Authorization Bypass Through User-Controlled Key is a vulnerability tracked across 3 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed December 12, 2025; most recent activity June 13, 2026.
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
CVE-2026-44207 is an IDOR vulnerability in the Frappe web application framework, affecting versions prior to 15.107.0 and 16.17.0. Authenticated users could exploit this flaw to access other users' email configuration…
The 2025 CWE Top 25 Most Dangerous Software Weaknesses list has been published, identifying critical vulnerabilities that pose significant risks to software security. This list is intended for developers and…