INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global data_breach Government CRITICAL 2h Global ransomware Financial Services / Cybersecurity CRITICAL 2h Global vulnerability Information Technology / Cybersecurity CRITICAL 4h Global malware Energy and Utilities CRITICAL 5h Global ransomware Multiple sectors CRITICAL 5h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 8h Global supply_chain Information Technology and Critical Infrastructure CRITICAL 8h Global phishing Multiple sectors HIGH 8h Global insider Cybersecurity Services CRITICAL 9h Global ransomware Multiple sectors (U.S. companies) CRITICAL 9h Global data_breach Government CRITICAL 2h Global ransomware Financial Services / Cybersecurity CRITICAL 2h Global vulnerability Information Technology / Cybersecurity CRITICAL 4h Global malware Energy and Utilities CRITICAL 5h Global ransomware Multiple sectors CRITICAL 5h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 8h Global supply_chain Information Technology and Critical Infrastructure CRITICAL 8h Global phishing Multiple sectors HIGH 8h Global insider Cybersecurity Services CRITICAL 9h Global ransomware Multiple sectors (U.S. companies) CRITICAL 9h Global data_breach Government CRITICAL 2h Global ransomware Financial Services / Cybersecurity CRITICAL 2h Global vulnerability Information Technology / Cybersecurity CRITICAL 4h Global malware Energy and Utilities CRITICAL 5h Global ransomware Multiple sectors CRITICAL 5h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 8h Global supply_chain Information Technology and Critical Infrastructure CRITICAL 8h Global phishing Multiple sectors HIGH 8h Global insider Cybersecurity Services CRITICAL 9h Global ransomware Multiple sectors (U.S. companies) CRITICAL 9h

