Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-54318: CWE-926: Improper Export of Android Application Components in home-assistant coreCVE-2026-54318 0 A vulnerability in Home Assistant core prior to version 2026.5.3 allows any installed Android app without permissions to send forged location data to the LocationSensorManager BroadcastReceiver. This receiver is exported without permission checks and trusts the received location data, forwarding it to the user's Home Assistant server. This bypasses Android's mock location protections and enables a local malicious app to fake the device's GPS position, potentially triggering zone-based automations such as unlocking doors or disarming alarms. The issue is fixed in version 2026.5.3. Join the discussion | CVE Database V5 | 06/23/2026, 17:40:28 UTC Added: 06/23/2026, 18:09:40 UTC |
CVE-2025-1269: CWE-601 URL Redirection to Untrusted Site ('Open Redirect') in HAVELSAN Liman MYSCVE-2025-1269 0 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in HAVELSAN Liman MYS allows Cross-Site Flashing. This issue affects Liman MYS: before 2.1.1 - 1010. Join the discussion | CVE Database V5 | 02/18/2025, 13:48:29 UTC Added: 06/06/2026, 07:33:35 UTC |
CVE-2024-14036: CWE-400 Uncontrolled Resource Consumption in Dräger CoreCVE-2024-14036 0 Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-adjacent attackers to trigger high CPU load by sending specially crafted, unencrypted SDC messages during the discovery process. Attackers with access to the hospital network can send malformed SDC packets to exhaust CPU resources in the affected process, causing further SDC messages to no longer be processed. Join the discussion | CVE Database V5 | 06/02/2026, 21:22:12 UTC Added: 06/02/2026, 21:48:37 UTC |
CVE-2026-44698: CWE-94: Improper Control of Generation of Code ('Code Injection') in home-assistant coreCVE-2026-44698 0 Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.4.1 for iOS and 2026.4.4 for Android, he Home Assistant Companion apps for Android and iOS expose a JavaScript bridge to the in-app WebView window.externalApp on Android and webkit.messageHandlers.getExternalAuth (alongside revokeExternalAuth and externalBus) on iOS. Two flaws expose the bridge to all frames (including cross-origin iframes) and unsanitized interpolation of the JavaScript callback identifier allows a cross-origin iframe rendered inside the Companion app to execute arbitrary JavaScript in the Home Assistant frontend's main-frame origin and exfiltrate the signed-in user's access token. This vulnerability is fixed in 2026.4.1 for iOS and 2026.4.4 for Android. Join the discussion | CVE Database V5 | 05/29/2026, 13:32:20 UTC Added: 05/29/2026, 13:48:38 UTC |
CVE-2026-44475: CWE-358: Improperly Implemented Security Check for Standard in ellanetworks coreCVE-2026-44475 0 Ella Core versions prior to 1.10.0 contain a vulnerability where the UE Security Capabilities received in NGAP PathSwitchRequest messages are not verified against locally stored values. This allows a malicious gNB to overwrite stored UE security capabilities with arbitrary values by sending a crafted PathSwitchRequest message. The vulnerability is fixed in version 1.10.0. The CVSS score is 6.1, indicating a medium severity issue with potential integrity and availability impacts but no confidentiality loss. Join the discussion | CVE Database V5 | 05/27/2026, 15:15:27 UTC Added: 05/27/2026, 16:33:40 UTC |
CVE-2026-44474: CWE-358: Improperly Implemented Security Check for Standard in ellanetworks coreCVE-2026-44474 0 Ella Core is a 5G core designed for private networks. Prior to 1.10.0, Ella Core didn't enforce security rules on concurrent running of security procedures defined in TS 33.501 §6.9.5.1 — it could send a NAS Security Mode Command while an N2 handover was still pending (and vice versa). Concurrent Security Mode Command and N2 handover produce a KgNB mismatch between the UE and target gNB, causing the handover to fail. Requires a stalled gNB + re-registration race to trigger. This vulnerability is fixed in 1.10.0. Join the discussion | CVE Database V5 | 05/27/2026, 15:14:49 UTC Added: 05/27/2026, 16:33:40 UTC |
CVE-2026-44473: CWE-358: Improperly Implemented Security Check for Standard in ellanetworks coreCVE-2026-44473 0 CVE-2026-44473 is a high-severity vulnerability in ellanetworks core (Ella Core), a 5G core designed for private networks. Versions prior to 1.10.0 allow a radio with a valid NG Setup to send a forged PDUSessionResourceSetupResponse containing any UE's AMF-UE-NGAP-ID. The core fails to verify that the message arrived on the SCTP association bound to that UE's logical NG-connection, resulting in the creation of a GTP tunnel towards the radio. This improper security check can lead to denial of service or disruption of network operations. The vulnerability is fixed in version 1.10.0. No known exploits in the wild have been reported. Join the discussion | CVE Database V5 | 05/27/2026, 15:16:05 UTC Added: 05/27/2026, 16:33:40 UTC |
CVE-2026-8054: CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in dotCMS dotCMS CoreCVE-2026-8054 0 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in the Publish Audit API endpoints (/api/auditPublishing/get and /api/auditPublishing/getAll) in dotCMS Core 25.11.04-1 through 26.04.28-02 allows remote unauthenticated attackers to read, modify, or destroy arbitrary database content. The endpoints did not enforce authentication and accepted unsanitized input used in dynamically constructed SQL. The fix in dotCMS Core 26.04.28-03 requires an authenticated backend user with the publishing-queue portlet permission. LTS releases are not affected as the vulnerable code path was never backported. Join the discussion | CVE Database V5 | 05/27/2026, 07:55:25 UTC Added: 05/27/2026, 09:04:20 UTC |
Showing 1 to 8 of 8 results