Cyber Threat Dashboard

Cyber Threat Dashboard

Veille cybersécurité : alertes, vulnérabilités, actualités et outils pour se protéger.

2018Éléments
14837 derniers jours
336Aujourd'hui
897Critique + haute
10/10/2026 23:30Dernière collecte
CritiqueAlerteExploitée activement CVE-2026-21962

CVE-2026-21962 — Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in : Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability

Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in contain an improper access control vulnerability that can result in unauthorized creation, deletion or modification access to critical data as well as unauthor…

CISA · Vulnérabilités exploitées (KEV)KEVOracleHTTP Server and Oracle Weblogic Server Proxy Plug-inransomware
CritiqueAlerteExploitée activement CVE-2026-73570

CVE-2026-73570 — Synacor Zimbra Collaboration Suite (ZCS) : Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability

Zimbra Collaboration Suite (ZCS) contains an OS command injection vulnerability which could allow an unauthenticated attacker to send specially crafted SMTP requests that may result in execution of arbitrary operating s…

CISA · Vulnérabilités exploitées (KEV)KEVSynacorZimbra Collaboration Suite (ZCS)ransomware
CritiqueAlerteExploitée activement CVE-2026-33824

CVE-2026-33824 — Microsoft Internet Key Exchange (IKE) Service Extensions : Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability

Microsoft Internet Key Exchange (IKE) Service Extensions contains a double free vulnerability that could enable remote code execution. Action : Apply mitigations in accordance with vendor instructions, ensuring complian…

CISA · Vulnérabilités exploitées (KEV)KEVMicrosoftInternet Key Exchange (IKE) Service Extensionsransomware