CVE•Published 2026-08-19•Modified 2026-08-26•1 article on news•6 live references•NVD data
CVE-2026-18051
Vulnerability data via NVD (ingested)
CVSS v3.1
10.0
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H
EPSS percentile
36
Exploit Prediction Scoring System · top 64% of all CVEs
Weaknesses (CWE)
Description
The W3 Total Cache WordPress plugin before 2.10.5 does not properly validate the request path it uses to build cache file names, allowing unauthenticated attackers to write a file into any existing directory on the server, inside or outside the web root, overwriting whatever occupies the target name. On Apache, the same flaw overwrites the site's .htaccess files, which breaks the site and can strip hardening rules that other security measures rely on.
Timeline
Published 2026-08-19
Modified 2026-08-26
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
More intel sources (5)
Shodan report
vuln:CVE-2026-18051Country / ASN / product breakdown for the vuln query.
Censys
vulnerabilities.cve_id: CVE-2026-18051Censys host search filtered to this CVE id.
grep.app
CVE-2026-18051Public source-code mentions — fast PoC discovery.
GitHub code
CVE-2026-18051GitHub code search for direct mentions.
Google dork
"CVE-2026-18051" exploit -site:nvd.nist.govWrite-ups and news, NVD excluded.
Known PoCs on GitHub (2)
CVE-2026-180512 repos
1dayexploit/1day-archivePython
Technical deep-dives and root cause analyses of recently disclosed CVEs - reverse engineering patches, building proof-of-concepts, and documenting exploitation techniques in the 1-…
Huskyauto/VisionClaw-Agent-Public-ReleaseTypeScript
Open-source multi-tenant AI agent workspace · 18 personas · 138 active capabilities · 825 platform indexes · 79 curated AI models + 1000+ OpenRouter catalog · self-hosted, BYO-keys