📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global ransomware Healthcare CRITICAL 52m Global vulnerability Software Development and Cloud Services CRITICAL 2h Global general Financial Services MEDIUM 9h Global supply_chain Software Development CRITICAL 10h Global backdoor Web Content Management CRITICAL 11h Global general Artificial Intelligence Research LOW 12h Global vulnerability Software Development / Technology HIGH 12h Global vulnerability Software Development / Cloud Services HIGH 13h Global vulnerability Healthcare CRITICAL 13h Global data_breach Gaming and Entertainment HIGH 14h Global ransomware Healthcare CRITICAL 52m Global vulnerability Software Development and Cloud Services CRITICAL 2h Global general Financial Services MEDIUM 9h Global supply_chain Software Development CRITICAL 10h Global backdoor Web Content Management CRITICAL 11h Global general Artificial Intelligence Research LOW 12h Global vulnerability Software Development / Technology HIGH 12h Global vulnerability Software Development / Cloud Services HIGH 13h Global vulnerability Healthcare CRITICAL 13h Global data_breach Gaming and Entertainment HIGH 14h Global ransomware Healthcare CRITICAL 52m Global vulnerability Software Development and Cloud Services CRITICAL 2h Global general Financial Services MEDIUM 9h Global supply_chain Software Development CRITICAL 10h Global backdoor Web Content Management CRITICAL 11h Global general Artificial Intelligence Research LOW 12h Global vulnerability Software Development / Technology HIGH 12h Global vulnerability Software Development / Cloud Services HIGH 13h Global vulnerability Healthcare CRITICAL 13h Global data_breach Gaming and Entertainment HIGH 14h

🛡️ CVE Intelligence Center

Common Vulnerabilities & Exposures — Security Intelligence Database

CVE ID Severity CVSS Description Status Published
CVE-2026-24322 High 7.7
SAP Solution Tools Plug-In (ST-PI) contains a function module that does not perform the necessary authorization checks f…
✅ Patch Feb 10, 2026
CVE-2026-25506 High 7.7
MUNGE is an authentication service for creating and validating user credentials. From 0.5 to 0.5.17, local attacker can …
✅ Patch Feb 10, 2026
CVE-2025-40587 High 7.6
A vulnerability has been identified in Polarion V2404 (All versions < V2404.5), Polarion V2410 (All versions < V2410.2).…
✅ Patch Feb 10, 2026
CVE-2026-0485 High 7.5
SAP BusinessObjects BI Platform allows an unauthenticated attacker to send specially crafted requests that could cause t…
✅ Patch Feb 10, 2026
CVE-2026-0490 High 7.5
SAP BusinessObjects BI Platform allows an unauthenticated attacker to craft a specific network request to the trusted en…
✅ Patch Feb 10, 2026
CVE-2026-2093 High 7.5
Docpedia developed by Flowring has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject ar…
✅ Patch Feb 10, 2026
CVE-2026-21218 High 7.5
Improper handling of missing special element in .NET allows an unauthorized attacker to perform spoofing over a network.
✅ Patch Feb 10, 2026
CVE-2026-2268 High 7.5
The Ninja Forms plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin…
✅ Patch Feb 10, 2026
CVE-2026-25728 High 7.5
ClipBucket v5 is an open source video sharing platform. Prior to 5.5.3 - #40, a Time-of-Check to Time-of-Use (TOCTOU) ra…
⚡ Exploit ✅ Patch Feb 10, 2026
CVE-2026-0508 High 7.3
The SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker with high privileges to insert m…
✅ Patch Feb 10, 2026
CVE-2026-0845 High 7.2
The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible plugin for WordPress is…
✅ Patch Feb 10, 2026
CVE-2026-1866 High 7.2
The Name Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via double HTML-entity encoding in …
✅ Patch Feb 10, 2026
CVE-2026-2260 High 7.2
A vulnerability was found in D-Link DCS-931L up to 1.13.0. This affects an unknown part of the file /goform/setSysAdmin.…
⚡ Exploit ✅ Patch Feb 10, 2026
CVE-2026-21508 High 7.0
Improper authentication in Windows Storage allows an authorized attacker to elevate privileges locally.
✅ Patch Feb 10, 2026
CVE-2026-25495 High 8.8
Craft is a platform for creating digital experiences. In Craft versions 4.0.0-RC1 through 4.16.17 and 5.0.0-RC1 through …
⚡ Exploit ✅ Patch Feb 9, 2026
CVE-2026-25497 High 8.8
Craft is a platform for creating digital experiences. In Craft versions from 4.0.0-RC1 to before 4.17.0-beta.1 and 5.9.0…
✅ Patch Feb 9, 2026
CVE-2026-25812 High 8.8
PlaciPy is a placement management system designed for educational institutions. In version 1.0.0, the application enable…
✅ Patch Feb 9, 2026
CVE-2025-10465 High 8.8
Unrestricted Upload of File with Dangerous Type vulnerability in Birtech Information Technologies Industry and Trade Ltd…
✅ Patch Feb 9, 2026
CVE-2025-7799 High 8.6
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Zirve Infor…
✅ Patch Feb 9, 2026
CVE-2026-0870 High 7.8
MacroHub developed by GIGABYTE has a Local Privilege Escalation vulnerability. Due to the MacroHub application launching…
✅ Patch Feb 9, 2026
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.