Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 Net::SAML2 versions before 0.86 for Perl contain a vulnerability that allows SAML authentication bypass via XML signature wrapping. The issue arises because the new_from_xml function reads identity fields using document-wide XPath expressions rather than restricting to the signed subtree, enabling attackers to inject unsigned assertions that appear valid. This flaw allows an attacker with a valid IdP-signed assertion to authenticate as any arbitrary user. Join the discussion | CVE Database V5 | 08/03/2026, 13:24:52 UTC Added: 08/03/2026, 13:33:36 UTC |
0 Net::SAML2 versions before 0.86 for Perl contain a critical vulnerability that allows authentication bypass. The vulnerability arises because the _verify_encrypted_assertion function accepts encrypted assertions without verifying cryptographic signatures if no signature element is present. This allows unauthenticated attackers to forge assertions encrypted to a service provider's encryption certificate and authenticate as arbitrary users. Systems that do not configure a decryption key_file are not affected. Join the discussion | CVE Database V5 | 08/03/2026, 13:00:23 UTC Added: 08/03/2026, 13:33:36 UTC |
0 Net::SAML2 versions before 0.86 for Perl contain a vulnerability that allows SAML authentication bypass. The verify_xml function verifies responses against a certificate embedded within the response itself when no trust anchor is configured, enabling attackers to authenticate arbitrary assertions using self-signed certificates. This occurs because the code returns early if no trust anchors or CA certificates are provided, trusting the embedded certificate without external validation. Join the discussion | CVE Database V5 | 08/03/2026, 12:42:08 UTC Added: 08/03/2026, 13:33:36 UTC |
Showing 1 to 3 of 3 results