Radar
A personal hobby project. Radar aggregates security advisories from CISA, Zero Day Initiative and CERT-EU and adds short editorial highlights on what I find notable from a European infrastructure perspective — not a threat-intel service, not exhaustive, just what catches my eye.
-
CubeSpace CW0057 Reaction Wheel
The vulnerability requires physical access to upload malicious firmware, and the device can be recovered using the independent bootloader.
Read more → -
CISA KEV — Microsoft SharePoint Server (CVE-2026-45659)
The advisory states that CVE-2026-45659 in Microsoft SharePoint Server is being actively exploited, involving deserialization of untrusted data.
Read more → -
Delta Electronics DVP12SE PLC
The advisory states that all versions of the Delta Electronics DVP12SE PLC are affected by vulnerabilities allowing unauthenticated remote access to critical control functions via Modbus TCP.
Read more → -
XZ Utils vulnerability impacting B&R Products
The vulnerability stems from a race condition in the multithreaded .xz decoder within liblzma, which could lead to memory corruption or service disruption if exploited.
Read more → -
Frangoteam FUXA SCADA/HMI
The advisory states that unauthenticated remote attackers can exploit a path normalization flaw to access sensitive user and role data via the REST API.
Read more → -
StoneFly Storage Concentrator
The advisory identifies hardcoded credentials in a configuration file that can be decoded to plaintext, exposing access to multiple internal services.
Read more → -
Schneider Electric EcoStruxure IT Data Center Expert
The advisory states that affected versions of EcoStruxure IT Data Center Expert are susceptible to XML external entity reference exploitation, which could lead to server-side file disclosure when crafted payloads are submitted via SOAP endpoints.
Read more → -
Mitsubishi Electric MELSOFT Update Manager SW1DND-UDM-M
The advisory states that a heap-based buffer overflow in the 7-Zip component of MELSOFT Update Manager could allow local attackers to execute arbitrary code via a specially crafted archive file.
Read more → -
OFFIS DCMTK Toolkit
The advisory states that DCMTK versions <=3.7.0 are affected by multiple vulnerabilities, including path traversal and memory management issues.
Read more → -
Schneider Electric EasyLogic T150 and Saitel DP RTU
Credentials are stored in firmware or system files without authentication requirements, exposing them to unauthenticated access.
Read more → -
CISA KEV — SimpleHelp (CVE-2026-48558)
CVE-2026-48558 is an authentication bypass vulnerability in SimpleHelp that has been added to CISA's KEV Catalog due to evidence of active exploitation.
Read more → -
Russian Intelligence Services Continue to Target Commercial Messaging Applications
The advisory updates previous reporting on Russian Intelligence Services targeting messaging app accounts, adding new phishing message samples and observed tactics.
Read more → -
CISA KEV — PTC Windchill and FlexPLM (CVE-2026-12569) +1 more
The advisory adds a server-side request forgery (SSRF) flaw in Cisco Unified Communications Manager and an input validation issue in PTC Windchill and FlexPLM to the KEV Catalog due to active exploitation.
Read more → -
EVoke Systems Charging Station Management System
The advisory states that all versions of EVoke CSMS are affected due to unauthenticated WebSocket endpoints that allow attackers to impersonate charging stations.
Read more → -
Horner Automation Cscape
The vulnerability affects Cscape versions prior to 10.2 SP3 and is triggered by parsing malicious CSP files, potentially leading to information disclosure and arbitrary code execution.
Read more → -
Yokogawa FAST/TOOLS and CI Server
The advisory states that affected versions of Yokogawa FAST/TOOLS and CI Server may transmit CI Server settings in cleartext, potentially enabling further attacks.
Read more → -
Schneider Electric PowerLogic P7
The advisory states that affected PowerLogic P7 devices may suffer loss of HMI operability and configuration functionality due to multiple vulnerabilities, including OS command injection and NULL pointer dereference.
Read more → -
pydicom pynetdicom Library
The vulnerability stems from unsanitized use of attacker-supplied data in file path operations within the qrscp application's C-STORE handler.
Read more → -
H.VIEW HV-500S6 IP Camera
The advisory states that command injection and unrestricted file upload vulnerabilities exist in the certificate generation and upload interfaces of the affected IP camera model.
Read more → -
OHIF Viewers DICOM
The advisory states that a server-side request forgery (SSRF) vulnerability in OHIF DICOM Web Viewer Framework versions up to v3.12.0 could result in unauthorized exfiltration of authenticated clinicians' OIDC Bearer tokens.
