Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/elastic/packetbeat

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-26933 is a medium severity vulnerability in Elastic Packetbeat versions 8.0.0 and 9.0.0 caused by improper validation of array indices in multiple protocol parsers. An attacker on the same network segment or controlling routed traffic can send malformed packets that trigger out-of-bounds reads, leading to application crashes or resource exhaustion, resulting in denial of service. Exploitation does not require user interaction but does require low privileges and network access to monitored interfaces. No known exploits are currently reported in the wild. The vulnerability impacts availability but not confidentiality or integrity. Organizations using Packetbeat for network monitoring should prioritize patching or mitigating exposure to untrusted network traffic.

Join the discussion

Improper Validation of Array Index (CWE-129) in the PostgreSQL protocol parser in Packetbeat can lead Denial of Service via Input Data Manipulation (CAPEC-153). An attacker can send a specially crafted packet causing a Go runtime panic that terminates the Packetbeat process. This vulnerability requires the pgsql protocol to be explicitly enabled and configured to monitor traffic on the targeted port.

Join the discussion

Improper Validation of Array Index (CWE-129) in Packetbeat’s MongoDB protocol parser can allow an attacker to cause Overflow Buffers (CAPEC-100) through specially crafted network traffic. This requires an attacker to send a malformed payload to a monitored network interface where MongoDB protocol parsing is enabled.

Join the discussion

Out-of-bounds read (CWE-125) allows an unauthenticated remote attacker to perform a buffer overflow (CAPEC-100) via the NFS protocol dissector, leading to a denial-of-service (DoS) through a reliable process crash when handling truncated XDR-encoded RPC messages.

Join the discussion

CVE-2025-68381 is a medium severity vulnerability in Elastic Packetbeat affecting versions 7.0.0 through 9.2.0. It involves an out-of-bounds write (CWE-787) due to improper bounds checking, which can be triggered remotely without authentication by sending a crafted UDP packet with an invalid fragment sequence number. Exploitation can cause a buffer overflow leading to application crashes or significant resource exhaustion, impacting availability. The vulnerability does not affect confidentiality or integrity and requires network access with no user interaction. No known exploits are currently in the wild. European organizations using Packetbeat for network monitoring could face service disruptions if targeted.

Join the discussion

Allocation of resources without limits or throttling (CWE-770) allows an unauthenticated remote attacker to cause excessive allocation (CAPEC-130) of memory and CPU via the integration of malicious IPv4 fragments, leading to a degradation in Packetbeat.

Join the discussion

Showing 1 to 6 of 6 results

Filters:Package: pkg:github/elastic/packetbeat
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses