CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Live advisory feed

Security Advisory Fusion for CSIRTs, SOCs & Defenders

Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.

Advisories tracked
20,902
Known exploited
1,782
Sources online
24
Last sync
54M AGO
9,405 records · page 34 / 189 · nvd firehose hidden — show all

GHSA-8rqh-vxpr-x77p: plone.restapi: Stored XSS by spoofing mime type

Impact A stored XSS affecting RichText fields. RichTextValue.output returns the raw, unsanitized stored value whenever the stored mimeType equals the outputMimeType. Because the safe-HTML output type (text/x-html-safe) is the type that signifies "already sanitized", any value wh

mediumCVSS 4.3ghsa2026-07-17

Microsoft Edge security advisory (AV26-714)

Serial number: AV26-714 Date: July 17, 2026 On July 16, 2026, Microsoft published a security update to address vulnerabilities in the following product: Microsoft Edge Stable Channel – versions prior to 150.0.4078.80 The Cyber Centre encourages users and administrators to review

unknowncccs2026-07-17

Google Chrome security advisory (AV26-713)

Serial number: AV26-713 Date: July 17, 2026 On July 16, 2026, Google published a security advisory to address vulnerabilities in the following product: Stable Channel Chrome for Desktop – versions prior to 150.0.7871.128/.129 (Windows/Mac), and 150.0.7871.128 (Linux) The Cyber Ce

unknowncccs2026-07-17

FreePBX security advisory (AV26–711)

Serial number: AV26-711 Date: July 17, 2026 On July 17, 2026, FreePBX published security advisories to address vulnerabilities in the following products. Included were critical updates for the following: FreePBX Security-Reporting ucp (FreePBX 17) – versions prior to 17.0.9 FreeP

criticalcccs2026-07-17

[NEW] [high] nginx-ui: Multiple vulnerabilities

An attacker can exploit multiple vulnerabilities in nginx-ui to execute arbitrary code, including code execution with root privileges; gain elevated rights; perform account takeover; bypass security measures; or disclose and manipulate data.

highcert-bund2026-07-17
← NewerOlder →