Read more → -
Delta Electronics DTM Soft
The advisory states that all versions of Delta Electronics DTM Soft are affected by a deserialization vulnerability. Exploitation requires user interaction to open a malicious project file.
Read more → -
Daktronics Controller Firmware
The advisory states that multiple Daktronics controller models are affected by vulnerabilities allowing unauthenticated root-level access, including path traversal and hardcoded credentials.
Read more → -
Using SASE in a Modern TIC 3.0 Solution
The advisory is informational guidance on integrating SASE with TIC 3.0, not a security vulnerability or mitigation notice.
Read more → -
ZDI-26-366: Fuji Electric Tellus pcid64 Driver File APIs Exposed Dangerous Method Arbitrary File Deletion Vulnerability
The vulnerability stems from exposed driver file APIs in Fuji Electric Tellus pcid64 that can be abused to delete arbitrary files.
Read more → -
ZDI-26-367: Fuji Electric Tellus pcid64 Driver Registry APIs Exposed Dangerous Method Local Privilege Escalation Vulnerability
The Fuji Electric Tellus pcid64 driver exposes registry APIs that can be exploited by local attackers for privilege escalation.
Read more → -
ZDI-26-368: Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability
The vulnerability involves a SQL injection in Quest NetVault Backup's NVBUDashboard that can lead to remote code execution, with authentication bypass possible.
Read more → -
ZDI-26-369: Quest NetVault Backup addclient3 Cross-Site Scripting Authentication Bypass Vulnerability
The vulnerability enables authentication bypass via cross-site scripting, requiring user interaction such as visiting a malicious page.
Read more → -
ZDI-26-370: Quest NetVault Backup NVBURASDevice SQL Injection Remote Code Execution Vulnerability
The vulnerability involves an SQL injection in Quest NetVault Backup's NVBURASDevice that can lead to remote code execution, with authentication bypass possible.
Read more → -
ZDI-26-371: Quest NetVault Backup NVBUDeviceDrive SQL Injection Remote Code Execution Vulnerability
Authentication is required to exploit the vulnerability, but the advisory notes the authentication mechanism can be bypassed.
Read more → -
ZDI-26-372: Quest NetVault Backup NVBURemovableMedia SQL Injection Remote Code Execution Vulnerability
Authentication is required to exploit the vulnerability, but the advisory notes the authentication mechanism can be bypassed.
Read more → -
ZDI-26-373: Quest NetVault Backup NVBULibraryPort SQL Injection Remote Code Execution Vulnerability
Authentication is required to exploit the vulnerability, but the advisory notes the authentication mechanism can be bypassed.
Read more → -
ZDI-26-374: Quest NetVault Backup NVBULibrarySlot SQL Injection Remote Code Execution Vulnerability
Authentication is required to exploit the vulnerability, but the advisory notes the authentication mechanism can be bypassed.
Read more → -
ZDI-26-375: Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability
Authentication is required to exploit the vulnerability, but the advisory notes the authentication mechanism can be bypassed.
Read more → -
ZDI-26-376: Quest NetVault Backup NVBULogDaemon Command Injection Remote Code Execution Vulnerability
Authentication is required to exploit the vulnerability, but the advisory notes the authentication mechanism can be bypassed.
Read more → -
ZDI-26-377: Quest NetVault Backup viewclient Cross-Site Scripting Authentication Bypass Vulnerability
The vulnerability enables authentication bypass via cross-site scripting in Quest NetVault Backup's viewclient component, requiring user interaction.
Read more → -
ZDI-26-378: ATEN Unizon updateLicense Directory Traversal Arbitrary File Deletion Vulnerability
Authentication is required to exploit this directory traversal vulnerability leading to arbitrary file deletion in ATEN Unizon.
Read more → -
ZDI-26-379: ATEN Unizon uploadSSL Directory Traversal Arbitrary File Deletion Vulnerability
Authentication is required to exploit this directory traversal vulnerability in ATEN Unizon's uploadSSL functionality.
Read more → -
ZDI-26-380: ATEN Unizon writeFileToHttpServletResponse Directory Traversal Information Disclosure Vulnerability
The vulnerability enables unauthenticated remote attackers to disclose sensitive information via a directory traversal in the writeFileToHttpServletResponse function.
Read more → -
ZDI-26-381: ATEN Unizon restoreDB Directory Traversal Remote Code Execution Vulnerability
The vulnerability involves a directory traversal in the restoreDB functionality of ATEN Unizon, requiring authentication for exploitation.
Read more → -
ZDI-26-382: ATEN Unizon ImportDeviceList Directory Traversal Remote Code Execution Vulnerability
The vulnerability requires authentication and involves a directory traversal in the ImportDeviceList function of ATEN Unizon, potentially leading to remote code execution.