🛡️ CVE Vulnerability Database

CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia

CVE ID Title / Description Severity CVSS Status Published
CVE-2026-1023
Statistics Database System developed by Gotac has a Missing Authe…
Statistics Database System developed by Gotac has a Missing Authentication vulnerability, allowing u…
HIGH
7.5
Jan 16, 2026
CVE-2026-21223
Improper privilege management in Microsoft Edge (Chromium-based) …
Improper privilege management in Microsoft Edge (Chromium-based) allows an authorized attacker to by…
HIGH
7.1
Jan 16, 2026
CVE-2026-21625
User provided uploads to the Easy Discuss component for Joomla ar…
User provided uploads to the Easy Discuss component for Joomla aren't properly validated. Uploads ar…
HIGH
8.8
Jan 16, 2026
CVE-2026-22782
RustFS is a distributed object storage system built in Rust. From…
RustFS is a distributed object storage system built in Rust. From >= 1.0.0-alpha.1 to 1.0.0-alpha.79…
HIGH
7.5
Jan 16, 2026
CVE-2026-22816
Gradle is a build automation tool, and its native-platform tool p…
Gradle is a build automation tool, and its native-platform tool provides Java bindings for native AP…
HIGH
7.4
Jan 16, 2026
CVE-2026-22865
Gradle is a build automation tool, and its native-platform tool p…
Gradle is a build automation tool, and its native-platform tool provides Java bindings for native AP…
HIGH
7.4
Jan 16, 2026
CVE-2026-23723
WeGIA is a web manager for charitable institutions. Prior to 3.6.…
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an authenticated SQL Injection v…
HIGH
7.2
Jan 16, 2026
CVE-2021-47756
Laravel Valet versions 1.1.4 to 2.0.3 contain a local privilege e…
Laravel Valet versions 1.1.4 to 2.0.3 contain a local privilege escalation vulnerability that allows…
HIGH
8.4
Jan 16, 2026
CVE-2021-47780
Macro Expert 4.7 contains an unquoted service path vulnerability …
Macro Expert 4.7 contains an unquoted service path vulnerability that allows local users to potentia…
HIGH
7.8
Jan 16, 2026
CVE-2021-47782
Odine Solutions GateKeeper 1.0 contains a SQL injection vulnerabi…
Odine Solutions GateKeeper 1.0 contains a SQL injection vulnerability in the trafficCycle API endpoi…
HIGH
8.2
Jan 16, 2026
CVE-2021-47794
ZesleCP 3.1.9 contains an authenticated remote code execution vul…
ZesleCP 3.1.9 contains an authenticated remote code execution vulnerability that allows attackers to…
HIGH
8.8
AI Jan 16, 2026
CVE-2021-47797
Leawo Prof. Media 11.0.0.1 contains a denial of service vulnerabi…
Leawo Prof. Media 11.0.0.1 contains a denial of service vulnerability that allows attackers to crash…
HIGH
7.5
Jan 16, 2026
CVE-2021-47801
Vianeos OctoPUS 5 contains a time-based blind SQL injection vulne…
Vianeos OctoPUS 5 contains a time-based blind SQL injection vulnerability in the 'login_user' parame…
HIGH
8.2
Jan 16, 2026
CVE-2021-47803
iFunbox 4.2 contains an unquoted service path vulnerability in th…
iFunbox 4.2 contains an unquoted service path vulnerability in the Apple Mobile Device Service that …
HIGH
7.8
Jan 16, 2026
CVE-2021-47804
Wise Care 365 5.6.7.568 contains an unquoted service path vulnera…
Wise Care 365 5.6.7.568 contains an unquoted service path vulnerability in the WiseBootAssistant ser…
HIGH
7.8
Jan 16, 2026
CVE-2021-47805
Disk Savvy 13.6.14 contains an unquoted service path vulnerabilit…
Disk Savvy 13.6.14 contains an unquoted service path vulnerability in its Windows service configurat…
HIGH
7.8
Jan 16, 2026
CVE-2021-47813
Backup Key Recovery 2.2.7 contains a denial of service vulnerabil…
Backup Key Recovery 2.2.7 contains a denial of service vulnerability that allows attackers to crash …
HIGH
7.5
Jan 16, 2026
CVE-2021-47814
NBMonitor 1.6.8 contains a denial of service vulnerability that a…
NBMonitor 1.6.8 contains a denial of service vulnerability that allows attackers to crash the applic…
HIGH
7.5
Jan 16, 2026
CVE-2021-47815
Nsauditor 3.2.3 contains a denial of service vulnerability in the…
Nsauditor 3.2.3 contains a denial of service vulnerability in the registration code input field that…
HIGH
7.5
Jan 16, 2026
CVE-2021-47816
Thecus N4800Eco NAS Server Control Panel contains a command injec…
Thecus N4800Eco NAS Server Control Panel contains a command injection vulnerability that allows auth…
HIGH
8.8
AI Jan 16, 2026
CVE-2021-47818
DupTerminator 1.4.5639.37199 contains a denial of service vulnera…
DupTerminator 1.4.5639.37199 contains a denial of service vulnerability that allows attackers to cra…
HIGH
7.5
Jan 16, 2026
CVE-2021-47822
DiskBoss Service 12.2.18 contains an unquoted service path vulner…
DiskBoss Service 12.2.18 contains an unquoted service path vulnerability in its binary path configur…
HIGH
7.8
Jan 16, 2026
CVE-2021-47823
Acer ePowerSvc 6.0.3008.0 contains an unquoted service path vulne…
Acer ePowerSvc 6.0.3008.0 contains an unquoted service path vulnerability that allows local users to…
HIGH
7.8
Jan 16, 2026
CVE-2021-47824
iDailyDiary 4.30 contains a denial of service vulnerability that …
iDailyDiary 4.30 contains a denial of service vulnerability that allows attackers to crash the appli…
HIGH
7.5
Jan 16, 2026
CVE-2021-47825
Acer Updater Service 1.2.3500.0 contains an unquoted service path…
Acer Updater Service 1.2.3500.0 contains an unquoted service path vulnerability that allows local us…
HIGH
7.8
Jan 16, 2026
🤖 AI Analysis Active
AI analysis includes: Arabic description, Saudi impact assessment, remediation steps, compliance mapping (NCA ECC, SAMA CSF, ISO 27001) and MITRE ATT&CK techniques.
💡 Search Tips
CVE-2024-12345 Search by exact ID
apache Search by product name
remote code execution Search by vulnerability type
log4j Search by common name
📡 Data Sources
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
Auto-updated daily via cron
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.