Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2024-6541 is a medium severity vulnerability in WSO2 Micro Integrator where the Class Mediator does not properly validate or sanitize messageContext properties used for dynamic values. Authenticated users could exploit this to access or modify data across system invocations that should be isolated, potentially disclosing sensitive information or causing unintended data modification. The impact depends on the specific use of messageContext properties in the affected versions. Join the discussion | CVE Database V5 | 08/06/2026, 17:31:59 UTC Added: 08/06/2026, 22:13:06 UTC |
0 CVE-2025-11093 is a high-severity arbitrary code execution vulnerability in WSO2 Micro Integrator and related WSO2 products. It arises from insufficient restrictions in the GraalJS and NashornJS Script Mediator engines, allowing authenticated users with elevated privileges to execute arbitrary code within the integration runtime. By default, scripting engine access is limited to administrators in WSO2 Micro Integrator and Enterprise Integrator, but also includes API creators in WSO2 API Manager, potentially broadening the attack surface. Exploitation requires privileged authentication but no user interaction, impacting confidentiality, integrity, and availability severely. No known exploits are reported in the wild yet. European organizations using affected WSO2 versions 4.0.0 through 4.4.0 should prioritize patching and restrict scripting engine access. Join the discussion | CVE Database V5 | 11/05/2025, 18:31:17 UTC Added: 11/05/2025, 18:53:51 UTC |
Showing 1 to 2 of 2 results