Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2025-20373 is a low-severity vulnerability in Splunk Add-on for Palo Alto Networks versions below 2.0.2 where client secrets are logged in plaintext within the internal index. Exploitation requires either local access to log files or administrative privileges to internal indexes, which are typically restricted to admin roles. This exposure could allow attackers with such access to obtain sensitive credentials, aiding further attacks or lateral movement. The vulnerability does not impact integrity or availability and requires high privileges, limiting its exploitability. European organizations using affected Splunk add-on versions should review and restrict internal index access and upgrade to patched versions. Countries with significant Splunk and Palo Alto Networks deployments and critical infrastructure monitoring are most at risk. Mitigation involves strict role-based access control, auditing internal index access, and applying updates promptly. The CVSS score of 2. Join the discussion | CVE Database V5 | 11/26/2025, 17:59:06 UTC Added: 11/26/2025, 18:03:14 UTC |
Showing 1 to 1 of 1 result