Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-73221: CWE-863: Incorrect Authorization in cvat-ai cvatCVE-2026-73221 0 CVAT is an open source interactive video and image annotation tool for computer vision. From 2.17.0 until 2.72.0, a user with the Worker role can use predictable task-based request IDs with the lambda request retrieve and destroy endpoints to view automatic annotation requests for tasks or jobs the user cannot access and cancel requests initiated by other users. This issue is fixed in version 2.72.0. Join the discussion | CVE Database V5 | 08/11/2026, 18:22:10 UTC Added: 08/11/2026, 18:43:15 UTC |
CVE-2026-73219: CWE-1288: Improper Validation of Consistency within Input in cvat-ai cvatCVE-2026-73219 0 CVAT is an open source interactive video and image annotation tool for computer vision. From 2.17.0 until 2.72.0, a user with write access to a CVAT job can submit a batch automatic annotation request to RequestViewSet.create with inconsistent task and job IDs, and because the task ID determines the single active request slot, block automatic annotation for another task whose ID is known. This issue is fixed in version 2.72.0. Join the discussion | CVE Database V5 | 08/11/2026, 17:50:29 UTC Added: 08/11/2026, 17:57:37 UTC |
CVE-2026-65986: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in cvat-ai cvatCVE-2026-65986 0 CVAT versions 2.5.0 through 2.66.0 contain a cross-site scripting (XSS) vulnerability related to how annotation guide assets are served. An attacker can influence the Content-Type header of files attached to annotation guides, causing a victim's browser to interpret malicious files as HTML and execute embedded JavaScript. This vulnerability has been fixed in version 2.67.0. Join the discussion | CVE Database V5 | 08/04/2026, 20:13:47 UTC Added: 08/04/2026, 20:42:00 UTC |
CVE-2026-47682: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in cvat-ai cvatCVE-2026-47682 0 CVE-2026-47682 is a path traversal vulnerability in the CVAT open source annotation tool. Versions from 1.6.0 up to but not including 2.65.0 allow an attacker with write access to a configured cloud storage, or the ability to add new cloud storages, to overwrite arbitrary files on the server filesystem. This vulnerability has been fixed in version 2.65.0. Join the discussion | CVE Database V5 | 08/04/2026, 20:00:49 UTC Added: 08/04/2026, 20:12:01 UTC |
Showing 1 to 4 of 4 results