Vendor
high
advisory
Remote Code Execution in Laravel Backpack via Host Header Injection
1 rule 2 TTPsAn unauthenticated command injection vulnerability in Laravel Backpack's Stats::makeCurlRequest method allows remote code execution by exploiting unsanitized Host header input passed to an exec() shell command.
Backpack for Laravel
1r
2t
high
advisory
Apple Security Updates — July 2026
4 CVEs 10 IOCsRoundup of Apple security advisories published in July 2026.
PoC
macOS LaunchAgents +46
roundup
4c
10i
updated