San Antonio Intelligence PlatformSign in

Cyber Security

ELEVATED

CISA Known Exploited Vulnerabilities and regional threat indicators.

Threats (24h)

26

Critical

5

Blocked

24

Threat Level

ELEVATED

CISA Known Exploited Vulnerabilities

CVE IDVendorProductDate AddedDescription
CVE-2026-0257Palo Alto NetworksPAN-OS2026-05-29Palo Alto Networks PAN-OS contains an authentication bypass vulnerability that a
CVE-2026-48027NxNx Console2026-05-27Nx Console contains an embedded malicious code vulnerability that allowed a mali
CVE-2026-45321TanStackTanStack2026-05-27TanStack contains an unspecified vulnerability that allowed malicious versions o
CVE-2026-8398DaemonDaemon Tools Lite2026-05-27Daemon Tools contains an unspecified vulnerability that has a high impact on con
CVE-2026-48172LiteSpeedcPanel Plugin2026-05-26LiteSpeed cPanel Plugin contains privilege escalation vulnerability that is expo
CVE-2026-9082DrupalCore2026-05-22Drupal Core contains a SQL injection vulnerability that could allow for privileg
CVE-2025-34291LangflowLangflow2026-05-21Langflow contains an origin validation error vulnerability in which an overly pe
CVE-2026-34926Trend MicroApex One2026-05-21Trend Micro Apex One (on-premise) contains a directory traversal vulnerability t
CVE-2008-4250MicrosoftWindows2026-05-20Microsoft Windows contains a buffer overflow vulnerability in the Windows Server
CVE-2009-1537MicrosoftDirectX2026-05-20Microsoft DirectX contains a NULL byte overwrite vulnerability in the QuickTime
CVE-2009-3459AdobeAcrobat and Reader2026-05-20Adobe Acrobat and Reader contain a heap-based buffer overflow vulnerability whic
CVE-2010-0249MicrosoftInternet Explorer2026-05-20Microsoft Internet Explorer contains an use-after-free vulnerability that could
CVE-2010-0806MicrosoftInternet Explorer2026-05-20Microsoft Internet Explorer contains an use-after-free vulnerability that could
CVE-2026-41091MicrosoftDefender2026-05-20Microsoft Defender contains a link following vulnerability that allows an author
CVE-2026-45498MicrosoftDefender2026-05-20Microsoft Defender contains an unspecified vulnerability that allows for denial

Threat Indicators

TypeSeveritySourceConfidenceTime
Malware C2criticalAbuseIPDB100%6/1/2026, 7:22:49 AM
Ransomware C2criticalAbuseIPDB100%6/1/2026, 2:51:05 AM
Ransomware C2criticalAbuseIPDB100%6/1/2026, 7:12:27 AM
Ransomware C2criticalAbuseIPDB100%6/1/2026, 6:51:07 AM
SSH Brute ForcehighAbuseIPDB1%5/24/2026, 4:35:40 PM
Malicious IPcriticalAlienVault OTX85%

Last updated: 6/1/2026, 1:48:52 PM

5/29/2026, 10:49:20 AM
Malicious IPlowAlienVault OTX85%5/4/2026, 10:30:23 AM
Malicious IPlowAlienVault OTX85%5/4/2026, 10:30:23 AM
Malicious IPlowAlienVault OTX85%5/4/2026, 10:30:23 AM
Malicious IPlowAlienVault OTX85%5/4/2026, 10:30:23 AM
Malicious IPlowAlienVault OTX85%5/4/2026, 10:30:23 AM
VulnerabilityhighAlienVault OTX80%4/30/2026, 7:11:27 PM
VulnerabilityhighAlienVault OTX80%4/30/2026, 7:11:27 PM
VulnerabilityhighAlienVault OTX80%4/30/2026, 7:11:27 PM
VulnerabilityhighAlienVault OTX80%4/30/2026, 7:11:27 PM
Malware C2highAlienVault OTX80%4/30/2026, 7:11:27 PM
Malicious DomainlowAlienVault OTX80%4/30/2026, 2:41:14 PM
Malicious DomainlowAlienVault OTX80%4/30/2026, 2:41:14 PM
Malicious DomainlowAlienVault OTX80%4/30/2026, 2:41:14 PM
Malware C2lowAlienVault OTX80%4/30/2026, 2:41:14 PM