Radar
A personal hobby project. Radar aggregates security advisories from CISA, Zero Day Initiative and CERT-EU and adds short editorial highlights on what I find notable from a European infrastructure perspective — not a threat-intel service, not exhaustive, just what catches my eye.
-
ZDI-26-714: Samsung rlottie Stack-based Buffer Overflow Remote Code Execution Vulnerability
A stack-based buffer overflow in Samsung rlottie enables remote code execution.
Read more → -
ZDI-26-709: Cisco Secure Firewall Management Center CommandSinkRmi Deserialization of Untrusted Data Remote Code Execution Vulnerability
Unauthenticated remote code execution via CommandSinkRmi deserialization in Cisco Secure Firewall Management Center.
Read more → -
ZDI-26-710: NoMachine mDNS Heap-based Buffer Overflow Remote Code Execution Vulnerability
Unauthenticated remote code execution via a heap-based buffer overflow in NoMachine's mDNS handling.
Read more → -
ZDI-26-711: NoMachine Redis Improper Authentication Local Privilege Escalation Vulnerability
The vulnerability permits local privilege escalation on NoMachine installations via improper authentication in the Redis component.
Read more → -
ZDI-26-712: NoMachine nxhtd Server-Side Request Forgery Information Disclosure Vulnerability
Unauthenticated attackers can exploit an SSRF flaw in NoMachine’s nxhtd service to issue arbitrary server-side requests.
Read more → -
ZDI-26-713: GIMP APNG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
GIMP's APNG parser contains a stack-based buffer overflow.
Read more → -
ZDI-26-703: (0Day) Airbyte SharePoint Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability
The Airbyte SharePoint connector’s _get_shared_drive_object endpoint can be abused for SSRF.
Read more → -
ZDI-26-704: (0Day) Airbyte OneDrive Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability
Airbyte's OneDrive connector can be abused for SSRF when authenticated.
Read more → -
ZDI-26-705: (0Day) BusyBox libarchive Symlink Directory Traversal Arbitrary File Creation Vulnerability
BusyBox's libarchive component can be abused via a symlink directory traversal to create arbitrary files.
Read more → -
ZDI-26-706: (0Day) CrewAI crewAI Framework Agent Loading Unsafe Reflection Remote Code Execution Vulnerability
Remote attackers can execute code by loading a malicious agent configuration.
Read more → -
ZDI-26-707: (0Day) MindsDB OpenBBtable Code Injection Remote Code Execution Vulnerability
Remote code execution is possible on MindsDB OpenBBtable installations, but exploitation requires authentication.
Read more → -
ZDI-26-708: (0Day) Microsoft Windows HTTP Proxy Privilege Escalation Vulnerability
Local privilege escalation via the Windows HTTP Proxy component.
Read more → -
ZDI-26-680: Linux Kernel Crypto Subsystem Use-After-Free Local Privilege Escalation Vulnerability
A use-after-free in the Linux kernel crypto subsystem enables local privilege escalation.
Read more → -
ZDI-26-681: Linux Kernel FUSE Subsystem Race Condition Local Privilege Escalation Vulnerability
A race condition in the Linux kernel FUSE subsystem permits local privilege escalation.
Read more → -
ZDI-26-682: Linux Kernel IPv6 Neighbour Discovery Uninitialized Memory Information Disclosure Vulnerability
Local exploitation requires high-privileged code execution to disclose information.
Read more → -
ZDI-26-683: Linux Kernel IPv6 VTI Subsystem Use-After-Free Local Privilege Escalation Vulnerability
The advisory reports a use-after-free flaw in the Linux kernel IPv6 VTI subsystem (CVE-2026-72463) with a CVSS score of 7.5.
Read more → -
ZDI-26-684: Linux Kernel KSMBD Query Directory Request Race Condition Remote Code Execution Vulnerability
Remote code execution is possible without authentication on Linux kernels with KSMBD enabled.
Read more → -
ZDI-26-685: Linux Kernel NFC NCI UART Driver Race Condition Local Privilege Escalation Vulnerability
A race condition in the Linux kernel NFC NCI UART driver can be used for local privilege escalation.
Read more → -
ZDI-26-686: Linux Kernel nftables Race Condition Local Privilege Escalation Vulnerability
A race condition in the nftables subsystem of the Linux kernel enables local privilege escalation.
