Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-49299 is an authorization vulnerability in OpenStack Neutron before version 28.0.1. The issue arises because the tagging controller uses plural policy action names for single-tag write operations, while the policy rules use singular names. This mismatch causes the default policy to allow project readers to create and update tags on resources within the same project. Versions 26.0.0, 27.0.0, and 28.0.0 of Neutron are affected. Join the discussion | CVE Database V5 | 05/28/2026, 22:17:00 UTC Added: 05/28/2026, 22:18:34 UTC |
0 In OpenStack Neutron before 25.0.1, neutron/extensions/tagging.py can use an incorrect ID during policy enforcement. It does not apply the proper policy check for changing network tags. An unprivileged tenant is able to change (add and clear) tags on network objects that do not belong to the tenant, and this action is not subjected to the proper policy authorization check. This affects 23 before 23.2.1, 24 before 24.0.2, and 25 before 25.0.1. Join the discussion | CVE Database V5 | 11/24/2024, 00:00:00 UTC Added: 02/25/2026, 21:38:10 UTC |
Showing 1 to 2 of 2 results