Zum Inhalt springen
Auto-CTI

Was hat sich geändert?

Vergleich von 24. April 2026 mit dem Vortag 23. April 2026.

Neu hinzugekommen

6
NEU Microsoft
100

CVE-2026-33102

This CVE describes a specific open redirect flaw in M365 Copilot that could allow privilege escalation, which is not a general patch reminder and may require immediate attention given the company's use of Microsoft 365.

Kritisch CVSS 9.3 EPSS 0%
NEU Microsoft
100

CVE-2026-35431

This is a patch notification with no evidence of active exploitation or specific attack campaigns beyond the CVE description.

Kritisch CVSS 10.0 EPSS 0%
NEU Microsoft
23

CVE-2026-33694

This is a patch reminder for a critical Windows privilege escalation vulnerability with no active attack campaign or sector-specific targeting described.

Niedrig EPSS 0%

Neu als KEV gelistet

0

Keine Änderungen in dieser Kategorie.

Score-Sprung

0

Keine Änderungen in dieser Kategorie.

Nicht mehr im Report

32
KEV NEU Cisco
100

FIRESTARTER Backdoor

FIRESTARTER backdoor provides persistent access on Cisco ASA/FTD devices, enabling long-term espionage and lateral movement.

Kritisch CVSS 9.9 EPSS 44%
KEV NEU Cisco UAT-4356
100

UAT-4356's Targeting of Cisco Firepower Devices

UAT-4356 is actively exploiting two zero-day vulnerabilities in Cisco Firepower devices to deploy the FIRESTARTER backdoor, indicating a targeted campaign against network security appliances.

Kritisch CVSS 9.9 EPSS 44%
NEU GitLab
100

CVE-2026-1660

This is a patch notification with no evidence of active exploitation or specific targeting of manufacturing firms.

Mittel CVSS 6.5 EPSS 0%
NEU GitLab
100

CVE-2025-0186

No active exploitation or campaign details provided; this is a standard patch advisory.

Mittel CVSS 6.5 EPSS 0%
NEU GitLab
100

CVE-2025-3922

This is a patch reminder for a DoS vulnerability in GitLab CE/EE; no active attack campaign or sector-specific targeting is described.

Mittel CVSS 6.5 EPSS 0%
NEU GitLab
100

CVE-2025-6016

This is a patch notification for a DoS vulnerability in GitLab CE/EE; no active exploitation or campaign details are provided.

Mittel CVSS 6.5 EPSS 0%
NEU GitLab
100

CVE-2026-5262

This vulnerability allows unauthenticated attackers to access tokens in the Storybook environment, which could lead to further compromise of GitLab repositories and CI/CD pipelines.

Hoch CVSS 8.0 EPSS 0%
NEU GitLab
100

CVE-2026-4922

This is a patch advisory with no evidence of active exploitation or specific attack campaigns beyond the CVE details.

Hoch CVSS 8.1 EPSS 0%
NEU GitLab
100

CVE-2026-5816

This is a patch reminder for a GitLab XSS vulnerability with no evidence of active exploitation or specific threat actor involvement.

Hoch CVSS 8.0 EPSS 0%
NEU GitLab
84

CVE-2026-6515

This is a patch reminder with no evidence of active exploitation or specific TTPs beyond the advisory.

Mittel CVSS 5.4 EPSS 0%
NEU Siemens
72

Siemens Industrial Edge Management

This CVE affects Siemens Industrial Edge Management, a platform used to manage edge devices in industrial environments, which could allow an attacker to compromise industrial operations.

Niedrig CVSS 3.1 EPSS 0%
NEU GitLab
67

CVE-2026-5377

This is a patch reminder for a GitLab vulnerability that could expose confidential issue titles in public projects, but no active exploitation or specific campaign is mentioned.

Mittel CVSS 4.3 EPSS 0%
NEU GitLab
55

CVE-2026-3254

This is a patch reminder; no active exploitation or campaign details are provided beyond the CVE description.

Niedrig CVSS 3.5 EPSS 0%
NEU Siemens
48

Siemens TPM 2.0

This vulnerability affects the TPM 2.0 firmware in Siemens SIMATIC industrial PCs, potentially allowing attackers to compromise hardware security modules in manufacturing environments.

Niedrig CVSS 3.1 EPSS 0%
NEU Siemens
48

Siemens SINEC NMS

This vulnerability in Siemens industrial network management software could allow remote code execution or denial of service in OT environments.

Niedrig CVSS 3.1 EPSS 0%
NEU Siemens
48

Siemens SINEC NMS

This CVE affects Siemens industrial network management software, potentially impacting OT network visibility and control in manufacturing environments.

Niedrig CVSS 3.1 EPSS 0%
NEU Siemens
48

Siemens Analytics Toolkit

This CVE affects Siemens Analytics Toolkit, which may be used in conjunction with S7 PLCs in the company's manufacturing environment.

Niedrig CVSS 3.1 EPSS 0%
NEU GitLab
42

CVE-2025-9957

This is a patch advisory with no evidence of active exploitation or specific attack campaigns beyond the CVE details.

Niedrig CVSS 2.7 EPSS 0%
NEU Ieee
40

Siemens SCALANCE

Multiple CVEs in Siemens SCALANCE devices could allow attackers to compromise industrial network segments, potentially impacting Siemens S7 PLC operations.

Niedrig CVSS 3.1 EPSS 8%
ESC