Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
CVE

EU Regulatory Changes

798 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
KEV: CVE-2026-56155 — Microsoft Active Directory Federation Services (Microsoft Active Directory Federation Services ...
KEV: CVE-2026-56164 — Microsoft SharePoint Server (Microsoft SharePoint Server Missing Authentication for Critical Fu...
KEV: CVE-2026-15409 — SonicWall SMA1000 Appliances (SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerab...
KEV: CVE-2026-15410 — SonicWall SMA1000 Appliances (SonicWall SMA1000 Appliances Code Injection Vulnerability)
CVE-2026-57830 (CVSS 9.1) — The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file de...
CVE-2026-13221 (CVSS 9.1) — Perl versions through 5.43.9 produce silently incorrect regular expression matches when a...
CVE-2026-58319 (CVSS 9.1) — Certain Apache Doris FE HTTP REST administrative APIs were accessible without proper auth...
CVE-2026-62390 (CVSS 9.8) — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vuln...
CVE-2026-62392 (CVSS 9.8) — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'...
CVE-2026-15701 (CVSS 9.8) — A weakness has been identified in Totolink NR1800X 9.1.0u.6279_B20210910. Affected by thi...
CVE-2026-44761 (CVSS 9.1) — SAP Commerce Cloud could retain a sample OAuth2 client with publicly documented sample cr...
KEV: CVE-2008-4128 — Cisco IOS (Cisco IOS Cross-Site Request Forgery Vulnerability)
CVE-2026-40468 (CVSS 9.1) — Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This i...
CVE-2026-61498 (CVSS 9.8) — Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in t...
CVE-2026-61500 (CVSS 9.8) — Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the non-crypt...
CVE-2026-59801 (CVSS 9.8) — 9Router through version 0.4.41 contains an unauthenticated access vulnerability that allo...
CVE-2026-62327 (CVSS 9.1) — 9Router through version 0.4.41 contain an unauthenticated information disclosure vulnerab...
CVE-2026-56271 (CVSS 9.8) — Flowise before 3.1.0 (affected versions 3.0.13 and earlier) uses weak hardcoded default J...
CVE-2026-15511 (CVSS 9.8) — A vulnerability was determined in Comfast CF-WR631AX V3 up to 2.7.0.8. Affected by this v...
CVE-2026-60090 (CVSS 9.8) — PraisonAI before 4.6.78 fails to validate the caller-controlled dimension argument in the...
A new critical vulnerability, CVE-2026-60090, has been published with a CVSS score of 9.8, affecting PraisonAI versions prior to 4.6.78. The flaw lies in the failure to validate a caller-controlled...
Read analysis →