● Live advisory feed
Security Advisory Fusion for CSIRTs, SOCs & Defenders
Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-9w78-79q7-r4fp. This link is maintained to preserve external references.
Original Description
n8n versions before 1.123.64 contain a server-side request forgery vulnerability in the dynamic-n…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-pm35-fqvh-cq5g. This link is maintained to preserve external references.
Original Description
n8n contains a sanitizer bypass vulnerability in the legacy expression evaluator's computed-member…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-x5vx-c2c8-m3w9. This link is maintained to preserve external references.
Original Description
n8n versions before 2.30.1 contain a privilege escalation vulnerability in the AI Agents feature w…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-89gh-3pgc-v5h2. This link is maintained to preserve external references.
Original Description
n8n versions before 1.123.64 fail to properly mask custom HTTP header credentials in LLM sub-node…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-777w-rpr6-c52h. This link is maintained to preserve external references.
Original Description
n8n before 2.30.1 and 2.29.8 assigns all Public API key scopes to JWTs issued through the Token E…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-fpg6-x68q-5793. This link is maintained to preserve external references.
Original Description
n8n before 2.29.8 and 2.30.x before 2.30.1 does not enforce shell sandbox restrictions on Linux a…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-35q8-9mj6-wjmf. This link is maintained to preserve external references.
Original Description
n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a privilege escalation vulnerability in E…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-33q9-f52j-gc75. This link is maintained to preserve external references.
Original Description
n8n before 2.28.0 (and before 2.27.4 on the 2.27.x branch) registers the DELETE /${restEndpoint}/…
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-gq66-9cw5-j5jm. This link is maintained to preserve external references.
Original Description
n8n before 1.123.64, 2.29.8, and 2.30.1 fails to enforce the "Allowed HTTP Request Domains" restri…
Oracle has fixed a large number of vulnerabilities in various Oracle middleware products, including Oracle Data Integrator, Oracle Coherence, Oracle Access Manager, Oracle Unified Directory, Oracle WebLogic Server Proxy Plug-in, Oracle Fusion Middleware Service Delivery Platform …
Serial number: AV26-728 Date: July 22, 2026 On July 21, 2026, SolarWinds published security advisories to address critical vulnerabilities in the following product: SolarWinds Serv-U – version 15.5.4 HF1 and prior The Cyber Centre encourages users and administrators to review the…
No organisation can navigate the migration alone; key takeaways from our first PQC migration workshop.
CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-16232 Check Point SmartConsole Improper Authentication Vulnerability CVE-2026-50522 Microsoft SharePoint Deserialization of Untrusted D…
An attacker can exploit multiple vulnerabilities in Aruba AOS-CX to bypass security measures, execute arbitrary code, and manipulate files.
A remote, authenticated attacker can exploit multiple vulnerabilities in Budibase to disclose information, manipulate files, or perform a SQL injection.
A local attacker can exploit a vulnerability in zlib to conduct a Denial of Service attack.
A local attacker can exploit multiple vulnerabilities in Ubuntu Linux and Canonical Snap to disclose information, gain root privileges, and bypass security measures.
An attacker can exploit multiple vulnerabilities in Tanium Endpoint Management to manipulate files and disclose confidential information.
A local attacker can exploit a vulnerability in libvirt to conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in Mozilla Thunderbird, Mozilla Firefox ESR, and Mozilla Firefox to escalate privileges, conduct a Denial of Service attack, disclose information, present false information, and bypass security measures.
A remote, authenticated or anonymous attacker can exploit multiple vulnerabilities in Apache Tomcat to execute arbitrary code, bypass security measures, manipulate data, and cause a denial-of-service condition.
A remote, anonymous attacker can exploit a vulnerability in Apache Tomcat to perform session fixation and thereby disclose confidential information.
A remote, authenticated attacker can exploit a vulnerability in Podman to manipulate files.
A remote, anonymous attacker can exploit a vulnerability in Apache Tomcat to bypass security measures.
A remote, highly privileged attacker can exploit multiple vulnerabilities in SolarWinds Serv-U to execute arbitrary code as root, gain administrative privileges, take over accounts, disclose confidential information, or perform cross-site scripting attacks.
An attacker can exploit multiple vulnerabilities in Aruba EdgeConnect to manipulate files and execute arbitrary code.
A remote, authenticated attacker can exploit multiple vulnerabilities in Kibana to bypass security measures, trigger a denial-of-service condition, or disclose and manipulate data.
An attacker can exploit multiple vulnerabilities in Mozilla Firefox, Mozilla Firefox ESR, and Mozilla Thunderbird to execute arbitrary code, gain elevated privileges, cause memory corruption, bypass security measures, escape the sandbox, disclose confidential information, manipul…
A local attacker can exploit a vulnerability in Ansible to execute arbitrary code.
A remote, anonymous attacker can exploit a vulnerability in Ollama to conduct a denial of service attack.
A remote, anonymous attacker can exploit a vulnerability in QT to conduct a denial of service attack.
A remote, authenticated attacker can exploit multiple vulnerabilities in Elasticsearch to conduct a denial of service attack and disclose confidential information.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle Siebel CRM to compromise confidentiality, integrity, and availability.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle Supply Chain to compromise confidentiality, integrity, and availability.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle Utilities Applications to compromise confidentiality, integrity, and availability.
A remote, authenticated attacker can exploit multiple vulnerabilities in Oracle Solaris to compromise confidentiality, integrity, and availability.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle Virtualization to compromise confidentiality, integrity, and availability.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle Enterprise Manager to compromise confidentiality, integrity, and availability.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle Financial Services Applications to compromise confidentiality, integrity, and availability.
A remote, anonymous, or authenticated attacker can exploit multiple vulnerabilities in Oracle JD Edwards to compromise confidentiality, integrity, and availability.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle MySQL to compromise confidentiality, integrity, and availability.
An attacker can exploit multiple vulnerabilities in Proxmox Virtual Environment to bypass security measures, disclose information, and conduct a cross-site scripting attack.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle PeopleSoft to compromise confidentiality, integrity, and availability.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle Retail Applications to compromise confidentiality, integrity, and availability.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle Commerce to compromise confidentiality, integrity, and availability.
A remote, anonymous attacker can exploit multiple vulnerabilities in Oracle Construction and Engineering to compromise confidentiality, integrity, and availability.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle E-Business Suite to compromise confidentiality, integrity, and availability.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle TimesTen In-Memory Database to compromise confidentiality, integrity, and availability.
A remote, anonymous attacker can exploit a vulnerability in Oracle Spatial Studio to compromise integrity.
A remote, anonymous attacker can exploit a vulnerability in Oracle NoSQL Database to compromise confidentiality, integrity, and availability.