Read more → -
ZDI-26-687: Linux Kernel Open vSwitch Flow Delete Use-After-Free Information Disclosure Vulnerability
A use-after-free in the Linux kernel's Open vSwitch flow-delete path can disclose kernel memory to a local low-privileged attacker.
Read more → -
ZDI-26-688: Linux Kernel OpenvSwitch Race Condition Local Privilege Escalation Vulnerability
The vulnerability is a race condition in the Linux kernel's OpenvSwitch component that enables local privilege escalation.
Read more → -
ZDI-26-689: Linux Kernel SCTP Subsystem Race Condition Information Disclosure Vulnerability
A race condition in the Linux kernel SCTP subsystem can disclose information to a local low-privileged attacker.
Read more → -
ZDI-26-690: Linux Kernel MCTP Routing Uninitialized Memory Information Disclosure Vulnerability
Local attackers can read sensitive data if they have high-privileged code execution on the target Linux kernel.
Read more → -
ZDI-26-691: Linux Kernel Netlink-based Wireless Configuration Integer Overflow Local Privilege Escalation Vulnerability
Integer overflow in the Linux kernel netlink-based wireless configuration can lead to local privilege escalation. Exploitation requires the attacker to have already executed code with high privileges.
Read more → -
ZDI-26-692: Linux Kernel eMPIA USB Device Driver Race Condition Code Execution Vulnerability
The vulnerability is a race condition in the eMPIA USB device driver that allows physically present attackers to execute arbitrary code.
Read more → -
ZDI-26-693: Linux Kernel ksmbd Share Configuration Race Condition Remote Code Execution Vulnerability
Only Linux kernels with ksmbd enabled are vulnerable, and exploitation requires authentication.
Read more → -
ZDI-26-694: Linux Kernel Net Scheduler Clsact Qdisc Use-After-Free Local Privilege Escalation Vulnerability
The advisory reports a use-after-free in the Linux kernel’s net scheduler clsact qdisc. It enables local privilege escalation.
Read more → -
ZDI-26-695: Linux Kernel NFSv4 Server Race Condition Remote Code Execution Vulnerability
The vulnerability allows remote attackers to execute arbitrary code on Linux Kernel installations with nfsd enabled, but authentication is required.
Read more → -
ZDI-26-696: Linux Kernel NTFS3 Journal Heap-based Buffer Overflow Code Execution Vulnerability
Local low-privilege code can trigger a heap-based overflow in the NTFS3 journal handling.
Read more → -
ZDI-26-697: Linux Kernel NTFS3 Out-Of-Bounds Read Information Disclosure Vulnerability
The NTFS3 driver in the Linux kernel has an out-of-bounds read that can disclose kernel memory.
Read more → -
ZDI-26-698: Linux Kernel NTFS3 Out-Of-Bounds Read Information Disclosure Vulnerability
The vulnerability is an out-of-bounds read in the Linux kernel's NTFS3 driver.
Read more → -
ZDI-26-699: Linux Kernel NTFS3 Out-of-Bounds Read Information Disclosure Vulnerability
The NTFS3 driver in the Linux kernel contains an out-of-bounds read that can disclose kernel memory.
Read more → -
ZDI-26-700: Linux Kernel QFQ Plus Scheduler Use-After-Free Local Privilege Escalation Vulnerability
The advisory reports a use-after-free bug in the Linux kernel’s QFQ Plus scheduler that enables local privilege escalation.
Read more → -
ZDI-26-701: Linux Kernel TLS Protocol Out-Of-Bounds Read Information Disclosure Vulnerability
The vulnerability permits local attackers to read sensitive data from the Linux kernel after obtaining high-privileged execution. It is identified as CVE-2026-64046.
Read more → -
ZDI-26-702: Linux Kernel usbnet Driver Race Condition Privilege Escalation Vulnerability
The vulnerability allows physically present attackers to elevate privileges on affected Linux Kernel installations. Authentication is not required to exploit.
Read more → -
ZDI-26-648: (Pwn2Own) OpenAI Codex External Control of System or Configuration Setting Remote Code Execution Vulnerability
Remote code execution in OpenAI Codex requires the victim to visit a malicious page or open a malicious file.
Read more → -
ZDI-26-649: (Pwn2Own) OpenAI Codex Improper Neutralization of Control Sequences Remote Code Execution Vulnerability
Exploitation requires the victim to open a crafted folder, leading to remote code execution.
