Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
CVE

EU Regulatory Changes

225 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-41448 (CVSS 9.4) — AdGuard Home, when started with the --glinet flag, contains an authentication bypass vuln...
CVE-2026-44748 (CVSS 9.9) — SAP NetWeaver Application Server ABAP and ABAP Platform allows an authenticated attacker ...
KEV: CVE-2026-42271 — BerriAI LiteLLM (BerriAI LiteLLM Command Injection Vulnerability)
KEV: CVE-2026-50751 — Check Point Security Gateway (Check Point Security Gateway Improper Authentication Vulnerability)
CVE-2023-54352 (CVSS 9.8) — WordPress Seotheme contains a remote code execution vulnerability that allows unauthentic...
CVE-2024-58348 (CVSS 9.8) — WordPress Background Image Cropper version 1.2 contains a remote code execution vulnerabi...
CVE-2024-58349 (CVSS 9.8) — WordPress Theme Travelscape 1.0.3 contains an arbitrary file upload vulnerability that al...
CVE-2026-48040 (CVSS 9.1) — The netty incubator codec.bhttp is a java language binary http parser. The library implem...
CVE-2026-50292 (CVSS 7.4) — In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys ...
CVE-2026-10971 (CVSS 9.6) — Insufficient validation of untrusted input in Printing in Google Chrome on Windows prior ...
CVE-2026-11113 (CVSS 9.6) — Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 149.0.7827....
CVE-2026-11120 (CVSS 9.6) — Insufficient validation of untrusted input in Enterprise Reporting in Google Chrome prior...
CVE-2026-6274 (CVSS 9.8) — Improper Authentication, Missing authentication for critical function, Weak Authentication...
CVE-2025-71317 (CVSS 9.8) — NetMan 204 contains a hard-coded backdoor account with the username and password 'eurek' ...
CVE-2025-71318 (CVSS 9.8) — NetMan 204 fails to enforce authentication on its administrative pages and command endpoi...
CVE-2026-10580 (CVSS 9.8) — The Hippoo Mobile App for WooCommerce plugin for WordPress is vulnerable to Authenticatio...
KEV: CVE-2026-28318 — SolarWinds Serv-U (SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability)
CVE-2026-5241 (CVSS 9.6) — A vulnerability in the LightGlue model loading path of huggingface/transformers version 5....
CVE-2026-49185 (CVSS 9.8) — The FieldX MDM adb messaging topic passes unverified payloads directly into Runtime.exec(...
CVE-2026-49186 (CVSS 9.8) — The local MQTT broker does not enforce topic-level Access Control Lists (ACLs). This allo...