
About ThreatCluster
Docs
OpenAPI (Swagger)
ReDoc
Examples on GitHub
Quickstart & plans
Integrations
Export formats
CLI setup
Pricing
Contact
Get a free key
Sign in
Back
CWE-119 - Improper Restriction Of Operations Within Memory Buffer
CWE Weakness
Threat entity extracted from intelligence sources
Sep 25: 0 mentions
Sep 26: 0 mentions
Sep 27: 2 mentions
Sep 28: 7 mentions
Sep 29: 5 mentions
Sep 30: 2 mentions
Oct 1: 0 mentions
Sep 25
Sep 28
Oct 1
Entities
›
cwe
›
CWE-119 - Improper Restriction Of Operations Within Memory Buffer
Frequency
68
occurrences
First Seen
April 19, 2026
Last Seen
September 30, 2026
API
Overview
Recent Events
Profile
Profile
MITRE ATT&CK
1 / 2
Malware
WeWorm
Tools
Chrome
Nginx
CVEs
CVE-2026-88771
CVE-2026-88772
CVE-2026-88778
CVE-2026-88773
CVE-2026-32647
CVE-2026-42945
CVE-2026-27784
CVE-2026-27654
Campaigns
Zoomsday
TeamPCP Supply Chain Attacks
Regions
China
Ukraine
Russia
United States
Taiwan
Sectors
Financial
-
REC
Recon
No techniques detected
-
RD
Resource Dev
No techniques detected
2
IA
Initial Access
T1190 - Exploit Public-Facing Application
T1566.001 - Spearphishing Attachment
2
EX
Execution
T1059 - Command and Scripting Interpreter
T1203 - Exploitation for Client Execution
-
PE
Persistence
No techniques detected
1
PE
Priv Esc
T1068 - Exploitation for Privilege Escalation
-
DE
Defense Evasion
No techniques detected
-
CA
Cred Access
No techniques detected
-
DI
Discovery
No techniques detected
-
LM
Lateral Mov
No techniques detected
-
CO
Collection
No techniques detected
-
C2
C2
No techniques detected
-
EX
Exfil
No techniques detected
-
IM
Impact
No techniques detected
5
techniques detected across
3
tactics
Related Clusters (27)
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited
3d ago
·
67 sources
82
Critical Zero-Day Exploits in Citrix NetScaler Confirmed by CISA
2d ago
·
2 sources
80
Critical RCE Vulnerability in Citrix NetScaler Exploited via DTLS Memory Overflow
3d ago
·
2 sources
78
Critical Buffer Overflow Vulnerabilities in glibc Affect Fedora Systems
May 3
·
2 sources
74
Critical libpng Vulnerabilities Affecting Multiple Ubuntu Releases
May 7
·
2 sources
74
Critical OpenJPEG Vulnerability in Ubuntu Systems
May 7
·
2 sources
74
Critical Stack-based Buffer Overflow Vulnerability in Tenda G0 Devices
Aug 14
·
1 sources
74
Multiple CVEs Disclosed on September 8, 2026, Affecting Microsoft Products
Sep 8
·
927 sources
74
Critical Vulnerabilities in HPE Aruba EdgeConnect SD-WAN Exploitable
Sep 16
·
3 sources
72
WhatsApp Spyware Exploit via Phone Calls Poses Serious Threat
Jun 10
·
2 sources
72
Critical Buffer Overflow Vulnerability in H3C Magic B0 Devices
Apr 19
·
1 sources
72
HEIF Heist: Remote Code Execution Vulnerabilities Exploited in Major Platforms
Sep 21
·
3 sources
71
AI-Discovered Vulnerabilities Surge, Increasing RCE Threats
1d ago
·
9 sources
71
Critical Buffer Overflow Vulnerability in Edimax BR-6478AC V2 Disclosed
Jun 21
·
2 sources
71
Critical Vulnerability in GDK-PixBuf Affects Multiple Ubuntu Releases
Jun 9
·
2 sources
71
Multiple Vulnerabilities Discovered in macOS Tahoe and WebKit
Aug 19
·
8 sources
71
2026 Smartphone Security Threats: Zero-Click Exploits and Banking Trojans Rise
May 23
·
2 sources
70
AI Worms Exploit Vulnerabilities in Devices via Custom Attack Playbooks
Sep 15
·
2 sources
68
Critical RCE Vulnerability in BeyondTrust Software Requires Immediate Patching
Feb 9
·
860 sources
67
Critical Buffer Overflow Vulnerability in UTT HiPER 1250GW Disclosed
Jul 6
·
1 sources
62
Multiple Remote Code Execution Vulnerabilities in Oracle Outside In Technology
Sep 9
·
4 sources
61
AI-Driven WeChat Worm Threatens Over 1 Billion Accounts
Sep 8
·
19 sources
58
Denial-of-Service Vulnerabilities in Rockwell Automation Logix Platforms
Sep 1
·
2 sources
58
Analysis of CVE-2024 Vulnerabilities in Windows Services
Sep 13
·
2 sources
55
Critical Out-of-Bounds Write Vulnerability in FastStone Image Viewer
2d ago
·
