9 Realms Cybersecurity

Threat Intelligence

Vulnerability Advisories

9 Realms tracks the CISA Known Exploited Vulnerabilities catalog and surfaces the threats most relevant to your environment. Click any entry for our full advisory.

Internet Threat Level: Normal· SANS Internet Storm Center

1,694 entries in CISA KEV

CVE-2026-59822
+1d

BerriAI · LiteLLM

BerriAI LiteLLM Improper Authentication Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-48710
+1d

Kludex · Starlette

Kludex Starlette HTTP Request/Response Smuggling Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-49869
+1d

Kestra · Kestra OSS

Kestra OSS OS Command Injection Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-82329
+1d

JFrog · Artifactory

JFrog Artifactory Improper Authentication Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-9586
+1d

Sangoma · Switchvox

Sangoma Switchvox SQL Injection Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-83548
+1d

SonicWall · SMA1000 Appliances

SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-83549
+1d

SonicWall · SMA1000 Appliances

SonicWall SMA1000 Appliances OS Command Injection Vulnerability

Added Sep 2, 2026View Advisory →
CVE-2026-82078
+3d

PaperCut · NG/MF

PaperCut NG/MF Unsafe Reflection Vulnerability

Added Aug 31, 2026View Advisory →
CVE-2026-81578
+3d

PaperCut · NG/MF

PaperCut NG/MF Missing Authentication for Critical Function Vulnerability

Added Aug 31, 2026View Advisory →
CVE-2023-49105
+7d

ownCloud · ownCloud

ownCloud Improper Authentication Vulnerability

Added Aug 27, 2026View Advisory →
CVE-2026-53362
+7d

Linux · Kernel

Linux Kernel Unspecified Vulnerability

Added Aug 27, 2026View Advisory →
CVE-2026-66384
+7d

JFrog · Artifactory

JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory Vulnerability

Added Aug 27, 2026View Advisory →
CVE-2021-23758
+8d

Ajax.NET Professional · Ajax.NET Professional

Ajax.NET Professional Deserialization of Untrusted Data Vulnerability

Added Aug 26, 2026View Advisory →
CVE-2015-3246
+8d

Red Hat · Libuser

Red Hat Libuser Race Condition Vulnerability

Added Aug 26, 2026View Advisory →
CVE-2015-5287
+8d

Red Hat · Automatic Bug Reporting Tool

Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability

Added Aug 26, 2026View Advisory →
CVE-2022-0995
+8d

Linux · Kernel

Linux Kernel Out-of-Bounds Write Vulnerability

Added Aug 26, 2026View Advisory →
CVE-2026-8452
+8d

Citrix · NetScaler ADC and NetScaler Gateway

Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Added Aug 26, 2026View Advisory →
CVE-2019-1068
+8d

Microsoft · SQL Server

Microsoft SQL Server Remote Code Execution Vulnerability

Added Aug 26, 2026View Advisory →
CVE-2026-60004
+9d

Gitea · Gitea

Gitea Code Injection Vulnerability

Added Aug 25, 2026View Advisory →
CVE-2026-21962
+10d

Oracle · HTTP Server and Oracle Weblogic Server Proxy Plug-in

Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability

Added Aug 24, 2026View Advisory →
CVE-2026-73570
+13d

Synacor · Zimbra Collaboration Suite (ZCS)

Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability

Added Aug 21, 2026View Advisory →
CVE-2026-72530
+14d

TrueConf · Server

TrueConf Server Code Injection Vulnerability

Added Aug 20, 2026View Advisory →
CVE-2026-72529
+14d

TrueConf · Server

TrueConf Server Missing Authentication for Critical Function Vulnerability

Added Aug 20, 2026View Advisory →
CVE-2026-64849
+15d

MLflow · MLflow

MLflow Server-Side Request Forgery Vulnerability

Added Aug 19, 2026View Advisory →
Page 1 of 71

Vulnerability data sourced from the CISA Known Exploited Vulnerabilities catalog. Threat level data from the SANS Internet Storm Center. Catalog contains 1,694 entries (version 2026.09.02).