Cwe-434 - Unrestricted Upload Of File With Dangerous Type - Cwe

Threat entity extracted from intelligence sources

Frequency
39
occurrences
First Seen
April 19, 2026
Last Seen
August 31, 2026

Related Threat Clusters

Recent Intelligence Reports

  • 2026 08 07 — docs.vulncheck.com · August 31, 2026
  • Elementor Pro CVE-2026 — Op-C · August 21, 2026
  • WordPress plugin Elementor Pro vulnerability: 6 million websites at risk — Heise.De · August 21, 2026
  • Critical vulnerability in Elementor Pro allows unauthenticated file upload and RCE — Feeds.Feedburner · August 21, 2026
  • UAT-10147: Chinese-speaking adversary integrates agentic AI into post — Blog.Talosintelligence · August 20, 2026
  • CVE-2026-15748: Forminator File Upload Flaw — Socprime · August 19, 2026
  • Critical Unauthenticated File Upload to RCE in Elementor Pro Plugin — Patchstack · August 19, 2026
  • Unauthenticated RCE Vulnerability Patched in Forminator Forms Plugin — Beyondmachines · August 19, 2026

CVSS v3.1 Breakdown