Skip to content

Source profile

cisecurity.org

cisecurity.org

Evidence-bounded context

A field appears only when the current profile revision carries supporting evidence. Missing context stays visibly unknown.

Source classes
Not yet evidenced
Ownership
Not yet evidenced
Funding ties
Not yet evidenced
Declared affiliations
Not yet evidenced
Geographic base
Not yet evidenced
Methodology
Not yet evidenced

Current clusters

security16 publishers

Cisco patches an ISE authentication bypass attackers used before the fix existed

CVE-2026-76460 scores a CVSS 10.0, affects Cisco ISE and ISE-PIC in every configuration, and has no workaround. CISA added it to the KEV catalog the day the patches shipped and gave federal agencies three days.

Perspective Coverage

16 publishers
Builder
Builder 18%
Operator
Operator 64%
Investor
Investor 18%

Reality

Evidence82
Adoption58
Hype gap−8
Incentives62
Confidence80
security13 publishers

GitLab's 19.3.2 release closes an unauthenticated arbitrary file read in the commits API

GitLab shipped 19.3.2, 19.2.6 and 19.1 to fix a maximum-severity path traversal that needs no account, plus an Enterprise Edition deserialization bug that needs a Duo Chat user. GitLab.com is already patched.

Reality

Evidence58
Adoption45
Hype gap+12
Incentives55
Confidence52