Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
CVE

EU Regulatory Changes

648 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-47767 (CVSS 9.8) — Symfony is a PHP framework for web and console applications and a set of reusable PHP com...
CVE-2026-47984 (CVSS 8.2) — Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result ...
CVE-2026-47988 (CVSS 8.6) — Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result ...
CVE-2026-48320 (CVSS 8.5) — ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attack...
CVE-2026-46633 (CVSS 9.8) — Twig is a template language for PHP. Prior to 3.26.0, Compiler::string() does not escape ...
CVE-2026-46634 (CVSS 9.8) — Twig is a template language for PHP. From 3.9.0 until 3.26.0, template_from_string() comp...
KEV: CVE-2026-46817 — Oracle E-Business Suite (Oracle E-Business Suite Improper Privilege Management Vulnerability)
KEV: CVE-2023-4346 — KNX Association KNX Protocol Connection Authorization Option 1 (KNX Association KNX Protocol Con...
CVE-2026-48561 (CVSS 9.6) — Improper neutralization of special elements used in a command ('command injection') in Mi...
CVE-2026-49798 (CVSS 9.3) — Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges lo...
CVE-2026-54990 (CVSS 9.8) — Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to ex...
CVE-2026-55008 (CVSS 9.6) — Improper neutralization of input during web page generation ('cross-site scripting') in M...
CVE-2026-56164 (CVSS 5.3) — Missing authentication for critical function in Microsoft Office SharePoint allows an una...
CVE-2026-58644 (CVSS 9.8) — Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized a...
CVE-2026-50380 (CVSS 9.6) — Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute cod...
CVE-2026-50518 (CVSS 9.8) — Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to exec...
CVE-2026-56190 (CVSS 9.8) — Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute c...
CVE-2026-48259 (CVSS 9.6) — Adobe Experience Manager is affected by a Server-Side Request Forgery (SSRF) vulnerabilit...
CVE-2026-48356 (CVSS 9.6) — Adobe Commerce is affected by an Unrestricted Upload of File with Dangerous Type vulnerab...
CVE-2026-48358 (CVSS 9.1) — Adobe Commerce is affected by an Improper Encoding or Escaping of Output vulnerability th...