Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
CVE

EU Regulatory Changes

656 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-54763 (CVSS 10.0) — Traefik is an HTTP reverse proxy and load balancer. Prior to v2.11.51, v3.6.22, and v3.7...
CVE-2026-14345 (CVSS 9.8) — The WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell plugin fo...
CVE-2026-58473 (CVSS 9.1) — Cognee before 1.2.0 contains an improper access control vulnerability that allows unauthe...
CVE-2026-59706 (CVSS 9.3) — mem0 contains unauthenticated config API endpoints that expose LLM API keys in plaintext ...
CVE-2026-59705 (CVSS 9.8) — mem0's openmemory/api component contains an unauthenticated access vulnerability that all...
CVE-2026-9725 (CVSS 9.1) — The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulner...
A critical vulnerability, CVE-2026-9725, has been published with a CVSS score of 9.1, affecting the Printcart Web to Print Product Designer for WooCommerce plugin for WordPress, versions up to and ...
Read analysis →
CVE-2026-14544 (CVSS 9.8) — A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, a...
A critical vulnerability, CVE-2026-14544, has been published with a CVSS score of 9.8, indicating a severe security flaw in HPLIP, the HP Linux Imaging and Printing Software. This issue represents ...
Read analysis →
CVE-2026-4321 (CVSS 9.8) — Improper neutralization of special elements used in an SQL command ('SQL injection') vulne...
A critical vulnerability has been published under CVE-2026-4321, with a CVSS score of 9.8, indicating a severe SQL injection flaw in the Raera - Ankara Web Design and Digital Advertising Agency Des...
Read analysis →
CVE-2026-58289 (CVSS 9.0) — Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium...
A critical vulnerability has been published under CVE-2026-58289, affecting Microsoft Edge (Chromium-based) with a CVSS score of 9.0. The flaw is a type confusion vulnerability, meaning the browser...
Read analysis →
CVE-2026-50195 (CVSS 9.9) — containerd is an open-source container runtime. Versions prior to 2.3.2, 2.2.5 and 2.1.9 ...
CVE-2026-53492 (CVSS 9.6) — containerd is an open-source container runtime. In Versions prior to 2.3.2, 2.2.5 and 2.1...
CVE-2026-58455 (CVSS 9.8) — Dockwatch through 0.6.567 contains an unauthenticated OS command injection vulnerability ...
CVE-2026-58466 (CVSS 9.8) — AutoBangumi before 3.2.8 contains a hard-coded default credentials vulnerability that all...
CVE-2026-59099 (CVSS 9.1) — Apereo CAS 7.3.0 before 8.0.0-RC6 contains a cryptographic vulnerability that allows remo...
CVE-2026-41106 (CVSS 9.3) — Url redirection to untrusted site ('open redirect') in M365 Copilot allows an unauthorize...
CVE-2026-45499 (CVSS 9.9) — Server-side request forgery (ssrf) in Azure OpenAI allows an authorized attacker to eleva...
CVE-2026-57100 (CVSS 9.9) — Server-side request forgery (ssrf) in Microsoft Entra Provisioning Service (SyncFabric) a...
CVE-2026-13780 (CVSS 9.6) — Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871....
CVE-2026-13781 (CVSS 9.6) — Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.4...
CVE-2026-13785 (CVSS 9.6) — Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed a remo...