Read more → -
ZDI-26-650: (Pwn2Own) OpenAI Codex External Control of Configuration Setting Remote Code Execution Vulnerability
Exploitation requires the victim to visit a malicious page or open a malicious file.
Read more → -
ZDI-26-651: (Pwn2Own) OpenAI Codex External Control of System or Configuration Setting Remote Code Execution Vulnerability
Remote code execution is possible when a user opens a crafted folder.
Read more → -
ZDI-26-652: TrendAI Apex One Security Agent Cache Mechanism Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability
The advisory notes a TOCTOU flaw in the cache mechanism of TrendAI Apex One Security Agent that enables local privilege escalation.
Read more → -
ZDI-26-653: TrendAI Apex One Security Agent Cache Mechanism Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability
A TOCTOU flaw in the Apex One Security Agent cache mechanism permits local privilege escalation.
Read more → -
ZDI-26-654: TrendAI Apex One Incomplete Cleanup Local Privilege Escalation Vulnerability
The vulnerability enables local privilege escalation after an attacker can run low-privileged code on the system.
Read more → -
ZDI-26-655: PAPPL Printer IPP Processing Stack-based Buffer Overflow Local Privilege Escalation Vulnerability
PAPPL's IPP processing stack contains a stack-based buffer overflow that can be used for local privilege escalation.
Read more → -
ZDI-26-656: PAPPL Job Processing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Unauthenticated remote code execution via a heap-based buffer overflow in PAPPL job processing.
Read more → -
ZDI-26-657: ASUS Control Center Express Agent Missing Authentication Remote Code Execution Vulnerability
ASUS Control Center Express Agent can be remotely exploited without authentication.
Read more → -
ZDI-26-658: Adobe Acrobat Pro DC JPEG Parsing Integer Overflow Remote Code Execution Vulnerability
An integer overflow in JPEG parsing can be triggered by a malicious PDF or web page, leading to remote code execution.
Read more → -
ZDI-26-659: Adobe Acrobat Reader DC JPEG2000 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Adobe Acrobat Reader DC can disclose data via an out-of-bounds read when parsing JPEG2000 files.
Read more → -
ZDI-26-660: Adobe Acrobat Reader DC Font Parsing Use-After-Free Information Disclosure Vulnerability
Adobe Acrobat Reader DC can disclose sensitive information via a font-parsing use-after-free when a user opens a crafted PDF or visits a malicious page.
Read more → -
ZDI-26-661: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
The use-after-free occurs in Acrobat Reader DC’s annotation handling and requires a user to open a malicious file or visit a crafted page.
Read more → -
ZDI-26-662: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a crafted PDF or load a malicious webpage.
Read more → -
ZDI-26-663: Adobe Acrobat Pro DC Annotation Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a crafted PDF file or visit a malicious webpage.
Read more → -
ZDI-26-664: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a crafted PDF file or load a malicious webpage.
Read more → -
ZDI-26-665: Adobe Acrobat Reader DC Annots Report Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious PDF file or visit a malicious web page.
Read more → -
ZDI-26-666: Adobe Acrobat Reader DC JPEG2000 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Adobe Acrobat Reader DC may disclose memory contents when parsing crafted JPEG2000 files.
Read more → -
ZDI-26-667: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious PDF or visit a malicious web page.
Read more → -
ZDI-26-668: Adobe Acrobat Reader DC Annotation Use-After-Free Information Disclosure Vulnerability
Exploitation requires the victim to open a malicious file or visit a malicious web page.
Read more → -
ZDI-26-669: Adobe Acrobat Reader DC JBIG2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
The flaw is an out-of-bounds read in the JBIG2 parser of Adobe Acrobat Reader DC.
Read more → -
ZDI-26-670: Adobe Acrobat Pro DC Doc Object Out-Of-Bounds Read Information Disclosure Vulnerability
Adobe Acrobat Pro DC can disclose sensitive information via an out-of-bounds read.
Read more → -
ZDI-26-671: Adobe Acrobat Reader DC Dialog Object Type Confusion Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious PDF or visit a crafted web page.
Read more → -
ZDI-26-672: Adobe Acrobat Reader DC PDF File Parsing Integer Underflow Information Disclosure Vulnerability
An integer underflow in PDF parsing can disclose sensitive information.
