Threat Landscape
Real-time data from CISA and NIST demonstrates why continuous information security is not optional — it is a necessity.
Global threat activity
Real-time data from multiple open threat databases shows where cyber attacks originate and how they target European countries.
Threat source summary
Aggregated statistics from the six threat databases visualised on the map.
Threat sources – geographic spread
Top 5 source countries
Total indicator count aggregated across all sources.
1,694
Actively exploited vulnerabilities
34
New in the last 30 days
2,204
New CVEs in the last 7 days
12
Critical (CVSS 9.0+)
38
High (CVSS 7.0–8.9)
Vendors with active remediation deadlines
Ransomware share
352 / 1,694
Critical CVEs in the last 7 days
The five most severe new vulnerabilities with a CVSS score of 9.0 or higher.
28 Aug 2026
NUMail developed by Green-Computing has an OS Command Injection vulnerability. Unauthenticated remote attackers can inject arbitrary OS commands and execute them on the server.
28 Aug 2026
Pocket through 8.33.0.0 allows XSS because "Save to Pocket" injects external HTML into the DOM. JavaScript code can alter the application state via native bridge methods.
28 Aug 2026
An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in extract domain in Synology Chat Server before 2.4.5-22148 allows remote authenticated users,...
28 Aug 2026
The WPMU DEV Dashboard plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.0.1. This is due to inconsistent and ambiguous HMAC message construction b...
28 Aug 2026
SOY CMS contains an issue with deserialization of untrusted data. An arbitrary code may be executed by an attacker with the web server privilege.
Latest exploited vulnerabilities
| CVE ID | Vendor | Product | Date added | Ransomware |
|---|---|---|---|---|
| CVE-2026-59822 | BerriAI | LiteLLM | 2 Sept 2026 | Unknown |
| CVE-2026-48710 | Kludex | Starlette | 2 Sept 2026 | Unknown |
| CVE-2026-49869 | Kestra | Kestra OSS | 2 Sept 2026 | Unknown |
| CVE-2026-82329 | JFrog | Artifactory | 2 Sept 2026 | Unknown |
| CVE-2026-9586 | Sangoma | Switchvox | 2 Sept 2026 | Unknown |
| CVE-2026-83548 | SonicWall | SMA1000 Appliances | 2 Sept 2026 | Unknown |
| CVE-2026-83549 | SonicWall | SMA1000 Appliances | 2 Sept 2026 | Unknown |
| CVE-2026-82078 | PaperCut | NG/MF | 31 Aug 2026 | Unknown |
| CVE-2026-81578 | PaperCut | NG/MF | 31 Aug 2026 | Unknown |
| CVE-2023-49105 | ownCloud | ownCloud | 27 Aug 2026 | Unknown |
BerriAI
LiteLLM
2 Sept 2026
Kludex
Starlette
2 Sept 2026
Kestra
Kestra OSS
2 Sept 2026
JFrog
Artifactory
2 Sept 2026
Sangoma
Switchvox
2 Sept 2026
SonicWall
SMA1000 Appliances
2 Sept 2026
SonicWall
SMA1000 Appliances
2 Sept 2026
PaperCut
NG/MF
31 Aug 2026
PaperCut
NG/MF
31 Aug 2026
ownCloud
ownCloud
27 Aug 2026
Why it matters
The threat landscape changes daily
The data above comes directly from the US agencies CISA and NIST. It clearly shows that new threats and vulnerabilities are discovered continuously — and that attackers are actively exploiting them.
New vulnerabilities every day
Hundreds of new CVEs are published every week. Without systematic monitoring, you risk missing critical updates.
Ransomware-linked threats are growing
A significant share of actively exploited vulnerabilities have known links to ransomware campaigns.
Regulatory requirements are tightening
NIS2 and the Cybersecurity Act require organisations to work continuously on risk management and incident preparedness.
Ready to strengthen your cybersecurity?
Book a free meeting and we will discuss how we can help your organisation meet the new requirements.
Book a meeting