INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global supply_chain Software Development and Technology CRITICAL 36m Global apt Multiple sectors HIGH 2h Global general Digital Content & Intellectual Property MEDIUM 3h Global malware Technology and Software Development CRITICAL 3h Global ddos Technology and Social Media HIGH 3h Global phishing Financial Services, Telecommunications, General Public HIGH 4h Global supply_chain Software Development and Technology CRITICAL 5h Global apt Multiple sectors / Critical Infrastructure CRITICAL 5h Global malware Financial Services CRITICAL 5h Global general Software/Technology LOW 5h Global supply_chain Software Development and Technology CRITICAL 36m Global apt Multiple sectors HIGH 2h Global general Digital Content & Intellectual Property MEDIUM 3h Global malware Technology and Software Development CRITICAL 3h Global ddos Technology and Social Media HIGH 3h Global phishing Financial Services, Telecommunications, General Public HIGH 4h Global supply_chain Software Development and Technology CRITICAL 5h Global apt Multiple sectors / Critical Infrastructure CRITICAL 5h Global malware Financial Services CRITICAL 5h Global general Software/Technology LOW 5h Global supply_chain Software Development and Technology CRITICAL 36m Global apt Multiple sectors HIGH 2h Global general Digital Content & Intellectual Property MEDIUM 3h Global malware Technology and Software Development CRITICAL 3h Global ddos Technology and Social Media HIGH 3h Global phishing Financial Services, Telecommunications, General Public HIGH 4h Global supply_chain Software Development and Technology CRITICAL 5h Global apt Multiple sectors / Critical Infrastructure CRITICAL 5h Global malware Financial Services CRITICAL 5h Global general Software/Technology LOW 5h

🛡️ CVE Vulnerability Database

CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia

CVE ID Title / Description Severity CVSS Status Published
CVE-2026-2995
GitLab has remediated an issue in GitLab EE affecting all version…
GitLab has remediated an issue in GitLab EE affecting all versions from 15.4 before 18.8.7, 18.9 bef…
HIGH
7.7
Mar 25, 2026
CVE-2026-33217
NATS-Server is a High-Performance server for NATS.io, a cloud and…
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prio…
HIGH
7.1
Mar 25, 2026
CVE-2026-33247
NATS-Server is a High-Performance server for NATS.io, a cloud and…
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prio…
HIGH
7.4
Mar 25, 2026
CVE-2026-33348
OpenEMR is a free and open source electronic health records and m…
OpenEMR is a free and open source electronic health records and medical practice management applicat…
HIGH
8.7
Mar 25, 2026
CVE-2026-33913
OpenEMR is a free and open source electronic health records and m…
OpenEMR is a free and open source electronic health records and medical practice management applicat…
HIGH
7.7
Mar 25, 2026
CVE-2026-20631
A logic issue was addressed with improved checks. This issue is f…
A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. A user ma…
HIGH
8.8
AI Mar 25, 2026
CVE-2026-20698
The issue was addressed with improved memory handling. This issue…
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26…
HIGH
7.8
Mar 25, 2026
CVE-2026-23514
Kiteworks is a private data network (PDN). Versions 9.2.0 and 9.2…
Kiteworks is a private data network (PDN). Versions 9.2.0 and 9.2.1 of Kiteworks Core have an access…
HIGH
8.8
AI Mar 25, 2026
CVE-2026-24750
Kiteworks is a private data network (PDN). In Kiteworks Secure Da…
Kiteworks is a private data network (PDN). In Kiteworks Secure Data Forms prior to version 9.2.1, an…
HIGH
7.6
Mar 25, 2026
CVE-2025-36258
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 produ…
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 product stores user credentials and othe…
HIGH
7.1
Mar 25, 2026
CVE-2025-33247
NVIDIA Megatron LM contains a vulnerability in quantization confi…
NVIDIA Megatron LM contains a vulnerability in quantization configuration loading, which could allow…
HIGH
7.8
Mar 24, 2026
CVE-2025-33248
NVIDIA Megatron-LM contains a vulnerability in the hybrid convers…
NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may ca…
HIGH
7.8
Mar 24, 2026
CVE-2025-41660
A low-privileged remote attacker may be able to replace the boot …
A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control …
HIGH
8.8
AI Mar 24, 2026
CVE-2026-27651
When the ngx_mail_auth_http_module module is enabled on NGINX Plu…
When the ngx_mail_auth_http_module module is enabled on NGINX Plus or NGINX Open Source, undisclosed…
HIGH
7.5
Mar 24, 2026
CVE-2026-27654
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_…
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_dav_module module that might a…
HIGH
8.2
Mar 24, 2026
CVE-2026-27784
The 32-bit implementation of NGINX Open Source has a vulnerabilit…
The 32-bit implementation of NGINX Open Source has a vulnerability in the ngx_http_mp4_module module…
HIGH
7.8
Mar 24, 2026
CVE-2026-30653
An issue in Free5GC v.4.2.0 and before allows a remote attacker t…
An issue in Free5GC v.4.2.0 and before allows a remote attacker to cause a denial of service via the…
HIGH
7.5
Mar 24, 2026
CVE-2026-30932
Froxlor is open source server administration software. Prior to v…
Froxlor is open source server administration software. Prior to version 2.3.5, the DomainZones.add A…
HIGH
8.8
Mar 24, 2026
CVE-2026-32647
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_…
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module module, which might…
HIGH
7.8
Mar 24, 2026
CVE-2026-32853
LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) …
LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) contain a heap out-of-bounds read v…
HIGH
8.1
Mar 24, 2026
CVE-2026-32854
LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) …
LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vu…
HIGH
7.5
Mar 24, 2026
CVE-2026-32948
sbt is a build tool for Scala, Java, and others. From version 0.9…
sbt is a build tool for Scala, Java, and others. From version 0.9.5 to before version 1.12.7, on Win…
HIGH
7.8
Mar 24, 2026
CVE-2026-33157
Craft CMS is a content management system (CMS). From version 5.6.…
Craft CMS is a content management system (CMS). From version 5.6.0 to before version 5.9.13, a Remot…
HIGH
7.2
Mar 24, 2026
CVE-2026-33174
Active Storage allows users to attach cloud and local files in Ra…
Active Storage allows users to attach cloud and local files in Rails applications. Prior to versions…
HIGH
7.5
Mar 24, 2026
CVE-2026-33176
Active Support is a toolkit of support libraries and Ruby core ex…
Active Support is a toolkit of support libraries and Ruby core extensions extracted from the Rails f…
HIGH
7.5
Mar 24, 2026
🤖 AI Analysis Active
AI analysis includes: Arabic description, Saudi impact assessment, remediation steps, compliance mapping (NCA ECC, SAMA CSF, ISO 27001) and MITRE ATT&CK techniques.
💡 Search Tips
CVE-2024-12345 Search by exact ID
apache Search by product name
remote code execution Search by vulnerability type
log4j Search by common name
📡 Data Sources
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
Auto-updated daily via cron
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.