INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 2h Global phishing Multiple sectors HIGH 3h Global insider Cybersecurity Services CRITICAL 3h Global ransomware Multiple sectors (U.S. companies) CRITICAL 3h Global malware Financial Services, Cryptocurrency CRITICAL 3h Global malware Technology and Cloud Services HIGH 3h Global general Financial Services and E-commerce MEDIUM 3h Global data_breach Social Media and Communications CRITICAL 4h Global general Cybersecurity Operations HIGH 4h Global phishing Technology and Consumer Services HIGH 4h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 2h Global phishing Multiple sectors HIGH 3h Global insider Cybersecurity Services CRITICAL 3h Global ransomware Multiple sectors (U.S. companies) CRITICAL 3h Global malware Financial Services, Cryptocurrency CRITICAL 3h Global malware Technology and Cloud Services HIGH 3h Global general Financial Services and E-commerce MEDIUM 3h Global data_breach Social Media and Communications CRITICAL 4h Global general Cybersecurity Operations HIGH 4h Global phishing Technology and Consumer Services HIGH 4h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 2h Global phishing Multiple sectors HIGH 3h Global insider Cybersecurity Services CRITICAL 3h Global ransomware Multiple sectors (U.S. companies) CRITICAL 3h Global malware Financial Services, Cryptocurrency CRITICAL 3h Global malware Technology and Cloud Services HIGH 3h Global general Financial Services and E-commerce MEDIUM 3h Global data_breach Social Media and Communications CRITICAL 4h Global general Cybersecurity Operations HIGH 4h Global phishing Technology and Consumer Services HIGH 4h

🛡️ CVE Vulnerability Database

CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia

CVE ID Title / Description Severity CVSS Status Published
CVE-2022-50915
PTPublisher 2.3.4 contains an unquoted service path vulnerability…
PTPublisher 2.3.4 contains an unquoted service path vulnerability in the PTProtect service that allo…
HIGH
8.4
Jan 13, 2026
CVE-2022-50916
e107 CMS version 3.2.1 contains a file upload vulnerability that …
e107 CMS version 3.2.1 contains a file upload vulnerability that allows authenticated administrators…
HIGH
7.2
Jan 13, 2026
CVE-2022-50917
ProtonVPN 1.26.0 contains an unquoted service path vulnerability …
ProtonVPN 1.26.0 contains an unquoted service path vulnerability in its WireGuard service configurat…
HIGH
8.4
Jan 13, 2026
CVE-2022-50921
WOW21 5.0.1.9 contains an unquoted service path vulnerability tha…
WOW21 5.0.1.9 contains an unquoted service path vulnerability that allows local attackers to potenti…
HIGH
7.8
Jan 13, 2026
CVE-2022-50923
Cobian Backup 0.9 contains an unquoted service path vulnerability…
Cobian Backup 0.9 contains an unquoted service path vulnerability that allows local users to execute…
HIGH
8.4
Jan 13, 2026
CVE-2022-50928
BlueSoleilCS 5.4.277 contains an unquoted service path vulnerabil…
BlueSoleilCS 5.4.277 contains an unquoted service path vulnerability in its Windows service configur…
HIGH
7.8
Jan 13, 2026
CVE-2022-50931
TeamSpeak 3.5.6 contains an insecure file permissions vulnerabili…
TeamSpeak 3.5.6 contains an insecure file permissions vulnerability that allows local attackers to r…
HIGH
7.8
Jan 13, 2026
CVE-2022-50933
Cain & Abel 4.9.56 contains an unquoted service path vulnerabilit…
Cain & Abel 4.9.56 contains an unquoted service path vulnerability that allows local attackers to po…
HIGH
7.8
Jan 13, 2026
CVE-2022-50936
WBCE CMS version 1.5.2 contains an authenticated remote code exec…
WBCE CMS version 1.5.2 contains an authenticated remote code execution vulnerability that allows att…
HIGH
8.8
Jan 13, 2026
CVE-2023-54331
Outline 1.6.0 contains an unquoted service path vulnerability tha…
Outline 1.6.0 contains an unquoted service path vulnerability that allows local attackers to potenti…
HIGH
7.8
Jan 13, 2026
CVE-2025-70753
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow…
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the security_5g parameter of th…
HIGH
7.5
Jan 13, 2026
CVE-2025-71024
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack over…
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the serviceName2 parameter …
HIGH
7.5
Jan 13, 2026
CVE-2025-71025
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack over…
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the cloneType2 parameter of…
HIGH
7.5
Jan 13, 2026
CVE-2025-71026
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack over…
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the wanSpeed2 parameter of …
HIGH
7.5
Jan 13, 2026
CVE-2025-71027
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack over…
Tenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow in the wanMTU2 parameter of th…
HIGH
7.5
Jan 13, 2026
CVE-2026-22870
GuardDog is a CLI tool to identify malicious PyPI packages. Prior…
GuardDog is a CLI tool to identify malicious PyPI packages. Prior to 2.7.1, GuardDog's safe_extract(…
HIGH
7.5
Jan 13, 2026
CVE-2024-14021
LlamaIndex (run-llama/llama_index) versions up to and including 0…
LlamaIndex (run-llama/llama_index) versions up to and including 0.11.6 contain an unsafe deserializa…
HIGH
7.8
Jan 12, 2026
CVE-2024-58339
LlamaIndex (run-llama/llama_index) versions up to and including 0…
LlamaIndex (run-llama/llama_index) versions up to and including 0.12.2 contain an uncontrolled resou…
HIGH
7.5
Jan 12, 2026
CVE-2024-58340
LangChain versions up to and including 0.3.1 contain a regular ex…
LangChain versions up to and including 0.3.1 contain a regular expression denial-of-service (ReDoS) …
HIGH
7.5
Jan 12, 2026
CVE-2025-15514
Ollama 0.11.5-rc0 through current version 0.13.5 contain a null p…
Ollama 0.11.5-rc0 through current version 0.13.5 contain a null pointer dereference vulnerability in…
HIGH
7.5
Jan 12, 2026
CVE-2026-22200
Enhancesoft osTicket versions 1.18.x prior to 1.18.3 and 1.17.x p…
Enhancesoft osTicket versions 1.18.x prior to 1.18.3 and 1.17.x prior to 1.17.7 contain an arbitrary…
HIGH
7.5
Jan 12, 2026
CVE-2026-22776
cpp-httplib is a C++11 single-file header-only cross platform HTT…
cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0…
HIGH
7.5
Jan 12, 2026
CVE-2026-22799
Emlog is an open source website building system. emlog v2.6.1 and…
Emlog is an open source website building system. emlog v2.6.1 and earlier exposes a REST API endpoin…
HIGH
8.8
Jan 12, 2026
CVE-2026-0836
UTT 520W Router Buffer Overflow Vulnerability (CVE-2026-0836)
A vulnerability was determined in UTT 进取 520W 1.7.7-180627. The impacted element is the function str…
HIGH
8.8
AI Jan 11, 2026
CVE-2026-0837
UTT 520W Router Buffer Overflow Vulnerability in Firewall Configu…
A vulnerability was identified in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the …
HIGH
8.8
AI Jan 11, 2026
🤖 AI Analysis Active
AI analysis includes: Arabic description, Saudi impact assessment, remediation steps, compliance mapping (NCA ECC, SAMA CSF, ISO 27001) and MITRE ATT&CK techniques.
💡 Search Tips
CVE-2024-12345 Search by exact ID
apache Search by product name
remote code execution Search by vulnerability type
log4j Search by common name
📡 Data Sources
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
Auto-updated daily via cron
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.