Geographic distribution
39 countries with geo-tagged records · 115 country associations
Click a shaded country to filter the list.
Country attribution comes only from a strict ISO 3166-1 lookup. Sources that imply a region without resolving to a real country code contribute no shading rather than an invented one.
Recent threats
40PraisonAI: Call API localhost-only authentication bypass via spoofed Host header
CVE-2026-61435
CVE-2026-84275 — IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the GIM file-upload functionality.
CVE-2026-84275
CVE-2026-84274 — IBM Guardium Data Protection 12.2.2 is affected by a sensitive information exposure vulnerability.
CVE-2026-84274
CVE-2026-84272 — IBM Guardium Data Protection 12.1 and 12.2.2 are vulnerable to missing authentication in the edge-controller component.
CVE-2026-84272
CVE-2026-84271 — IBM Guardium Data Protection 12.2 is vulnerable to a signature verification bypass in the patch installer.
CVE-2026-84271
CVE-2026-84250 — IBM Guardium Data Protection 12.2 is vulnerable due to weak cryptographic protection and a hard-coded recovery key in the pkcrypto passkey component.
CVE-2026-84250
CVE-2026-84245 — IBM Guardium Data Protection 12.2 is vulnerable to a local privilege escalation in the cp_wrapper component.
CVE-2026-84245
CVE-2026-84244 — IBM Guardium Data Protection 12.2 IBM Security Guardium Data Protection is vulnerable to stored cross-site scripting (XSS) in the Quick Search resu…
CVE-2026-84244
CVE-2026-82344 — IBM Guardium Data Protection 12.0, 12.1 is vulnerable to a heap-based buffer overflow in the S-TAP TrafficTap TDS login reassembly functionality.
CVE-2026-82344
CVE-2026-82335 — IBM Guardium Data Protection 12.0, 12.1, 12.2 is vulnerable to a heap-based buffer overflow in the MongoDB protocol parser.
CVE-2026-82335
CVE-2026-82334 — IBM Guardium Data Protection 12.0, 12.1, 12.2 is vulnerable to a heap-based out-of-bounds read in the TDS7 LOGIN7 protocol parser.
CVE-2026-82334
CVE-2026-107707 — Intego Antivirus for Windows through 3.0.0.1 contains a link following vulnerability in its optimization module that allows local unprivileged user…
CVE-2026-107707
CVE-2026-107706 — Dolibarr ERP CRM before 24.0.2 contains an incorrect authorization vulnerability in htdocs/core/ajax/updateextrafield.php that checks only read per…
CVE-2026-107706
CVE-2026-107705 — Poppler 0.42.0 through 26.10.0 contains a stack-based buffer overflow in Decrypt::revision6Hash() that allows attackers controlling the password to…
CVE-2026-107705
CVE-2026-107608 — Improper link resolution before file access in the asset bundling output handling in AWS aws-cdk-lib before 2.267.0 might allow a context-dependent…
CVE-2026-107608
CVE-2026-107396 — Indico is an event management system that uses Flask-Multipass, a multi-backend authentication system for Flask.
CVE-2026-107396
CVE-2026-107395 — Indico is an event management system that uses Flask-Multipass, a multi-backend authentication system for Flask.
CVE-2026-107395
CVE-2026-107394 — Indico is an event management system that uses Flask-Multipass, a multi-backend authentication system for Flask.
CVE-2026-107394
CVE-2026-107393 — FreeScout is a self-hosted help desk and shared mailbox.
CVE-2026-107393
CVE-2026-107392 — music-metadata is a metadata parser for audio and video media files.
CVE-2026-107392
CVE-2026-107391 — music-metadata is a metadata parser for audio and video media files.
CVE-2026-107391
CVE-2026-107390 — music-metadata is a metadata parser for audio and video media files.
CVE-2026-107390
CVE-2026-107389 — music-metadata is a metadata parser for audio and video media files.
CVE-2026-107389
CVE-2026-106436 — The BSON encoder in the MongoDB PHP Driver does not check some return values after a document exceeds libbson's size limit.
CVE-2026-106436
CVE-2026-106432 — The BSON encoder in the MongoDB PHP Driver converts a string length to a 32-bit value without validation.
CVE-2026-106432
CVE-2026-106126 — A command injection vulnerability in the Active Directory Events Listener of Tenable Identity Exposure (SaaS) allows an authenticated, low-privileg…
CVE-2026-106126
CVE-2026-104076 — TVU Networks Receiver/Transceiver devices running firmware before version 7.9 contain a missing authentication vulnerability that allows remote una…
CVE-2026-104076
CVE-2026-104075 — TVU Networks Receiver/Transceiver devices running firmware before version 7.9 contain an authentication bypass vulnerability in the web management …
CVE-2026-104075
CVE-2017-16119 — Fresh is a module used by the Express.js framework for HTTP response freshness testing.
CVE-2017-16119
Malware distribution URL on 115[.]48[.]144[.]79
Malware distribution URL on 182[.]127[.]179[.]145
Malware distribution URL on 182[.]116[.]115[.]77
Malware distribution URL on 103[.]111[.]23[.]12
Malware distribution URL on 115[.]48[.]144[.]79
Malware distribution URL on 42[.]229[.]175[.]66
Aisuru ip:port: 165[.]22[.]244[.]100:8443
Vidar url: hxxps://kl[.]3toto[.]com
Mirai sha256_hash: 0bf7c786b8e4e0fa284459db0c9bc18dee0cea772e519c16601ed7caaa52138d
Mirai sha256_hash: 13b211b289756f6b0bca46aadc18d8abe0110db3400968a9b1d261ab1b7906cd
Mirai sha256_hash: 412e214fa52fb1d9beee979c95b64b99776670f4f2fb7c6812246be4c1bafa3f