Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
ssh in OpenSSH before 10.1 allows control characters in usernames that originate from certain possibly untrusted sources, potentially leading to…CVE-2025-61984 0 ssh in OpenSSH before 10.1 allows control characters in usernames that originate from certain possibly untrusted sources, potentially leading to code execution when a ProxyCommand is used. The untrusted sources are the command line and %-sequence expansion of a configuration file. (A configuration file that provides a complete literal username is not categorized as an untrusted source.) Join the discussion | GCVE Database | 10/06/2025, 19:15:00 UTC Added: 07/21/2026, 20:03:26 UTC |
OpenSSH before 10.3 can use unintended ECDSA algorithms.CVE-2026-35387 0 OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA algorithms. Join the discussion | GCVE Database | 04/02/2026, 17:16:00 UTC Added: 07/21/2026, 20:03:21 UTC |
OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing sessions.CVE-2026-35388 0 OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing sessions. Join the discussion | GCVE Database | 04/02/2026, 17:16:00 UTC Added: 07/21/2026, 20:03:21 UTC |
OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a…CVE-2026-35414 0 OpenSSH versions prior to 10.3 contain a vulnerability in the handling of the authorized_keys principals option. This issue arises in uncommon scenarios where a principals list is used together with a Certificate Authority that utilizes comma characters in a specific way. The vulnerability affects multiple Ubuntu releases and their Pro/FIPS variants. The CVSS vector indicates a network attack vector with high attack complexity and low privileges required, resulting in limited confidentiality and integrity impact without availability impact. Join the discussion | GCVE Database | 04/02/2026, 18:16:00 UTC Added: 07/21/2026, 20:03:21 UTC |
A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path.CVE-2026-55653 0 A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This occurs during FIPS (Federal Information Processing Standards) mode known-group validation when the client processes attacker-controlled DH-GEX group parameters. Successful exploitation leads to client-side process termination, resulting in a Denial of Service (DoS). Join the discussion | GCVE Database | 06/23/2026, 04:17:00 UTC Added: 07/21/2026, 20:02:50 UTC |
sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an…CVE-2026-59995 0 sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server. Join the discussion | GCVE Database | 07/08/2026, 01:16:00 UTC Added: 07/21/2026, 20:02:50 UTC |
scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations.CVE-2026-59996 0 scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations. Join the discussion | GCVE Database | 07/08/2026, 01:16:00 UTC Added: 07/21/2026, 20:02:50 UTC |
internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line…CVE-2026-59997 0 internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line argument would have helped to ensure the intended security properties of an SFTP connection. Join the discussion | GCVE Database | 07/08/2026, 01:16:00 UTC Added: 07/21/2026, 20:02:50 UTC |
sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows…CVE-2026-59998 0 sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows Active Directory. Join the discussion | GCVE Database | 07/08/2026, 01:16:00 UTC Added: 07/21/2026, 20:02:50 UTC |
In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not.CVE-2026-59999 0 In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not. Join the discussion | GCVE Database | 07/08/2026, 01:16:00 UTC Added: 07/21/2026, 20:02:50 UTC |
Showing 1 to 10 of 15 results