Read more → -
ZDI-26-673: Adobe Acrobat Pro DC Doc Object Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious file or visit a malicious web page.
Read more → -
ZDI-26-674: Adobe Acrobat Reader DC Annotation Out-Of-Bounds Write Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious PDF file or load a malicious web page.
Read more → -
ZDI-26-675: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a crafted PDF or visit a malicious webpage.
Read more → -
ZDI-26-676: Adobe Acrobat Reader DC DigSig Use-After-Free Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious PDF file or load a malicious webpage.
Read more → -
ZDI-26-677: Adobe Photoshop DCM JPEG-LS Image Parsing Integer Overflow Remote Code Execution Vulnerability
Exploitation requires a user to open a malicious JPEG-LS file or visit a crafted page.
Read more → -
ZDI-26-678: Adobe Photoshop DCM File Parsing Integer Overflow Remote Code Execution Vulnerability
An integer overflow in Photoshop’s DCM file parser can enable remote code execution.
Read more → -
ZDI-26-679: Adobe Photoshop DCM JPEG Image Parsing Integer Overflow Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious JPEG file or visit a crafted page.
Read more → -
ZDI-26-636: Oracle Outside In Technology PostScript File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious file or visit a crafted web page.
Read more → -
ZDI-26-637: Oracle Outside In Technology GEM File Parsing Integer Overflow Remote Code Execution Vulnerability
Integer overflow in GEM file parsing can lead to remote code execution when a malicious file is opened.
Read more → -
ZDI-26-638: Oracle Outside In Technology WPS File Parsing Memory Corruption Remote Code Execution Vulnerability
Remote code execution is possible but requires the victim to visit a malicious page or open a malicious file.
Read more → -
ZDI-26-639: Oracle VirtualBox VMSVGA Heap-based Buffer Overflow Local Privilege Escalation Vulnerability
The issue is a heap-based buffer overflow in VirtualBox’s VMSVGA driver.
Read more → -
ZDI-26-640: Oracle VirtualBox VirtioSCSI Uninitialized Memory Information Disclosure Vulnerability
Uninitialized memory in VirtualBox's VirtioSCSI driver can disclose guest information to a local attacker.
Read more → -
ZDI-26-641: Oracle VirtualBox VirtioSCSI Out-Of-Bounds Read Information Disclosure Vulnerability
The vulnerability is an out-of-bounds read in Oracle VirtualBox's VirtioSCSI driver that can disclose information.
Read more → -
ZDI-26-642: Oracle VirtualBox IDisplay Out-Of-Bounds Read Local Privilege Escalation Vulnerability
The IDisplay component contains an out-of-bounds read that can be used for local privilege escalation.
Read more → -
ZDI-26-643: Oracle VirtualBox VMSVGA Out-Of-Bounds Read Information Disclosure Vulnerability
Oracle VirtualBox’s VMSVGA driver contains an out-of-bounds read that can disclose information.
Read more → -
ZDI-26-644: Oracle VirtualBox VMSVGA Race Condition Local Privilege Escalation Vulnerability
The issue is a race condition in VirtualBox's VMSVGA driver that enables local privilege escalation.
Read more → -
ZDI-26-645: Fortinet FortiSandbox write_remote_backup_to_crontab cronValue Command Injection Remote Code Execution Vulnerability
Authentication is required to exploit a command injection in FortiSandbox’s write_remote_backup_to_crontab functionality.
Read more → -
ZDI-26-646: Progress Software Kemp LoadMaster escape_quotes Uninitialized Memory Remote Code Execution Vulnerability
Authentication is required to exploit the uninitialized memory remote code execution flaw in Kemp LoadMaster.
Read more → -
ZDI-26-647: VMware Workstation VMXNET3 TSO Segmentation Integer Overflow Local Privilege Escalation Vulnerability
VMware Workstation's VMXNET3 driver has a TSO segmentation integer overflow that can be used for local privilege escalation.
Read more → -
ZDI-26-629: Microsoft Azure Entra ID OAuth Device Code Grant Information Disclosure Vulnerability
The vulnerability allows remote attackers to disclose sensitive information on affected Microsoft Azure installations without authentication.
Read more → -
ZDI-26-630: NI LabVIEW VI File Parsing Integer Overflow Information Disclosure Vulnerability
Remote attackers can trigger an integer overflow in LabVIEW VI file parsing to disclose sensitive information.
