Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-76362: The software does not validate, or incorrectly validates, a certificate. in Splunk Splunk SOARCVE-2026-76362
0

CVE-2026-76362 affects Splunk SOAR versions below 8.6.0 and involves improper validation of server certificates by the CyberArk REST client. An unauthenticated attacker with network interception capabilities between Splunk SOAR and a configured CyberArk REST server could access or modify sensitive data exchanged through the credential manager. The vulnerability arises because the CyberArk REST client does not verify server certificates by default, exposing data confidentiality and integrity to compromise. No official patch or remediation level has been confirmed yet.

Join the discussion
CVE-2026-76361: The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination. in Splunk Splunk SOARCVE-2026-76361
0

CVE-2026-76361 is a Server-Side Request Forgery (SSRF) vulnerability in Splunk SOAR versions below 8.6.0. It allows a user with the Administrator role to use the /rest/support/connectivity/.../check_connectivity endpoint to make the server initiate outbound network connections to arbitrary destinations. This occurs because the connectivity check API does not sufficiently validate the destination before connecting. The vulnerability has a low CVSS score of 2.7 and does not have a confirmed patch or remediation level as of the published date.

Join the discussion

Showing 1 to 2 of 2 results

Filters:Package: pkg:github/splunk/soar
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses