Loading the current evidence view. Navigation and account controls remain available.
Indicator investigation
Loading the current evidence view. Navigation and account controls remain available.
Loading verdict, provenance, relationships and sightings.
Indicator
Type cve · source intel_report_ingest
Shared non-noise tags (narrow join).
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
tags: report:securityweek, report:the_hacker_news
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
Full investigation canvas with neighbor expansion.
Title/body text match only.
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba's JSON library for Java. In affected Spring Boot applications, a malicious JSON request can execute
Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-16812 (CVSS score:
Unpatched Fastjson Vulnerability Exploited in Attacks The critical remote code execution bug can be exploited without authentication, under the library’s stock default configurations. The post Unpatched Fastjson Vulnerability Exploited in Attacks appeared first on SecurityWeek .
From stored enrichment entities only.
Deduped connector weight from graph context.