[CYBERDIGEST]
⊞ Dashboard ⚡ Intelligence 📝 Reports 📚 Global Threats 💻 Hack Lab 🗄️ Resources ⌬ 0xJerry's Lab
📡 RSS Feed
System Online

Tag

#JavaScript

blogHIGH 8.1

Understanding and Defending Against CVE-2026-15371: A JavaScript XSS Vulnerability in Velociraptor

CVE-2026-15371 is a high-severity vulnerability in Velociraptor, a security tool used for endpoint monitoring and response. The vulnerability allows an attacker to inject malicious JavaScript code via a crafted URL, leading to a cross-site scripting (XSS) attack. This vulnerability has a CVSS score of 8.1, indicating a high level of severity. Understanding and mitigating this vulnerability is crucial to prevent potential attacks.

Aug 19, 20261 source
articleHIGH 8.8

Privilege Escalation Vulnerability in ArcadeDB via JavaScript Triggers (CVE-2026-67356)

A critical vulnerability (CVE-2026-67356) has been discovered in ArcadeDB, a popular database management system. The vulnerability has a CVSS score of 8.8 and allows attackers with UPDATE_SCHEMA permission to create triggers that execute JavaScript, leading to privilege escalation and potential creation of server-wide admin users. This vulnerability affects ArcadeDB versions before 26.7.3 and has not been actively exploited in the wild. Immediate patching or mitigation is recommended to prevent potential attacks.

Aug 3, 20261 source