CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Live advisory feed

Security Advisory Fusion for CSIRTs, SOCs & Defenders

Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.

Advisories tracked
21,617
Known exploited
1,793
Sources online
24
Last sync
22M AGO
9,609 records · page 102 / 193 · nvd firehose hidden — show all

GHSA-qvc3-6q9x-95pj: Apache Camel: KeycloakSecurityPolicy has Improper Authentication, Missing Authentication for Critical Function and Failing Open Vulnerabilities

Improper Authentication, Missing Authentication for Critical Function, Not Failing Securely ('Failing Open') vulnerability in Apache Camel Keycloak Component. The KeycloakSecurityPolicy of camel-keycloak guards a route by running KeycloakSecurityProcessor.beforeProcess(), which

criticalpublic exploitCVSS 9.8CVE-2026-53913ghsa2026-07-06

GHSA-f7g3-2cg6-f5hj: Apache Camel: camel-mongodb-gridfs producer allows GridFS operation override and NoSQL operator injection via unfiltered gridfs.* HTTP headers

Improper Input Validation, Improper Access Control vulnerability in Apache Camel in Camel Mongodb Gridfs component. The camel-mongodb-gridfs producer selects the GridFS operation to perform from the gridfs.operation Exchange header when the endpoint's operation parameter is not

criticalpublic exploitCVSS 9.8CVE-2026-48204ghsa2026-07-06

DSA-6379-1 bird3 - security update

Multiple security vulnerabilities were discovered in the BIRD internet routing daemon, which could result in denial of service. https://security-tracker.debian.org/tracker/DSA-6379-1

unknowndebian2026-07-05

DSA-6377-1 php8.4 - security update

It was discovered that a buffer overflow in the implementation of AES Key Wrap with Padding in the openssl extension of PHP, a widely-used open source general purpose scripting language, could result in memory corruption. https://security-tracker.debian.org/tracker/DSA-6377-1

unknownCVE-2026-14355debian2026-07-04

Erlang security advisory (AV26-651)

Serial number: AV26-651 Date: July 3, 2026 On July 2, 2026, Erlang published security advisories to address vulnerabilities in the following products: OTP – versions prior to 27.3.4.14, 28.5.0.3 and 29.0.3 SSL (OTP) – versions prior to 11.7.3, 11.6.0.3 and 11.2.12.10 The Cyber Ce

unknowncccs2026-07-03

GitHub security advisory (AV26-650)

Serial number: AV26-650 Date: July 3, 2026 On June 30, 2026, GitHub published security advisories to address vulnerabilities in the following products: GitHub Enterprise Server – versions 3.21.x prior to 3.21.2 GitHub Enterprise Server – versions 3.20.x prior to 3.20.4 GitHub Ent

unknowncccs2026-07-03

WatchGuard security advisory (AV26-649)

Serial number: AV26-649 Date: July 3, 2026 On July 2, 2026, WatchGuard published security advisories to address vulnerabilities in the following products: Fireware OS 2025.1 – version 2026.2 and prior Fireware OS 11.x - version 11.12.4_Update1 and prior Fireware OS 12.0 – version

unknowncccs2026-07-03
← NewerOlder →