📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global data_breach Utilities and Critical Infrastructure HIGH 10h Global vulnerability Technology/Software MEDIUM 1d Global malware Multiple sectors (general) HIGH 1d Global apt Government CRITICAL 1d Global apt Critical Infrastructure / Nuclear Energy CRITICAL 1d Global vulnerability Critical Infrastructure, Government, Enterprise HIGH 1d Global ransomware Home Security and Consumer Services HIGH 2d Global phishing Financial Services, Government, Law Enforcement HIGH 2d Global malware Network Infrastructure / Telecommunications CRITICAL 2d Global general Software / IT Operations LOW 2d Global data_breach Utilities and Critical Infrastructure HIGH 10h Global vulnerability Technology/Software MEDIUM 1d Global malware Multiple sectors (general) HIGH 1d Global apt Government CRITICAL 1d Global apt Critical Infrastructure / Nuclear Energy CRITICAL 1d Global vulnerability Critical Infrastructure, Government, Enterprise HIGH 1d Global ransomware Home Security and Consumer Services HIGH 2d Global phishing Financial Services, Government, Law Enforcement HIGH 2d Global malware Network Infrastructure / Telecommunications CRITICAL 2d Global general Software / IT Operations LOW 2d Global data_breach Utilities and Critical Infrastructure HIGH 10h Global vulnerability Technology/Software MEDIUM 1d Global malware Multiple sectors (general) HIGH 1d Global apt Government CRITICAL 1d Global apt Critical Infrastructure / Nuclear Energy CRITICAL 1d Global vulnerability Critical Infrastructure, Government, Enterprise HIGH 1d Global ransomware Home Security and Consumer Services HIGH 2d Global phishing Financial Services, Government, Law Enforcement HIGH 2d Global malware Network Infrastructure / Telecommunications CRITICAL 2d Global general Software / IT Operations LOW 2d

🛡️ CVE Intelligence Center

Common Vulnerabilities & Exposures — Security Intelligence Database

CVE ID Severity CVSS Description Status Published
CVE-2026-28561 Medium 5.5
wpForo Forum 2.4.14 contains a stored cross-site scripting vulnerability that allows administrators to inject persistent…
Feb 28, 2026
CVE-2026-28560 Medium 5.5
wpForo Forum 2.4.14 contains a stored cross-site scripting vulnerability that allows script injection via forum URL data…
Feb 28, 2026
CVE-2026-28556 Medium 5.4
wpForo Forum 2.4.14 contains a missing authorization vulnerability that allows authenticated subscribers to move, merge,…
Feb 28, 2026
CVE-2026-28559 Medium 5.3
wpForo Forum 2.4.14 contains an information disclosure vulnerability that allows unauthenticated users to retrieve priva…
Feb 28, 2026
CVE-2026-2749 Critical 9.9
Vulnerability in Centreon Centreon Open Tickets on Central Server on Linux (Centroen Open Ticket modules).This issue aff…
✅ Patch Feb 27, 2026
CVE-2026-28363 Critical 9.9
In OpenClaw before 2026.2.23, tools.exec.safeBins validation for sort could be bypassed via GNU long-option abbreviation…
✅ Patch Feb 27, 2026
CVE-2026-2251 Critical 9.8
Improper limitation of a pathname to a restricted directory (Path Traversal) vulnerability in Xerox FreeFlow Core allows…
✅ Patch Feb 27, 2026
CVE-2026-27755 Critical 9.8
SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a weak session identifier generation vulnerability th…
✅ Patch Feb 27, 2026
CVE-2026-3301 Critical 9.8
A security flaw has been discovered in Totolink N300RH 6.1c.1353_B20190305. Affected by this vulnerability is the functi…
⚡ Exploit ✅ Patch Feb 27, 2026
CVE-2026-24352 Critical 9.8
PluXml CMS allows a user's session identifier to be set before authentication. The value of this session ID stays the sa…
✅ Patch Feb 27, 2026
CVE-2026-28268 Critical 9.8
Vikunja is an open-source self-hosted task management platform. Versions prior to 2.1.0 have a business logic vulnerabil…
✅ Patch Feb 27, 2026
CVE-2026-27751 Critical 9.8
SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a default credentials vulnerability that allows remot…
✅ Patch Feb 27, 2026
CVE-2025-11251 Critical 9.8
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Dayneks Software I…
✅ Patch Feb 27, 2026
CVE-2025-11252 Critical 9.8
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Signum Technology …
✅ Patch Feb 27, 2026
CVE-2025-12981 Critical 9.8
The Listee theme for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.1.6. This i…
✅ Patch Feb 27, 2026
CVE-2026-2750 Critical 9.1
Improper Input Validation vulnerability in Centreon Centreon Open Tickets on Central Server on Linux (Centreon Open Tick…
✅ Patch Feb 27, 2026
CVE-2026-28370 Critical 9.1
In the query parser in OpenStack Vitrage before 12.0.1, 13.0.0, 14.0.0, and 15.0.0, a user allowed to access the Vitrage…
⚡ Exploit ✅ Patch Feb 27, 2026
CVE-2026-3274 High 8.8
A security flaw has been discovered in Tenda F453 1.0.0.3. Affected by this issue is the function frmL7ProtForm of the f…
⚡ Exploit ✅ Patch Feb 27, 2026
CVE-2026-3275 High 8.8
A weakness has been identified in Tenda F453 1.0.0.3. This affects the function fromAddressNat of the file /goform/addre…
⚡ Exploit ✅ Patch Feb 27, 2026
CVE-2025-69437 High 8.7
PublicCMS v5.202506.d and earlier is vulnerable to stored XSS. Uploaded PDFs can contain JavaScript payloads and bypass …
✅ Patch Feb 27, 2026
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.