Read more → -
ZDI-26-631: NI LabVIEW VI File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
An out-of-bounds read in LabVIEW VI file parsing can disclose information.
Read more → -
ZDI-26-632: WatchGuard FireWare OS epm connect Stack-based Buffer Overflow Remote Code Execution Vulnerability
Unauthenticated remote code execution via a stack-based buffer overflow in the epm connect component of WatchGuard FireWare OS.
Read more → -
ZDI-26-633: GIMP PSP File Parsing Integer Overflow Remote Code Execution Vulnerability
An integer overflow in GIMP’s PSP file parser can lead to remote code execution.
Read more → -
ZDI-26-634: Flowise CSV Agent Prompt Injection Remote Code Execution Vulnerability
Unauthenticated remote code execution via CSV Agent prompt injection in Flowise.
Read more → -
ZDI-26-635: Oracle Outside In Technology PDF File Parsing Integer Overflow Remote Code Execution Vulnerability
Exploitation requires a user to open a crafted PDF file or visit a malicious page.
Read more → -
ZDI-26-623: Linux Kernel IPv6 Multicast Routing Use-After-Free Local Privilege Escalation Vulnerability
The issue is a use-after-free in the Linux kernel’s IPv6 multicast routing code.
Read more → -
ZDI-26-624: Backblaze Personal Computer Backup bzbackup Link Following Denial-of-Service Vulnerability
A local attacker can trigger a denial-of-service condition in Backblaze Personal Computer Backup.
Read more → -
ZDI-26-625: Backblaze Personal Computer Backup bzserv Link Following Denial-of-Service Vulnerability
A local attacker with low-privileged code execution can cause a denial-of-service in Backblaze Personal Computer Backup's bzserv component.
Read more → -
ZDI-26-626: Backblaze Personal Computer Backup bzfilelist Link Following Denial-of-Service Vulnerability
A local low-privileged attacker can trigger a denial-of-service via the bzfilelist link-following code.
Read more → -
ZDI-26-627: Backblaze Personal Computer Backup bztransmit Link Following Denial-of-Service Vulnerability
Local low-privileged code execution can trigger a denial-of-service in Backblaze Personal Computer Backup.
Read more → -
ZDI-26-628: Backblaze Personal Computer Backup bzreports Link Following Denial-of-Service Vulnerability
A local attacker with low-privileged code can cause a denial-of-service in Backblaze Personal Computer Backup.
Read more → -
ZDI-26-616: Koha Eval Code Injection Remote Code Execution Vulnerability
Authentication is required to exploit the remote code execution flaw in Koha. The advisory assigns a CVSS score of 8.8.
Read more → -
ZDI-26-617: Microsoft Windows MIDI Service Incorrect Permission Assignment Local Privilege Escalation Vulnerability
The advisory notes that the Windows MIDI Service has an incorrect permission assignment that enables local privilege escalation.
Read more → -
ZDI-26-618: Microsoft Windows UMPDDrvStretchBlt Improper Object Management Local Privilege Escalation Vulnerability
Improper object management in UMPDDrvStretchBlt can be leveraged for local privilege escalation.
Read more → -
ZDI-26-619: Microsoft Windows UMPDDrvStretchBltROP Improper Object Management Local Privilege Escalation Vulnerability
The UMPDDrvStretchBltROP driver in Microsoft Windows contains an improper object management flaw that enables local privilege escalation.
Read more → -
ZDI-26-620: Microsoft Windows UMPDDrvPlgBlt Improper Object Management Local Privilege Escalation Vulnerability
Improper object management in the UMPDDrvPlgBlt component can be leveraged for local privilege escalation.
Read more → -
ZDI-26-621: Microsoft Windows UMPDDrvRealizeBrush Improper Object Management Local Privilege Escalation Vulnerability
Improper object management in UMPDDrvRealizeBrush enables local privilege escalation on Windows.
Read more → -
ZDI-26-622: Microsoft Windows IKEv2 AES-GCM Decryption Integer Underflow Remote Code Execution Vulnerability
Exploitation requires Windows systems with IKEv2 AES-GCM IPsec configuration.
Read more → -
ZDI-26-611: (0Day) pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulnerability
Exploitation requires the victim to open a malicious PDF file or visit a malicious webpage.
Read more →
Page 1 of 7 · 619 advisories