Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-34836: CWE-862: Missing Authorization in Combodo iTopCVE-2026-34836 0 Combodo iTop versions prior to 3.2.3 contain an improper access control vulnerability in ajax.render.php and ajax.document.php that allows document access without verifying user permissions. This missing authorization issue has been addressed in version 3.2.3. The vulnerability has a CVSS score of 6.5, indicating a medium severity level. Join the discussion | CVE Database V5 | 08/21/2026, 21:54:45 UTC Added: 08/21/2026, 22:08:32 UTC |
CVE-2026-34741: CWE-306: Missing Authentication for Critical Function in Combodo iTopCVE-2026-34741 0 Combodo iTop versions prior to 3.2.3 contain a vulnerability that allows unauthenticated remote attackers to bypass authentication and execute arbitrary PHP files from the env-production directory on new iTop instances in production environments. This issue has been addressed and fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 21:50:49 UTC Added: 08/21/2026, 22:08:32 UTC |
CVE-2026-33333: CWE-209: Generation of Error Message Containing Sensitive Information in Combodo iTopCVE-2026-33333 0 CVE-2026-33333 is a low severity vulnerability in Combodo iTop, a web-based IT service management tool. Prior to version 3.2.3, error messages generated by the software could disclose sensitive information. This issue has been addressed and fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 21:46:00 UTC Added: 08/21/2026, 21:52:54 UTC |
CVE-2026-33047: CWE-862: Missing Authorization in Combodo iTopCVE-2026-33047 0 Combodo iTop is a web based IT service management tool. Prior to 3.2.3, an object can be locked by a user who is not assigned write permissions. This issue has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 21:21:53 UTC Added: 08/21/2026, 21:37:51 UTC |
CVE-2026-31936: CWE-862: Missing Authorization in Combodo iTopCVE-2026-31936 0 CVE-2026-31936 is a high severity vulnerability in Combodo iTop, a web-based IT service management tool. Prior to version 3.2.3, the application allowed users with limited privileges to access unauthorized object information via the search operation. This is a missing authorization issue classified under CWE-862. The vulnerability has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 21:17:44 UTC Added: 08/21/2026, 21:37:51 UTC |
CVE-2026-33240: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Combodo iTopCVE-2026-33240 0 A reflected Cross-Site Scripting (XSS) vulnerability exists in Combodo iTop versions prior to 3.2.3 in the foreign key search criteria API. This vulnerability allows an attacker to inject malicious scripts that could be executed in the context of a user's browser. The issue has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 21:25:03 UTC Added: 08/21/2026, 21:37:51 UTC |
CVE-2026-31803: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Combodo iTopCVE-2026-31803 0 Combodo iTop is a web based IT service management tool. Prior to 3.2.3, 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in pages/tagadmin.php. This issue has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 20:52:09 UTC Added: 08/21/2026, 21:07:39 UTC |
CVE-2026-31880: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Combodo iTopCVE-2026-31880 0 Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the universal search. This issue has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 20:59:35 UTC Added: 08/21/2026, 21:07:39 UTC |
CVE-2026-30890: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Combodo iTopCVE-2026-30890 0 Combodo iTop versions prior to 3.2.3 contain a reflected Cross-Site Scripting (XSS) vulnerability in the synchro import script. This vulnerability allows an attacker with low privileges and user interaction to execute arbitrary code in the context of the affected web application. The issue has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 20:40:05 UTC Added: 08/21/2026, 20:52:56 UTC |
CVE-2026-30865: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Combodo iTopCVE-2026-30865 0 Combodo iTop versions prior to 3.2.3 contain a reflected Cross-Site Scripting (XSS) vulnerability in the dashboard save functionality. This vulnerability allows an attacker to inject malicious scripts that could be executed in the context of a user's browser session. The issue has been fixed in version 3.2.3. Join the discussion | CVE Database V5 | 08/21/2026, 20:37:20 UTC Added: 08/21/2026, 20:52:56 UTC |
Showing 1 to 10 of 16 results