SITREP · SITUATIONAL AWARENESS
LIVEReal-time posture across the intelligence corpus — correlation fires, threat throughput, and active narratives. Windows are 7-day / 30-day, honest to our collector cadence.
Global posture ▸
DEFCON 1
SEVERE · 24 SEVERE (DEFCON-1) escalations active
Correlations / 7D
222
▲ 19% vs prior 7d
Active threats / 7D
231
▲ 38% vs prior 7d
KEV · CVE · advisories
FedRAMP monitored
424
authorized products under CVE watch
SYSTEM VITALS
13 SOURCES LIVE · freshest 5h ago
2,722 ENTITIES
3,926 EVENTS
29,290,488 DEFCON EVENTS
LIVE
GLOBAL THREAT MAP // LIVE
intel · geo →
malicious IOC origin
40 geolocated indicators · node graph ▸
THREAT ACTIVITY // 30-DAY
exposures →
Active narratives · story clusters
×2
CRITICAL
CVE-2026-48939: A vulnerability in the iCagenda extension for Joomla allows the upload of arbitr
CVE-2026-48939
×2
CRITICAL
CVE-2012-1710: Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in
CVE-2012-1710
×2
CRITICAL
CVE-2021-21972: The vSphere Client (HTML5) contains a remote code execution vulnerability in a v
CVE-2021-21972
×2
CRITICAL
CVE-2021-20021: A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attac
CVE-2021-20021
×2
CRITICAL
CVE-2019-15107: An issue was discovered in Webmin <=1.920. The parameter old in password_change.
CVE-2019-15107
×2
CRITICAL
CVE-2024-55591: An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-2
CVE-2024-55591
THREAT_TICKER
▸
CVE-2026-7808
CVE-2026-7808: justhtml before 1.16.0 contains multiple HTML...
▸
CVE-2026-8445
CVE-2026-8445: justhtml versions <= 1.11.0 (fixed in 1.12.0)...
▸
CVE-2026-5388
CVE-2026-5388: justhtml before 1.15.0 contains multiple...
▸
CVE-2026-78050
CVE-2026-78050: A vulnerability was found in Comfast CF-N1-S...
▸
CVE-2026-4703
CVE-2026-4703: The WS Form LITE – Drag & Drop Contact Form...
▸
CVE-2026-77946
CVE-2026-77946: A vulnerability was determined in TRENDnet...
▸
CVE-2026-78003
CVE-2026-78003: The Mailgun for WordPress plugin for...
▸
CVE-2026-77776
CVE-2026-77776: Headroom's LLM proxy derives the memory...
▸
CVE-2026-73570
Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
▸
CVE-2026-69836
Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
▸
CVE-2026-77683
CVE-2026-77683: A security flaw has been discovered in...
▸
CVE-2026-77086
CVE-2026-77086: SiYuan before v3.7.4 fails to validate the...
▸
CVE-2026-20677
CVE-2026-20677: A race condition was addressed with improved...
▸
CVE-2023-49060
CVE-2023-49060: An attacker could have accessed internal...
▸
CVE-2023-3617
CVE-2023-3617: A vulnerability was found in SourceCodester...
▸
CVE-2025-5331
CVE-2025-5331: A vulnerability has been found in PCMan FTP...
▸
CVE-2026-7808
CVE-2026-7808: justhtml before 1.16.0 contains multiple HTML...
▸
CVE-2026-8445
CVE-2026-8445: justhtml versions <= 1.11.0 (fixed in 1.12.0)...
▸
CVE-2026-5388
CVE-2026-5388: justhtml before 1.15.0 contains multiple...
▸
CVE-2026-78050
CVE-2026-78050: A vulnerability was found in Comfast CF-N1-S...
▸
CVE-2026-4703
CVE-2026-4703: The WS Form LITE – Drag & Drop Contact Form...
▸
CVE-2026-77946
CVE-2026-77946: A vulnerability was determined in TRENDnet...
▸
CVE-2026-78003
CVE-2026-78003: The Mailgun for WordPress plugin for...
▸
CVE-2026-77776
CVE-2026-77776: Headroom's LLM proxy derives the memory...
▸
CVE-2026-73570
Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
▸
CVE-2026-69836
Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
▸
CVE-2026-77683
CVE-2026-77683: A security flaw has been discovered in...
▸
CVE-2026-77086
CVE-2026-77086: SiYuan before v3.7.4 fails to validate the...
▸
CVE-2026-20677
CVE-2026-20677: A race condition was addressed with improved...
▸
CVE-2023-49060
CVE-2023-49060: An attacker could have accessed internal...
▸
CVE-2023-3617
CVE-2023-3617: A vulnerability was found in SourceCodester...
▸
CVE-2025-5331
CVE-2025-5331: A vulnerability has been found in PCMan FTP...
CORRELATION_FIRES
incident vault →
#FIRE-F5D2
08-21 18:20Z
Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
◈ Office 365 Multi-Tenant & Supporting Services, Azure Government (includes Dynamics 365) +2 more
KEVHIGHRCE
#FIRE-316F
08-21 00:20Z
CVE-2026-18249: IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain
◈ MaaS360 Enterprise Mobility Management, SmartCloud for Government +3 more
CVEHIGH
#FIRE-C67B
08-21 00:20Z
CVE-2026-61241: Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middlewa
◈ Taleo Cloud - U.S. Government Cloud, Oracle Service Cloud +8 more
CVECRITICAL
#FIRE-5B21
08-21 00:20Z
CVE-2023-21716: Microsoft Word Remote Code Execution Vulnerability
◈ Office 365 Multi-Tenant & Supporting Services, Azure Government (includes Dynamics 365) +2 more
CVECRITICAL
#FIRE-2541
08-21 00:20Z
CVE-2026-76311: In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unaut
◈ Splunk Cloud Platform for FedRAMP Moderate, Splunk Cloud Platform for FedRAMP High
CVECRITICAL
#FIRE-2D4C
08-21 00:20Z
CVE-2026-54117: Deserialization of untrusted data in SQL Server allows an unauthorized attacker
◈ Azure Commercial Cloud, Microsoft Office 365 GCC High +2 more
CVECRITICAL
#FIRE-987D
08-21 00:20Z
CVE-2026-17101: IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary
◈ IBM Cloud for Government, IBM Federal HR Cloud +3 more
CVEHIGH
#FIRE-2F67
08-21 00:20Z
CVE-2026-61001: Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middle
◈ Aconex for Defense, Taleo Cloud - U.S. Government Cloud +8 more
CVECRITICAL
#FIRE-77C9
08-21 00:20Z
CVE-2026-61003: Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middl
◈ Oracle Service Cloud (DOD), Fusion Cloud +8 more
CVECRITICAL
#FIRE-312C
08-21 00:20Z
CVE-2026-61248: Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middlewa
◈ Oracle Enterprise Performance Management (EPM) - Moderate, Fusion Cloud +8 more
CVECRITICAL
7D_ACTIVITY_RANK
vendor board →
IBM
100%
company · 16 events / 7d
i
62%
product · 10 events / 7d
Oracle
56%
company · 9 events / 7d
Microsoft
56%
company · 9 events / 7d
mozilla
44%
vendor · 7 events / 7d
Splunk
38%
company · 6 events / 7d
best pos management system
38%
product · 6 events / 7d
mayurik
38%
vendor · 6 events / 7d
TOTAL EVENTS: 3,926FULL BOARD ▸