9 Realms Cybersecurity

Threat Intelligence

Vulnerability Advisories

9 Realms tracks the CISA Known Exploited Vulnerabilities catalog and surfaces the threats most relevant to your environment. Click any entry for our full advisory.

Internet Threat Level: Normal· SANS Internet Storm Center

1,611 entries in CISA KEV

CVE-2026-45247
+2d

Mirasvit · Mirasvit Full Page Cache Warmer

Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data Vulnerability

Added Jun 3, 2026View Advisory →
CVE-2022-0492
+3d

Linux · Kernel

Linux Kernel Improper Authentication Vulnerability

Added Jun 2, 2026View Advisory →
CVE-2025-48595
+3d

Android · Framework

Android Framework Integer Overflow Vulnerability

Added Jun 2, 2026View Advisory →
CVE-2024-21182
+4d

Oracle · WebLogic Server

Oracle WebLogic Server Unspecified Vulnerability

Added Jun 1, 2026View Advisory →
CVE-2026-0257
+7d

Palo Alto Networks · PAN-OS

Palo Alto Networks PAN-OS Authentication Bypass Vulnerability

Added May 29, 2026View Advisory →
CVE-2026-48027
+9dRansomware

Nx · Nx Console

Nx Console Embedded Malicious Code Vulnerability

Added May 27, 2026View Advisory →
CVE-2026-45321
+9dRansomware

TanStack · TanStack

TanStack Unspecified Vulnerability

Added May 27, 2026View Advisory →
CVE-2026-8398
+9d

Daemon · Daemon Tools Lite

Daemon Tools Lite Embedded Malicious Code Vulnerability

Added May 27, 2026View Advisory →
CVE-2026-48172
+10d

LiteSpeed · cPanel Plugin

LiteSpeed cPanel Plugin Privilege Escalation Vulnerability

Added May 26, 2026View Advisory →
CVE-2026-9082
+14d

Drupal · Core

Drupal Core SQL Injection Vulnerability

Added May 22, 2026View Advisory →
CVE-2025-34291
+15d

Langflow · Langflow

Langflow Origin Validation Error Vulnerability

Added May 21, 2026View Advisory →
CVE-2026-34926
+15d

Trend Micro · Apex One

Trend Micro Apex One (On-Premise) Directory Traversal Vulnerability

Added May 21, 2026View Advisory →
CVE-2008-4250
+16d

Microsoft · Windows

Microsoft Windows Buffer Overflow Vulnerability

Added May 20, 2026View Advisory →
CVE-2009-1537
+16d

Microsoft · DirectX

Microsoft DirectX NULL Byte Overwrite Vulnerability

Added May 20, 2026View Advisory →
CVE-2009-3459
+16d

Adobe · Acrobat and Reader

Adobe Acrobat and Reader Heap-Based Buffer Overflow Vulnerability

Added May 20, 2026View Advisory →
CVE-2010-0249
+16d

Microsoft · Internet Explorer

Microsoft Internet Explorer Use-After-Free Vulnerability

Added May 20, 2026View Advisory →
CVE-2010-0806
+16d

Microsoft · Internet Explorer

Microsoft Internet Explorer Use-After-Free Vulnerability

Added May 20, 2026View Advisory →
CVE-2026-41091
+16d

Microsoft · Defender

Microsoft Defender Link Following Vulnerability

Added May 20, 2026View Advisory →
CVE-2026-45498
+16d

Microsoft · Defender

Microsoft Defender Denial of Service Vulnerability

Added May 20, 2026View Advisory →
CVE-2026-42897
+21d

Microsoft · Microsoft

Microsoft Exchange Server Cross-Site Scripting Vulnerability

Added May 15, 2026View Advisory →
CVE-2026-20182
+22d

Cisco · Catalyst SD-WAN

Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability

Added May 14, 2026View Advisory →
CVE-2026-42208
+28d

BerriAI · LiteLLM

BerriAI LiteLLM SQL Injection Vulnerability

Added May 8, 2026View Advisory →
CVE-2026-6973
+29d

Ivanti · Endpoint Manager Mobile (EPMM)

Ivanti Endpoint Manager Mobile (EPMM) Improper Input Validation Vulnerability

Added May 7, 2026View Advisory →
CVE-2026-0300
+30d

Palo Alto Networks · PAN-OS

Palo Alto Networks PAN-OS Out-of-bounds Write Vulnerability

Added May 6, 2026View Advisory →
Page 1 of 68

Vulnerability data sourced from the CISA Known Exploited Vulnerabilities catalog. Threat level data from the SANS Internet Storm Center. Catalog contains 1,611 entries (version 2026.06.03).