Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-19752: Server-Side Request Forgery in EnzoVezzaro mcp-dominican-layerCVE-2026-19752 0 CVE-2026-19752 is a server-side request forgery (SSRF) vulnerability in the EnzoVezzaro mcp-dominican-layer project affecting the parse-pdf function in src/index.ts. The vulnerability allows remote attackers to manipulate the pdfUrl argument to initiate SSRF attacks. The issue affects versions up to commit 39dd373786712650097ad31db27d5c477c8f9c82. The vulnerability has a medium severity with a CVSS score of 5.3. The project has been informed but has not yet responded or issued a fix. Exploit code has been publicly disclosed but there are no known exploits in the wild at this time. Join the discussion | CVE Database V5 | 08/13/2026, 22:00:11 UTC Added: 08/13/2026, 22:11:58 UTC |
CVE-2026-19751: Server-Side Request Forgery in EnzoVezzaro mcp-dominican-layerCVE-2026-19751 0 CVE-2026-19751 is a server-side request forgery (SSRF) vulnerability in the EnzoVezzaro mcp-dominican-layer product. The flaw exists in the axios.get function call within the src/index.ts file of the parse-csv component, where manipulation of the csvUrl argument can lead to SSRF. The vulnerability can be exploited remotely, and proof-of-concept exploit code has been published. The product uses a rolling release strategy, so specific affected or fixed versions are not provided. The vendor has been informed but has not yet responded or issued a fix. Join the discussion | CVE Database V5 | 08/13/2026, 21:45:08 UTC Added: 08/13/2026, 21:56:43 UTC |
Showing 1 to 2 of 2 results