216.73.216.133

Threat intelligence dashboard

Today's CVEs, attack reports, and CISA KEV — CVSS, EPSS, and MITRE context at a glance.

Attack reports – last 7 days · through Friday 3 July 2026 (18)

Vulnerabilities today (8)

Sorted by CVSS severity (highest first)

9.9 Critical

Server-side request forgery (ssrf) in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.

Attack vector
NETWORK
Complexity
LOW
Published
03/07/2026
9.9 Critical

Server-side request forgery (ssrf) in Azure OpenAI allows an authorized attacker to elevate privileges over a network.

Attack vector
NETWORK
Complexity
LOW
Published
03/07/2026
9.3 Critical

Url redirection to untrusted site ('open redirect') in M365 Copilot allows an unauthorized attacker to elevate privileges over a network.

Attack vector
NETWORK
Complexity
LOW
Published
03/07/2026
8.8 High

Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network.

Attack vector
NETWORK
Complexity
LOW
Published
03/07/2026
8.1 High

Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IKEv2 AUTH payload was …

Attack vector
NETWORK
Complexity
HIGH
Published
03/07/2026
8.1 High

Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload of an IKEv1 …

Attack vector
NETWORK
Complexity
HIGH
Published
03/07/2026
7.5 High

An invalidly formatted IKEv2 fragment causes the Libreswan pluto daemon to crash and restart. Continued exploitation would cause a denial of service. …

Attack vector
NETWORK
Complexity
LOW
Published
03/07/2026
4.8 Medium

Improper access control in Azure Synapse allows an authorized attacker to elevate privileges over a network.

Attack vector
NETWORK
Complexity
HIGH
Published
03/07/2026