Path Traversal is a vulnerability tracked across 31 threat clusters and 32 intelligence report mentions on ThreatCluster. First observed October 29, 2025; most recent activity July 22, 2026.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has mandated that government agencies secure their systems against a critical Gogs vulnerability, tracked as CVE-2025-8110. This remote code execution…
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
Gamaredon, a Russian state-backed APT group, is actively exploiting a WinRAR vulnerability (CVE-2025-8088) to deploy malware against Ukrainian government and military targets. The attack begins with a spearphishing…
On June 18, 2026, international law enforcement agencies launched Operation Endgame, disrupting the SocGholish malware infrastructure linked to the Russian cybercrime group Evil Corp. The operation resulted in the…
Multiple critical vulnerabilities have been identified in Fedora's RPKI and syslog components, affecting versions 43 and 44. The vulnerabilities include path traversal issues and improper error handling, with CVEs…
CVE-2026-57331, published on June 29, 2026, reveals a critical vulnerability in the Paid Videochat Turnkey Site Plugin versions 7.4.8 and earlier. This flaw, categorized as a path traversal issue (CWE-22), allows…
Dell Technologies has disclosed critical vulnerabilities in its Wyse Management Suite (WMS) that allow remote attackers to execute arbitrary code. The vulnerabilities, identified as CVE-2026-41120 and CVE-2026-49506,…
Ubiquiti has disclosed two critical vulnerabilities in its UniFi Network Application, including CVE-2026-22557, a path traversal flaw that allows unauthenticated attackers to potentially take over user accounts. This…
SAP has released security updates addressing 15 vulnerabilities, including four critical ones affecting SAP NetWeaver and SAP Commerce Cloud. The vulnerabilities include CVE-2026-44748, allowing authenticated attackers…
Fedora has released security updates for Composer affecting versions 2.10.2 in both Fedora 43 and 44. The updates address critical path traversal vulnerabilities that could allow attackers to manipulate package names…