Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4330 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-9874 (CVSS 9.6) — Use after free in Dawn in Google Chrome prior to 148.0.7778.216 allowed a remote attacker ...
CVE-2026-8732 (CVSS 9.8) — The WP Maps Pro plugin for WordPress is vulnerable to Privilege Escalation via Administrat...
CVE-2026-3655 (CVSS 9.8) — The OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to au...
CVE-2026-10071 (CVSS 9.8) — DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing un...
CVE-2026-4290 (CVSS 9.1) — The WP Travel Pro plugin for WordPress is vulnerable to arbitrary user deletion via the /w...
Breach: Charter (4,851,517 accounts) — Email addresses, Job titles, Names
On 23 May 2026, a data breach affecting Charter was published on Have I Been Pwned, exposing 4,851,517 accounts. The compromised data includes email addresses, job titles, and names. This incident ...
Read analysis →
Breach: Kemper (269,299 accounts) — Email addresses, Names, Partial credit card data
On 15 April 2026, a data breach affecting Kemper was publicly disclosed via Have I Been Pwned, exposing 269,299 accounts. The compromised data includes email addresses, names, and partial credit ca...
Read analysis →
CVE-2026-4408 (CVSS 9.0) — A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file ...
A critical vulnerability, CVE-2026-4408, has been published with a CVSS score of 9.0, affecting Samba file servers and classic domain controllers that use the "check password script" feature. The f...
Read analysis →
CVE-2026-24444 (CVSS 9.8) — SDMC NE6037 cable modem routers running firmware 7.1.6.0.25 and 7.1.6.1.9_B9 contain a ha...
A critical vulnerability has been published under CVE-2026-24444, affecting SDMC NE6037 cable modem routers running firmware versions 7.1.6.0.25 and 7.1.6.1.9_B9. The issue involves a hardcoded pas...
Read analysis →
CVE-2026-34311 (CVSS 9.8) — Vulnerability in the Oracle Hospitality OPERA 5 Property Services product of Oracle Hospi...
A critical vulnerability has been published under CVE-2026-34311, affecting Oracle Hospitality OPERA 5 Property Services, specifically versions 5.6.19.24, 5.6.22, and 5.6.25.19. The vulnerability c...
Read analysis →
CVE-2026-46775 (CVSS 9.9) — Vulnerability in Oracle REST Data Services (component: Core). Supported versions that ar...
A critical vulnerability has been published under CVE-2026-46775, affecting Oracle REST Data Services in versions 24.2.0 through 26.1.0. The flaw, rated 9.9 on the CVSS scale, is easily exploitable...
Read analysis →
CVE-2026-46817 (CVSS 9.8) — Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File ...
A critical vulnerability has been published under CVE-2026-46817, affecting the Oracle Payments component of Oracle E-Business Suite, specifically versions 12.2.3 through 12.2.15. The flaw, rated 9...
Read analysis →
CVE-2026-46819 (CVSS 9.1) — Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business S...
A critical vulnerability, CVE-2026-46819, has been published with a CVSS score of 9.1, affecting the Oracle Internet Procurement Connector within Oracle E-Business Suite. The flaw resides in the In...
Read analysis →
CVE-2026-46822 (CVSS 9.9) — Vulnerability in the Oracle iAssets product of Oracle E-Business Suite (component: Intern...
A critical vulnerability has been published under CVE-2026-46822, affecting the Oracle iAssets product within Oracle E-Business Suite, specifically versions 12.2.3 through 12.2.15. The vulnerabilit...
Read analysis →
CVE-2026-46824 (CVSS 9.9) — Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (comp...
A critical vulnerability has been published under CVE-2026-46824, affecting the Oracle Universal Work Queue product within Oracle E-Business Suite, specifically the Work Provider Site Level Adminis...
Read analysis →
CVE-2026-46833 (CVSS 9.0) — Vulnerability in the Net Service component of Oracle Database Server. Supported versions...
CVE-2026-46839 (CVSS 9.9) — Vulnerability in Oracle REST Data Services (component: Core). Supported versions that ar...
CVE-2026-46840 (CVSS 10.0) — Vulnerability in Oracle REST Data Services (component: Backend-as-a-Service). Supported...
CVE-2026-8809 (CVSS 9.8) — The Advanced Custom Fields: Extended plugin for WordPress is vulnerable to Privilege Escal...
CELEX:32024R1623R(04)