CVE-2026-30345PoC

LOWCVSS 7.5 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A zip slip vulnerability in the Admin import functionality of CTFd v3.8.1-18-gdb5a18c4 allows attackers to write arbitrary files outside the intended directories via supplying a crafted import.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-23

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-03-17); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-03-17: 1Mentions · 2026-03-18: 1Mentions · 2026-03-19: 1PoC Mentioned / Linked · 2026-03-17: 1Technical Details · 2026-03-17: 1Technical Details · 2026-03-19: 103-1703-1803-19
Signal classification3 categories
PoC
133.3%
General
133.3%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-171
PoC1
2026-03-181
General1
2026-03-191
Disclosure1
Full discourse3 posts
  • blueblue@piedpiper1616
    General

    GitHub - syphonetic/CVE-2026-30345 · GitHub - https://github.com/syphonetic/CVE-2026-30345?tab=readme-ov-file

    Post summary

    The excerpt merely points to a GitHub repository named after CVE-2026-30345, offering no additional context on the vulnerability, its exploitation, or mitigation.

    00012484
    5.5K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-30345 A zip slip vulnerability in the Admin import functionality of CTFd v3.8.1-18-gdb5a18c4 allows attackers to write arbitrary files outside the intended directories via … https://www.cve.org/CVERecord?id=CVE-2026-30345

    Post summary

    Disclosed a zip slip vulnerability in CTFd’s Admin import that enables arbitrary file writes outside intended directories.

    00000169
    56.7K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    PoC

    CVE-2026-30345 CVE-2026-30345 Proof of Concept Arbitrary file write vulnerability in CTFd < 3.8.2 backup import functionality. Quick Start Step 1 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-30345

    Post summary

    The post announces CVE-2026-30345 as an arbitrary file write flaw in CTFd versions below 3.8.2, provides a statement of a proof‑of‑concept, but offers no evidence of active exploitation, a patch, or detailed exploit code.

    0000062
    4.0K followersView on X

Explore more