Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
CVE

EU Regulatory Changes

251 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2025-71336 (CVSS 9.8) — Flowise before 3.0.6 (affected versions 2.2.7-patch.1 and earlier) contains an unsandboxe...
CVE-2025-71338 (CVSS 10.0) — Flowise contains a path traversal vulnerability in the /api/v1/document-store/loader/pro...
KEV: CVE-2026-12569 — PTC Windchill and FlexPLM (PTC Windchill and FlexPLM Improper Input Validation Vulnerability)
KEV: CVE-2026-20230 — Cisco Unified Communications Manager (Cisco Unified Communications Manager Server-Side Request ...
CVE-2026-56351 (CVSS 8.2) — n8n before version 2.4.0 contains a sql injection vulnerability in MySQL, PostgreSQL, and...
CVE-2026-39948 (CVSS 9.8) — Cacti is an open source performance and fault management framework. In versions 1.2.30 an...
CVE-2026-40079 (CVSS 9.8) — Cacti is an open source performance and fault management framework. Versions 1.2.30 and p...
CVE-2026-56786 (CVSS 9.8) — RTKLIB through 2.4.3 contains an out-of-bounds write vulnerability in decode_type1033 fun...
CVE-2025-71327 (CVSS 9.1) — Flowise contains an authentication bypass vulnerability in the unprotected /api/v1/accoun...
CVE-2025-71334 (CVSS 9.8) — Flowise before 3.0.6 (affected versions 2.2.8 and earlier) contains an arbitrary file acc...
CVE-2026-44789 (CVSS 9.9) — n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7...
CVE-2026-44791 (CVSS 9.9) — n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7...
CVE-2026-44792 (CVSS 9.0) — n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7...
CVE-2026-12416 (CVSS 9.8) — The Invoice Generator plugin for WordPress is vulnerable to Account Takeover via Password...
CVE-2026-12417 (CVSS 9.8) — The SignUp & SignIn plugin for WordPress is vulnerable to Authentication Bypass via Weak ...
KEV: CVE-2025-67038 — Lantronix EDS5000 (Lantronix EDS5000 Code Injection Vulnerability)
KEV: CVE-2026-34910 — Ubiquiti UniFi OS (Ubiquiti UniFi OS Improper Input Validation Vulnerability)
KEV: CVE-2026-34909 — Ubiquiti UniFi OS (Ubiquiti UniFi OS Path Traversal Vulnerability)
KEV: CVE-2026-34908 — Ubiquiti UniFi OS (Ubiquiti UniFi OS Improper Access Control Vulnerability)
CVE-2026-12628 (CVSS 9.1) — IBM Storage Protect Client 8.1.0.0 through 8.2.1.0 and IBM Storage Protect Snapshot For W...