Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4804 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-62539 (CVSS 9.8) — Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion...
CVE-2026-62541 (CVSS 9.8) — Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion...
CVE-2026-62543 (CVSS 9.8) — Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion...
CVE-2026-62544 (CVSS 9.8) — Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion...
CVE-2026-62582 (CVSS 9.6) — Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (comp...
CVE-2026-62585 (CVSS 9.8) — Vulnerability in the Siebel CRM Administration product of Oracle Siebel CRM (component: D...
CVE-2026-62608 (CVSS 9.9) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
CVE-2026-62609 (CVSS 9.8) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
CVE-2026-62610 (CVSS 9.1) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
CVE-2026-62611 (CVSS 9.8) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
CVE-2026-62613 (CVSS 9.3) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
CVE-2026-62614 (CVSS 9.8) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
CVE-2026-62617 (CVSS 9.8) — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (compon...
KEV: CVE-2026-64849 — MLflow MLflow (MLflow Server-Side Request Forgery Vulnerability)
arXiv: SpecTrum: Specification-Guided Differential Fuzzing for Ethereum Consensus Clients
A new academic paper, titled SpecTrum: Specification-Guided Differential Fuzzing for Ethereum Consensus Clients, has been published on arXiv. The paper introduces a novel fuzzing technique that use...
Read analysis →
arXiv: BullsEye: Directed Firmware Fuzzing
The publication introduces BullsEye, a novel directed fuzzing framework designed to improve the security testing of firmware, particularly for embedded systems and Internet of Things (IoT) devices....
Read analysis →
arXiv: MemCatalyst: Amplifying Data Auditing on Vision-Language Models via Data Poisoning
This publication, dated August 2026, is a research paper introducing MemCatalyst, a method that uses data poisoning to amplify data auditing on vision-language models. It is not a regulatory rule o...
Read analysis →
arXiv: Benchmarking Automated Security Patch Backporting: How Far Are We?
This publication introduces a benchmark for evaluating automated security patch backporting, a process where fixes for vulnerabilities in newer software versions are adapted to older, still-support...
Read analysis →
arXiv: MobileWorldSafety: Benchmarking GUI Agent Safety Against Environmental Injection Attacks in Android Apps
A new academic paper, MobileWorldSafety, introduces a framework for testing the security of AI-powered graphical user interface agents on Android devices against environmental injection attacks. Th...
Read analysis →
arXiv: An Emulation Anchored Digital Twin Testbed for Cyberattack and Defense Analysis in Hospital IT OT Environments
This publication introduces a technical framework, not a new regulation, but it has direct compliance implications. The paper details a digital twin testbed that emulates hospital IT and operationa...
Read analysis →