1 sources
55
SUSE and openSUSE BusyBox Vulnerabilities Addressed in Recent Updates
Sep 1
·
4 sources
46
Emacs Vulnerability Leads to Potential DoS and Information Exposure
2d ago
·
2 sources
46
Prev
1 / 6
Next
Related Articles (50)
Google Finds Likely AI
Superpowerdaily
·
1d ago
Google finds vulnerability disclosures doubled as AI changes which flaws get discovered
Siliconangle
·
1d ago
Hackers exploit Citrix NetScaler zero
Bleepingcomputer
·
1d ago
Ubuntu Emacs Important Memory Corruption DoS USN-8835-1 CVE-2026
Linuxsecurity
·
2d ago
Citrix NetScaler ADC/Gateway
exploitbulletin.com
·
2d ago
Citrix released fixes
support.citrix.com
·
2d ago
Citrix NetScaler bajo ataque activo — CISA confirma explotación de dos zero-days críticos
Ciberseguridadlatam
·
2d ago
CVE-2026-101203 - Exploits & Severity
Feedly
·
2d ago
(TLP:CLEAR) Vulnerability Notification - Citrix NetScaler Zero
Waterisac
·
2d ago
Citrix NetScaler Zero Days Exploited Globally as CISA Urges Immediate Action
Newsaffinity
·
2d ago
National Cyber Security Centre
www.ncsc.nl
·
2d ago
CVE-2026-88771 & CVE-2026-88772: NetScaler RCE Flaws
Socprime
·
2d ago
Zero-Day Exploitation of Citrix NetScaler ADC and Gateway: CVE-2026-88771 and CVE-2026
Rapid7
·
3d ago
Exploit for CVE-2026
Sploitus
·
3d ago
Exploit for CVE-2026
Sploitus
·
3d ago
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026
Support.Citrix
·
4d ago
D-Link Router Hit by CVSS 10.0 Flaw Exploitable Remotely Without Authentication
cybernoz.com
·
Sep 22
CVE-2026-94129 - Exploits & Severity
Feedly
·
Sep 21
Hackers Exploit iOS Vulnerabilities to Steal Private Keys
Cryptonews
·
Sep 20
HEIF Heist: image parser RCE exploit
News.Ycombinator
·
Sep 18
Critical Vulnerabilities in HPE Aruba Networking EdgeConnect SD
Ccb.Belgium.Be
·
Sep 16
iOS 26.7 arrives as Apple's security-only alternative to iOS 27
Cultofmac
·
Sep 15
AI Worms Write Their Own Attack Playbook. Your Devices Are the Target.
Gadgetreview
·
Sep 15
Vulnerability-and-Exploit
Sploitus
·
Sep 13
Cp 169 11186 Faaa9 1
www.twcert.org.tw
·
Sep 11
Cybersecurity Advisories
Ncsa.Qa
·
Sep 10
Android's September 2026 Updates Patch 180 Vulnerabilities
Securityweek
·
Sep 9
ZDI-26-638: Oracle Outside In Technology WPS File Parsing Memory Corruption Remote Code Execution Vulnerability
Zerodayinitiative
·
Sep 9
Microsoft shatters Patch Tuesday record with nearly 1,000 fixes released
Thestack.Technology
·
Sep 8
CWE-131: Incorrect Calculation of Buffer Size
cwe.mitre.org
·
Sep 8
This AI-Developed Computer Worm Could Have Hijacked a Billion Accounts
Uk.Pcmag
·
Sep 8
September 2026 security updates
support.sap.com
·
Sep 8
AI created worm could have hacked millions of people in a few hours
Techlicious
·
Sep 8
CVE-2026
Api.Msrc.Microsoft
·
Sep 8
CVE-2026
Api.Msrc.Microsoft
·
Sep 8
Security Bulletin: HPE Aruba Networking AOS-CX
Redlegg
·
Sep 4
CVE-2026-9637
www.rockwellautomation.com
·
Sep 2
Rocky Linux 8 wget Moderate Memory Corruption and Code Exec RLSA-2026
Linuxsecurity
·
Sep 2
openSUSE BusyBox Moderate Buffer Overflow Vulnerability Update 2026-3908
Linuxsecurity
·
Sep 1
Rockwell Automation Logix Platform
Cisa
·
Sep 1
SB2026081987
Cybersecurity-Help.Cz
·
Aug 19
SB2026081825 - Multiple vulnerabilities in macOS Tahoe
Cybersecurity-Help.Cz
·
Aug 18
CVE-2026-19790 - Exploits & Severity
Feedly
·
Aug 14
Wireshark 4.6.8 Released to Patch 28 Security Vulnerabilities
Gbhackers
·
Aug 13
SAP Commerce Cloud flaw opens unauthenticated path to code execution
Pcquest
·
Aug 12
Zoom Patches “Zoomsday” Zero
Securityaffairs.Co
·
Aug 11
Critical SAP Vulnerabilities Let Attackers Inject Malicious Code and Corrupt Memory
Cybersecuritynews
·
Aug 11
Cisco warns of high
Bleepingcomputer
·
Aug 11
190
cwe.mitre.org
·
Aug 10
CC-4824
Digital.Nhs.Uk
·
Aug 6
Prev
1 / 10
Next
Related Entities
Zero-day Exploit
Denial of Service
Malware
Data Breach
DDoS
Phishing
Remote Code Execution
Worm
Ransomware
Sql Injection
Denial-of-Service
Privilege Escalation