Read more → -
ZDI-26-383: ATEN Unizon doCryptoHugeFileToFile Improper Verification of Cryptographic Signature Remote Code Execution Vulnerability
The vulnerability requires authentication to exploit and affects the doCryptoHugeFileToFile function in ATEN Unizon.
Read more → -
ZDI-26-384: MosaicML Composer Deserialization of Untrusted Data Remote Code Execution Vulnerability
The vulnerability requires user interaction, such as visiting a malicious page or opening a malicious file, to trigger remote code execution.
Read more → -
ZDI-26-385: Unraid Web Server FileUpload Command Injection Remote Code Execution Vulnerability
The vulnerability requires authentication but allows remote code execution via a file upload command injection in the Unraid Web Server.
Read more → -
ZDI-26-386: Unraid Web Server ToggleState Command Injection Remote Code Execution Vulnerability
Authentication is required to exploit the command injection vulnerability in the Unraid Web Server's ToggleState function.
Read more → -
ZDI-26-387: Oracle PeopleSoft HttpListeningConnector Server-Side Request Forgery Vulnerability
The vulnerability in Oracle PeopleSoft's HttpListeningConnector permits unauthenticated remote attackers to trigger arbitrary server-side requests.
Read more → -
ZDI-26-388: Oracle PeopleSoft HubMBeanPersistance Deserialization of Untrusted Data Remote Code Execution Vulnerability
The vulnerability involves deserialization of untrusted data in Oracle PeopleSoft's HubMBeanPersistance component, with authentication bypass possible despite requiring login.
Read more → -
ZDI-26-389: Oracle PeopleSoft ExecuteProcessActivityCommand External Control of File Path Remote Code Execution Vulnerability
The advisory notes authentication is required but can be bypassed, which may expand the pool of potential attackers despite the need for initial credentials.
Read more → -
ZDI-26-390: X.Org Server Font Alias Stack-based Buffer Overflow Privilege Escalation Vulnerability
The vulnerability is a stack-based buffer overflow in X.Org Server's font alias handling, which can be triggered locally to escalate privileges.
Read more → -
ZDI-26-391: X.Org Server miSyncDestroyFence Use-After-Free Privilege Escalation Vulnerability
A use-after-free in X.Org Server's miSyncDestroyFence function may allow local privilege escalation.
Read more → -
ZDI-26-392: X.Org Server Xkb Key Types Stack-based Buffer Overflow Privilege Escalation Vulnerability
A stack-based buffer overflow in X.Org Server's Xkb key types can allow local privilege escalation.
Read more → -
ZDI-26-393: X.Org Server SetMap Request Stack-based Buffer Overflow Privilege Escalation Vulnerability
A stack-based buffer overflow in X.Org Server's SetMap request can enable local privilege escalation.
Read more → -
ZDI-26-394: X.Org Server FreeCounter Use-After-Free Privilege Escalation Vulnerability
The vulnerability is a use-after-free in X.Org Server's FreeCounter function, potentially enabling local privilege escalation.
Read more → -
ZDI-26-395: X.Org Server SyncChangeCounter Use-After-Free Privilege Escalation Vulnerability
A use-after-free in X.Org Server's SyncChangeCounter function may allow local privilege escalation.
Read more → -
ZDI-26-396: X.Org Server ChangeDrawableAttributes Out-Of-Bounds Read Information Disclosure Vulnerability
The vulnerability is a local out-of-bounds read in X.Org Server's ChangeDrawableAttributes function, potentially disclosing sensitive information.
Read more → -
ZDI-26-397: X.Org Server CreateSaverWindow Use-After-Free Information Disclosure Vulnerability
The vulnerability involves a use-after-free in the CreateSaverWindow function, potentially disclosing sensitive information to local attackers.
Read more → -
ZDI-26-361: Adobe Acrobat Reader DC Field signatureInfo Use-After-Free Remote Code Execution Vulnerability
A use-after-free vulnerability exists in Adobe Acrobat Reader DC related to the handling of the 'signatureInfo' field, which could lead to remote code execution.
Read more → -
ZDI-26-362: Oracle VirtualBox VMSVGA Stack-based Buffer Overflow Local Privilege Escalation Vulnerability
The vulnerability is a stack-based buffer overflow in Oracle VirtualBox's VMSVGA component, requiring high-privileged code execution in the guest system to trigger.
