Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-19768 is a code injection vulnerability in the settings feature of Devolutions PowerShell Universal version 2026.2.3 and earlier. It allows an authenticated user with settings management permission to execute arbitrary PowerShell code by injecting crafted values into the settings configuration file. This vulnerability has a high severity score of 8.1 and impacts confidentiality and integrity without requiring user interaction. Join the discussion | GCVE Database | 08/14/2026, 13:48:03 UTC Added: 08/14/2026, 16:35:53 UTC |
0 Insertion of sensitive information into sent data in the AI Agent job API in Devolutions PowerShell Universal 2026.2.0 allows an authenticated user with AI Agent read access to obtain reusable, potentially higher-privileged authentication tokens via App Tokens serialized in plaintext in job API responses. Join the discussion | CVE Database V5 | 06/29/2026, 15:23:53 UTC Added: 06/29/2026, 16:21:40 UTC |
0 Improper access control in Devolutions PowerShell Universal 2026.1.7 and earlier allows an unauthenticated remote attacker to obtain the OpenAPI specification of user-defined REST endpoints. Join the discussion | CVE Database V5 | 06/12/2026, 14:11:33 UTC Added: 06/12/2026, 14:39:34 UTC |
0 Improper input validation in the apps and endpoints configuration in PowerShell Universal before 2026.1.4 allows an authenticated user with permissions to create or modify Apps or Endpoints to override existing application or system routes, resulting in unintended request routing and denial of service via a conflicting URL path. Join the discussion | CVE Database V5 | 03/17/2026, 19:15:37 UTC Added: 03/17/2026, 19:43:24 UTC |
Missing authorization checks on multiple gRPC service endpoints in PowerShell Universal before 2026.1.4 allows an authenticated user with any valid token to bypass role-based access controls and perform privileged operations — including reading sensitive data, creating or deleting resources, and disrupting service operations — via crafted gRPC requests. Join the discussion | CVE Database V5 | 03/17/2026, 19:14:17 UTC Added: 03/17/2026, 19:43:24 UTC |
0 Ironman PowerShell Universal 5.x before 5.0.12 allows an authenticated attacker to elevate their privileges and view job information. Join the discussion | CVE Database V5 | 10/27/2024, 00:00:00 UTC Added: 02/25/2026, 21:37:30 UTC |
Showing 1 to 6 of 6 results