INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global malware Financial Services, Cryptocurrency CRITICAL 44m Global general Financial Services and E-commerce MEDIUM 47m Global data_breach Social Media and Communications CRITICAL 1h Global general Cybersecurity Operations HIGH 1h Global phishing Technology and Consumer Services HIGH 1h Global data_breach Multiple sectors HIGH 2h Global vulnerability Government and Critical Infrastructure CRITICAL 2h Global vulnerability Multiple sectors CRITICAL 2h Global apt Financial Services, Government HIGH 2h Global insider Cross-sector CRITICAL 3h Global malware Financial Services, Cryptocurrency CRITICAL 44m Global general Financial Services and E-commerce MEDIUM 47m Global data_breach Social Media and Communications CRITICAL 1h Global general Cybersecurity Operations HIGH 1h Global phishing Technology and Consumer Services HIGH 1h Global data_breach Multiple sectors HIGH 2h Global vulnerability Government and Critical Infrastructure CRITICAL 2h Global vulnerability Multiple sectors CRITICAL 2h Global apt Financial Services, Government HIGH 2h Global insider Cross-sector CRITICAL 3h Global malware Financial Services, Cryptocurrency CRITICAL 44m Global general Financial Services and E-commerce MEDIUM 47m Global data_breach Social Media and Communications CRITICAL 1h Global general Cybersecurity Operations HIGH 1h Global phishing Technology and Consumer Services HIGH 1h Global data_breach Multiple sectors HIGH 2h Global vulnerability Government and Critical Infrastructure CRITICAL 2h Global vulnerability Multiple sectors CRITICAL 2h Global apt Financial Services, Government HIGH 2h Global insider Cross-sector CRITICAL 3h

🛡️ CVE Vulnerability Database

CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia

CVE ID Title / Description Severity CVSS Status Published
CVE-2026-0589
Authentication Bypass in Online Product Reservation System 1.0 Ad…
A vulnerability was found in code-projects Online Product Reservation System 1.0. Impacted is an unk…
HIGH
7.3
AI Jan 5, 2026
CVE-2026-0621
ReDoS Vulnerability in Anthropic MCP TypeScript SDK URI Template …
Anthropic's MCP TypeScript SDK versions up to and including 1.25.1 contain a regular expression deni…
HIGH
7.5
AI Jan 5, 2026
CVE-2025-3646
Petlibro Smart Pet Feeder Authorization Bypass Vulnerability (CVE…
Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authorization bypass vulnerabil…
HIGH
7.3
Jan 4, 2026
CVE-2025-64124
OS Command Injection in Nuvation Energy Multi-Stack Controller (M…
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerabi…
HIGH
8.8
Jan 3, 2026
CVE-2025-15426
A vulnerability was identified in jackying H-ui.admin up to 3.1. …
A vulnerability was identified in jackying H-ui.admin up to 3.1. This affects an unknown function in…
HIGH
7.3
Jan 2, 2026
CVE-2025-15428
A weakness has been identified in UTT 进取 512W 1.7.7-171114. Affec…
A weakness has been identified in UTT 进取 512W 1.7.7-171114. Affected is the function strcpy of the f…
HIGH
8.8
Jan 2, 2026
CVE-2025-15429
A security vulnerability has been detected in UTT 进取 512W 1.7.7-1…
A security vulnerability has been detected in UTT 进取 512W 1.7.7-171114. Affected by this vulnerabili…
HIGH
8.8
Jan 2, 2026
CVE-2025-52863
QNAP QTS/QuTS Hero Buffer Overflow Vulnerability Enables Memory M…
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. …
HIGH
8.1
AI Jan 2, 2026
CVE-2025-52864
A buffer overflow vulnerability has been reported to affect sever…
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. …
HIGH
8.1
Jan 2, 2026
CVE-2025-52872
A buffer overflow vulnerability has been reported to affect sever…
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. …
HIGH
8.1
Jan 2, 2026
CVE-2025-59384
QNAP Qfiling Path Traversal Vulnerability Allows Unauthorized Fil…
A path traversal vulnerability has been reported to affect Qfiling. The remote attackers can then ex…
HIGH
7.5
Jan 2, 2026
CVE-2025-62842
QNAP HBS 3 Path Traversal Vulnerability Enables Unauthorized File…
An external control of file name or path vulnerability has been reported to affect HBS 3 Hybrid Back…
HIGH
7.8
Jan 2, 2026
CVE-2025-64120
Critical OS Command Injection in Nuvation Energy Multi-Stack Cont…
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerabi…
HIGH
8.8
Jan 2, 2026
CVE-2025-69414
Plex Media Server Permanent Token Exposure via Transient Token Es…
Plex Media Server (PMS) through 1.42.2.10156 allows retrieval of a permanent access token via a /myp…
HIGH
8.5
Jan 2, 2026
CVE-2025-69415
Plex Media Server Device Token Authentication Bypass Vulnerabilit…
In Plex Media Server (PMS) through 1.42.2.10156, ability to access /myplex/account with a device tok…
HIGH
7.1
Jan 2, 2026
CVE-2025-9110
QNAP QTS/QuTS hero Sensitive System Information Exposure Vulnerab…
An exposure of sensitive system information to an unauthorized control sphere vulnerability has been…
HIGH
7.5
Jan 2, 2026
CVE-2026-21449
Bagisto is an open source laravel eCommerce platform. Versions pr…
Bagisto is an open source laravel eCommerce platform. Versions prior to 2.3.10 are vulnerable to ser…
HIGH
8.8
Jan 2, 2026
CVE-2026-21451
Stored XSS Vulnerability in Bagisto CMS Page Editor Allows Admin …
Bagisto is an open source laravel eCommerce platform. A stored Cross-Site Scripting (XSS) vulnerabil…
HIGH
8.4
Jan 2, 2026
CVE-2026-21428
cpp-httplib is a C++11 single-file header-only cross platform HTT…
cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0…
HIGH
7.5
Jan 1, 2026
CVE-2025-48769
Use After Free vulnerability was discovered in fs/vfs/fs_rename c…
Use After Free vulnerability was discovered in fs/vfs/fs_rename code of the Apache NuttX RTOS, that …
HIGH
8.1
Jan 1, 2026
CVE-2025-68619
Signal K Server Arbitrary Code Execution via Malicious npm Packag…
Signal K Server is a server application that runs on a central hub in a boat. Versions prior to 2.19…
HIGH
7.2
Jan 1, 2026
🤖 AI Analysis Active
AI analysis includes: Arabic description, Saudi impact assessment, remediation steps, compliance mapping (NCA ECC, SAMA CSF, ISO 27001) and MITRE ATT&CK techniques.
💡 Search Tips
CVE-2024-12345 Search by exact ID
apache Search by product name
remote code execution Search by vulnerability type
log4j Search by common name
📡 Data Sources
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
Auto-updated daily via cron
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.