Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-55777: CWE-125: Out-of-bounds Read in allinurl goaccessCVE-2026-55777 0 CVE-2026-55777 is an out-of-bounds read vulnerability in GoAccess, a real-time web log analyzer. The issue exists in versions prior to 1.11 within the parse_ios() function, where an attacker-controlled offset is used improperly in a memmove operation. This can lead to reading up to approximately 4 KB beyond the allocated heap and may cause the application to crash. The vulnerability is fixed in version 1.11. Join the discussion | CVE Database V5 | 07/30/2026, 20:37:40 UTC Added: 07/30/2026, 21:07:58 UTC |
CVE-2026-55768: CWE-789: Memory Allocation with Excessive Size Value in allinurl goaccessCVE-2026-55768 0 GoAccess versions prior to 1.11 contain a vulnerability in the built-in WebSocket server where a 64-bit extended frame length is improperly narrowed to a signed 32-bit field. This allows an unauthenticated remote attacker to bypass the maximum frame size check and request an extremely large memory allocation, causing the process to terminate. The issue is fixed in version 1.11. Join the discussion | CVE Database V5 | 07/30/2026, 20:34:32 UTC Added: 07/30/2026, 21:07:58 UTC |
CVE-2026-54715: CWE-122: Heap-based Buffer Overflow in allinurl goaccessCVE-2026-54715 0 GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the browser. In version 1.10.2, parse_browser assumes the matched browser token begins with Opera and moves a trailing version substring to match plus five, allowing a crafted User-Agent in a processed access log to write one to four attacker-influenced bytes beyond the heap allocation and corrupt or crash GoAccess. This issue is fixed in version 1.11. Join the discussion | CVE Database V5 | 07/30/2026, 20:23:36 UTC Added: 07/30/2026, 20:38:29 UTC |
Showing 1 to 3 of 3 results