Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
CVE

EU Regulatory Changes

251 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-42074 (CVSS 9.8) — OpenClaude is an open-source coding-agent command line interface for cloud and local mode...
CVE-2026-47117 (CVSS 9.8) — OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-fi...
CVE-2026-5076 (CVSS 9.8) — The ARMember Premium plugin for WordPress is vulnerable to an insecure password reset mech...
KEV: CVE-2022-0492 — Linux Kernel (Linux Kernel Improper Authentication Vulnerability)
KEV: CVE-2025-48595 — Android Framework (Android Framework Integer Overflow Vulnerability)
CVE-2026-44825 (CVSS 8.1) — Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Ap...
CVE-2026-8644 (CVSS 9.1) — IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to identity spoofing.
CVE-2026-9311 (CVSS 9.0) — IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to remote code execution cause...
CVE-2026-9319 (CVSS 9.0) — IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to potential remote code execu...
CVE-2018-25427 (CVSS 9.8) — Arm Whois 3.11 contains a stack-based buffer overflow vulnerability that allows remote at...
CVE-2026-8206 (CVSS 9.8) — The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vu...
KEV: CVE-2024-21182 — Oracle WebLogic Server (Oracle WebLogic Server Unspecified Vulnerability)
CVE-2026-10187 (CVSS 9.8) — A vulnerability was detected in Totolink N300RH 6.1c.1353_B20190305. Affected by this iss...
KEV: CVE-2026-0257 — Palo Alto Networks PAN-OS (Palo Alto Networks PAN-OS Authentication Bypass Vulnerability)
CVE-2026-8732 (CVSS 9.8) — The WP Maps Pro plugin for WordPress is vulnerable to Privilege Escalation via Administrat...
CVE-2026-3655 (CVSS 9.8) — The OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to au...
CVE-2026-10071 (CVSS 9.8) — DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing un...
CVE-2026-4290 (CVSS 9.1) — The WP Travel Pro plugin for WordPress is vulnerable to arbitrary user deletion via the /w...
CVE-2026-4408 (CVSS 9.0) — A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file ...
A critical vulnerability, CVE-2026-4408, has been published with a CVSS score of 9.0, affecting Samba file servers and classic domain controllers that use the "check password script" feature. The f...
Read analysis →
CVE-2026-24444 (CVSS 9.8) — SDMC NE6037 cable modem routers running firmware 7.1.6.0.25 and 7.1.6.1.9_B9 contain a ha...
A critical vulnerability has been published under CVE-2026-24444, affecting SDMC NE6037 cable modem routers running firmware versions 7.1.6.0.25 and 7.1.6.1.9_B9. The issue involves a hardcoded pas...
Read analysis →