Read more → -
ZDI-26-363: Docker MCP Plugin OCI Image Label Parsing Argument Injection Remote Code Execution Vulnerability
The vulnerability requires user interaction through referencing a malicious Docker image via a docker URI scheme.
Read more → -
ZDI-26-364: FlowiseAI Flowise CSV Agent Prompt Injection Remote Code Execution Vulnerability
The vulnerability in FlowiseAI Flowise CSV Agent permits remote code execution without authentication.
Read more → -
ZDI-26-365: FlowiseAI Flowise CSV Agent customReadCSV Code Injection Remote Code Execution Vulnerability
The advisory notes that authentication is required but can be bypassed, which may expand the pool of potential attackers despite the need for initial access.
Read more → -
CISA KEV — Lantronix EDS5000 (CVE-2025-67038) +3 more
The advisory adds four actively exploited vulnerabilities, three of which affect Ubiquiti UniFi OS, indicating a cluster of issues in the same product.
Read more → -
Siemens SINEC INS
The advisory states that SINEC INS before version 1.0 SP2 Update 6 is affected by an OS command injection vulnerability via the /api/sftp/uploadFiles endpoint, where crafted directory names can lead to arbitrary command execution.
Read more → -
Siemens Products using OpenSSL
The vulnerability affects multiple Siemens industrial communication products using OpenSSL, with a focus on router and server devices used in network infrastructure.
Read more → -
Hubbell Aclara Metrum Cellular Web Interface
The advisory states that critical functions in the Aclara Metrum Cellular Web Interface lack authentication, allowing unauthenticated attackers to alter settings and restart the device.
Read more → -
ABB Freelance Security Lock
The advisory notes that undocumented or special key combinations on modern keyboards could allow bypass of Freelance Operations, potentially granting access to underlying OS functions despite Security Lock being enabled.
Read more → -
Impact of Linux Kernel vulnerabilities on B&R products
The advisory identifies local privilege escalation risks in B&R products using affected Linux kernel versions, with public proof-of-concept exploits available.
Read more → -
Siemens SIPROTEC 5 Using DIGSI5 Protocol
The advisory states that authenticated users may exploit the DIGSI 5 protocol to upload arbitrary files, potentially leading to permanent denial of service. A new allow-list feature in updated versions restricts file uploads to mitigate the vulnerability.
Read more → -
Siemens WinCC Certificate Manager
The advisory states that WinCC Certificate Manager stores key material with insufficient protection, potentially allowing extraction of sensitive information.
Read more → -
CISA Urges Hardening Fortinet Devices After Reports of Credential Exposure
The advisory states that approximately 74,000 Fortinet devices may have had credentials exposed, with active exploitation reported on internet-accessible systems.
Read more → -
CISA KEV — Splunk Enterprise (CVE-2026-20253)
The added vulnerability allows total control of affected systems post-exploitation and is already being actively exploited.
Read more → -
Schneider Electric Easergy, EcoStruxture, PowerLogic, and Saitel Products
The advisory mentions PowerChute Serial Shutdown in the summary but lists vulnerabilities affecting Easergy, EcoStruxture, PowerLogic, and Saitel products, with no explicit link between them in the provided text.
Read more → -
Mitsubishi Electric Co.'s MELSEC iQ-F Series FX5-ENET/IP Ethernet Module
The advisory states that all versions of the FX5-ENET/IP module are affected by a DoS vulnerability due to excessive packet processing. No fix is planned for this product.
Read more → -
Apollo Pharmacy Blood Glucose Monitoring System APG-01 BT
The device transmits sensitive health data in cleartext over Bluetooth, exposing glucose measurements to interception by nearby attackers.
Read more → -
Rockwell Automation FactoryTalk Historian Site Edition
The advisory identifies a race condition that could allow attackers to obtain a valid authentication token by repeatedly sending requests to the login endpoint.
Read more → -
Schneider Electric EasyLogic T150 and Saitel DP
The same path traversal vulnerability (CVE-2026-6865) affects two related Schneider Electric remote terminal units, potentially allowing unauthorized access to sensitive files.
Read more → -
AzeoTech DAQFactory
The advisory states that loading untrusted .ctl files in AzeoTech DAQFactory <=21.1 may lead to arbitrary code execution due to a type confusion vulnerability.
Read more → -
Mitsubishi Electric MELSEC iQ-F Series
The affected module may enter a denial-of-service state due to improper handling of rapid TCP connections, leading to memory access issues.
Read more → -
AVer PTC cameras
The advisory states that all versions of the affected AVer PTC camera models are vulnerable to arbitrary code execution via a crafted web request.
