Threat Landscape
Real-time data from CISA and NIST demonstrates why continuous information security is not optional — it is a necessity.
Global threat activity
Real-time data from multiple open threat databases shows where cyber attacks originate and how they target European countries.
Threat source summary
Aggregated statistics from the six threat databases visualised on the map.
Threat sources – geographic spread
Top 5 source countries
Total indicator count aggregated across all sources.
1,647
Actively exploited vulnerabilities
24
New in the last 30 days
2,642
New CVEs in the last 7 days
17
Critical (CVSS 9.0+)
37
High (CVSS 7.0–8.9)
Vendors with active remediation deadlines
Ransomware share
329 / 1,647
Critical CVEs in the last 7 days
The five most severe new vulnerabilities with a CVSS score of 9.0 or higher.
14 Jul 2026
The Word Count and Social Shares WordPress plugin through 1.0 does not validate a user-supplied file path before deletion, nor does it have proper authorization or CSRF checks, allowing any authent...
14 Jul 2026
Multiple input validation vulnerabilities in the Snowflake Spark Connector (spark-snowflake) versions prior to 3.2.1 can allow attackers to exfiltrate OAuth client credentials, execute arbitrary SQ...
14 Jul 2026
In Eclipse BaSyx Java Server SDK versions 2.0.0-milestone-05 to 2.0.0-milestone-12, deployments using the MongoDB backend are vulnerable to an unauthenticated arbitrary file write through the AAS t...
14 Jul 2026
Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations. This issue affects Apache Tomcat: from 1...
14 Jul 2026
Insufficient Technical Documentation vulnerability in Apache Tomcat since the requirements to securely configure the EncryptInterceptor were not clearly documented. This issue affects Apache Tomca...
Latest exploited vulnerabilities
| CVE ID | Vendor | Product | Date added | Ransomware |
|---|---|---|---|---|
| CVE-2026-58644 | Microsoft | SharePoint | 16 Jul 2026 | Unknown |
| CVE-2026-25089 | Fortinet | FortiSandbox | 16 Jul 2026 | Unknown |
| CVE-2026-39808 | Fortinet | FortiSandbox | 16 Jul 2026 | Unknown |
| CVE-2026-46817 | Oracle | E-Business Suite | 15 Jul 2026 | Unknown |
| CVE-2023-4346 | KNX Association | KNX Protocol Connection Authorization Option 1 | 15 Jul 2026 | Unknown |
| CVE-2026-56155 | Microsoft | Active Directory Federation Services | 14 Jul 2026 | Unknown |
| CVE-2026-56164 | Microsoft | SharePoint Server | 14 Jul 2026 | Unknown |
| CVE-2026-15409 | SonicWall | SMA1000 Appliances | 14 Jul 2026 | Unknown |
| CVE-2026-15410 | SonicWall | SMA1000 Appliances | 14 Jul 2026 | Unknown |
| CVE-2008-4128 | Cisco | IOS | 13 Jul 2026 | Unknown |
Microsoft
SharePoint
16 Jul 2026
Fortinet
FortiSandbox
16 Jul 2026
Fortinet
FortiSandbox
16 Jul 2026
Oracle
E-Business Suite
15 Jul 2026
KNX Association
KNX Protocol Connection Authorization Option 1
15 Jul 2026
Microsoft
Active Directory Federation Services
14 Jul 2026
Microsoft
SharePoint Server
14 Jul 2026
SonicWall
SMA1000 Appliances
14 Jul 2026
SonicWall
SMA1000 Appliances
14 Jul 2026
Cisco
IOS
13 Jul 2026
Why it matters
The threat landscape changes daily
The data above comes directly from the US agencies CISA and NIST. It clearly shows that new threats and vulnerabilities are discovered continuously — and that attackers are actively exploiting them.
New vulnerabilities every day
Hundreds of new CVEs are published every week. Without systematic monitoring, you risk missing critical updates.
Ransomware-linked threats are growing
A significant share of actively exploited vulnerabilities have known links to ransomware campaigns.
Regulatory requirements are tightening
NIS2 and the Cybersecurity Act require organisations to work continuously on risk management and incident preparedness.
Ready to strengthen your cybersecurity?
Book a free meeting and we will discuss how we can help your organisation meet the new requirements.
Book a meeting