Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 Red Hat Satellite is a system management solution that allows organizations to configure and maintain their systems without the necessity to provide public Internet access to their servers or other client systems. It performs provisioning and configuration management of predefined standard operating environments. Security Fix(es): * yggdrasil-worker-forwarder: gRPC-Go: Authorization bypass due to improper HTTP/2 path validation (CVE-2026-33186) * yggdrasil-worker-forwarder: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679) * yggdrasil-worker-forwarder: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821) * yggdrasil-worker-forwarder: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811) * yggdrasil-worker-forwarder: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145) * python3.12-pulpcore: pulpcore: relative_path_validator bypass via directory traversal in FilesystemExport (CVE-2026-12701) Join the discussion | GCVE Database | 07/20/2026, 19:33:17 UTC Added: 07/21/2026, 19:57:46 UTC |
0 During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial of service. This affects both direct users of crypto/x509 and users of crypto/tls. Join the discussion | CVE Database V5 | 04/08/2026, 01:06:58 UTC Added: 04/08/2026, 04:31:41 UTC |
0 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. Join the discussion | CVE Database V5 | 04/08/2026, 01:06:58 UTC Added: 04/08/2026, 04:31:41 UTC |
0 When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. Join the discussion | CVE Database V5 | 04/08/2026, 01:06:56 UTC Added: 04/08/2026, 04:31:41 UTC |
0 Certificate verification can panic when a certificate in the chain has an empty DNS name and another certificate in the chain has excluded name constraints. This can crash programs that are either directly verifying X.509 certificate chains, or those that use TLS. Join the discussion | CVE Database V5 | 03/06/2026, 21:28:14 UTC Added: 03/06/2026, 21:46:07 UTC |
0 When verifying a certificate chain which contains a certificate containing multiple email address constraints which share common local portions but different domain portions, these constraints will not be properly applied, and only the last constraint will be considered. Join the discussion | CVE Database V5 | 03/06/2026, 21:28:13 UTC Added: 03/06/2026, 21:46:07 UTC |
0 An excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate. For example a constraint that excludes the subdomain test.example.com does not prevent a leaf certificate from claiming the SAN *.example.com. Join the discussion | CVE Database V5 | 12/03/2025, 19:37:15 UTC Added: 12/03/2025, 19:45:33 UTC |
0 Within HostnameError.Error(), when constructing an error string, there is no limit to the number of hosts that will be printed out. Furthermore, the error string is constructed by repeated string concatenation, leading to quadratic runtime. Therefore, a certificate provided by a malicious actor can result in excessive resource consumption. Join the discussion | CVE Database V5 | 12/02/2025, 18:54:10 UTC Added: 12/02/2025, 19:05:46 UTC |
CVE-2025-58188 is a high-severity vulnerability in the Go standard library's crypto/x509 package that causes application crashes during certificate validation. The issue arises when validating certificate chains containing DSA public keys, where an interface cast incorrectly assumes the presence of an Equal method, leading to a panic. This affects Go versions up to and including 1.25.0. No patch or official remediation information is currently available, and no known exploits have been reported in the wild. Join the discussion | CVE Database V5 | 10/31/2025, 01:08:48 UTC Added: 10/29/2025, 22:24:04 UTC |
0 Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains. Join the discussion | CVE Database V5 | 10/31/2025, 01:08:15 UTC Added: 10/29/2025, 22:24:04 UTC |
Showing 1 to 10 of 10 results