Read more → -
CISA KEV — Widget Factory Joomla Content Editor (CVE-2026-48907)
The vulnerability allows improper access control in the Widget Factory Joomla Content Editor, potentially enabling full system control post-exploitation.
Read more → -
Rockwell Automation CompactLogix
The advisory states that exposed Connection IDs on the web interface can be abused to trigger a denial-of-service condition via improper validation of CIP protocol fields.
Read more → -
Rockwell Automation FactoryTalk Analytics PavilionX
The advisory states that affected versions of FactoryTalk Analytics PavilionX lack proper authorization controls on API endpoints, potentially allowing unauthenticated attackers to perform administrative actions.
Read more → -
Rockwell Automation FLEX I/O EtherNet/IP Adapters
The advisory states that exploitation could lead to unauthorized access and loss of availability due to memory handling and authentication flaws in specific FLEX I/O adapter versions.
Read more → -
Rockwell Automation RSLinx
The advisory states that exploitation can cause a denial of service where the application becomes unresponsive and does not recover automatically.
Read more → -
Rockwell Automation Logix 5370 & 5570 Controllers Vulnerable To Denial of Service Via CIP
Devices with less memory are more likely to experience a major nonrecoverable fault when a crafted CIP message is sent.
Read more → -
CISA KEV — Cisco Catalyst SD-WAN Manager Directory or (CVE-2026-20262) +1 more
Two vulnerabilities involving path traversal in network and web management tools are now in the KEV catalog due to observed exploitation.
Read more → -
CISA KEV — Oracle PeopleSoft Enterprise PeopleTools (CVE-2026-35273)
The added vulnerability affects Oracle PeopleSoft Enterprise PeopleTools and involves missing authentication for a critical function.
Read more → -
CISA KEV — Ivanti Sentry (CVE-2026-10520)
The added vulnerability allows OS command injection, which the advisory explicitly states grants total control of the affected asset post-exploitation.
Read more → -
Brickcom Cameras
The advisory states that live video snapshots can be accessed without authentication via the /ONVIF endpoint on affected Brickcom camera models.
Read more → -
Naxclow IoT Platform
The advisory states that all versions of multiple Naxclow IoT devices are affected by an authorization bypass vulnerability allowing silent device reassignment via replayed onboarding sequences.
Read more → -
Yarbo Android/iOS Mobile Application and Cloud Infrastructure
Hard-coded credentials in the Yarbo mobile app grant access to all robot telemetry and command topics via the cloud MQTT infrastructure.
Read more → -
ZDI-26-356: Apache HTTP Server mod_proxy_ajp Out-Of-Bounds Read Information Disclosure Vulnerability
The vulnerability requires prior compromise of an AJP backend to enable information disclosure via mod_proxy_ajp.
Read more → -
ZDI-26-357: Allegra exportReport Directory Traversal Information Disclosure Vulnerability
The vulnerability requires authentication and could allow remote information disclosure via a directory traversal in the exportReport functionality.
Read more → -
ZDI-26-358: Allegra downloadAttachment Cross-Site Scripting Authentication Bypass Vulnerability
The vulnerability requires user interaction, such as visiting a malicious page or opening a malicious file, to trigger cross-site scripting.
Read more → -
ZDI-26-359: Samsung rlottie Numeric Truncation Remote Code Execution Vulnerability
The vulnerability involves a numeric truncation issue in Samsung rlottie that can lead to remote code execution when the library processes input.
Read more → -
ZDI-26-360: MATE Desktop Atril Document Viewer EPUB File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
The vulnerability is a heap-based buffer overflow in Atril Document Viewer triggered by parsing a malicious EPUB file.
Read more → -
2026-008: Critical vulnerabilities in Ivanti Sentry
The advisory states that unauthenticated remote code execution is possible on vulnerable Ivanti Sentry devices.
Read more → -
2026-007: Critical Vulnerability in Windows Netlogon
The advisory states that the vulnerability is under active exploitation by attackers.
Read more → -
ZDI-26-355: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
The vulnerability is a use-after-free in Adobe Acrobat Reader DC related to annotation handling, requiring user interaction to trigger.
Read more → -
ZDI-26-328: ASUS MyASUS Origin Validation Error Local Privilege Escalation Vulnerability
The vulnerability stems from an origin validation error in ASUS MyASUS that may allow local privilege escalation.
Read more → -
CISA KEV — Arista Extensible Operating System Incomplete Comparison (CVE-2026-7473) +2 more
The addition of a network infrastructure vulnerability in Arista's Extensible Operating System may indicate interest in targeting backbone devices.
Read more →
Page 4 of 9 · 806 advisories