Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories. Prior to 0.37.8, 0.39.6, 0.42.1, and 0.48.0, the GitHub App provider accepts X-GitHub-Enterprise-Host as the API host while processing webhook events containing an installation.id, before webhook signature validation or confirmation that the host matches the repository URL in the signed payload. An unauthenticated attacker who can reach the webhook endpoint can select an attacker-controlled host and cause the controller to send a locally signed GitHub App JWT to that service. The exposed JWT may be used to attempt to mint installation access tokens during its validity window, subject to the GitHub App installation and permissions. The incoming webhook installation-lookup path is also affected, but exploitation of that path requires the valid incoming webhook secret for the target Repository CR. This issue is fixed in versions 0.37.8, 0.39.6, 0.42.1, and 0.48.0. Join the discussion | CVE Database V5 | 09/15/2026, 14:29:45 UTC Added: 09/15/2026, 15:02:18 UTC |
CVE-2026-54168 is an improper privilege management vulnerability in Tekton Pipelines-as-Code. Before fixed versions, a GitHub App installation token created during webhook processing was not properly scoped to the triggering repository when the App was installed across multiple repositories. This allowed a user with push access to one repository to read Tekton pipeline definitions from private repositories within the same installation. The vulnerability results in read-only access disclosure of pipeline definitions and does not allow write operations. The issue is fixed in versions 0.37.8, 0.39.6, 0.42.1, and 0.48.0. Join the discussion | CVE Database V5 | 09/15/2026, 14:27:44 UTC Added: 09/15/2026, 22:11:53 UTC |
Showing 1 to 2 of 2 results