Changeflow GovPing Data Privacy & Cybersecurity

Recent changes

Tuesday, March 17, 2026

Favicon for www.bfdi.bund.de

Global Privacy Assembly Adopts Resolution on Trustworthy International Data Traffic

The Global Privacy Assembly (GPA) adopted a resolution on trustworthy international data traffic, also known as Data Free Flow with Trust (DFFT). Initiated by the German delegation, the resolution provides core data protection elements to guide legal frameworks and transfer instruments for secure data transfers.

Routine Notice Data Privacy
Favicon for www.bfdi.bund.de

BfDI Welcomes EDPB GDPR Guidelines on Legitimate Interest

The European Data Protection Board (EDPB) has released draft guidelines on the processing of personal data based on legitimate interest under GDPR. The German Federal Commissioner for Data Protection and Freedom of Information (BfDI) welcomes the initiative to provide greater legal certainty. The guidelines are now open for public consultation.

Priority review Consultation Data Privacy
Favicon for wid.cert-bund.de

NetBox Cross-Site Scripting Vulnerability Advisory

CERT-Bund has issued a security advisory for NetBox, detailing a vulnerability that allows for Cross-Site Scripting attacks. The advisory affects NetBox version 4.3.5 and provides information on mitigation strategies.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Gitea Vulnerabilities Allow Bypass, Data Manipulation, Disclosure

CERT-Bund has issued a security advisory for Gitea, detailing multiple vulnerabilities with a CVSS base score of 7.3. These vulnerabilities can allow attackers to bypass security measures, manipulate data, and disclose confidential information. Users are advised to update to Gitea version 1.25.5 or later.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Kubernetes Vulnerability Allows Remote File Manipulation

CERT-Bund has issued a security advisory (WID-SEC-2026-0738) regarding a vulnerability in Kubernetes that allows remote authenticated attackers to manipulate files. The vulnerability affects the Open Source Kubernetes CSI Driver for NFS versions prior to 4.13.1 and has a CVSS Base Score of 6.5.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

libexif Vulnerability Allows Code Execution and Denial-of-Service

CERT-Bund has issued a security advisory regarding a vulnerability in the libexif library (versions <=0.6.25). The vulnerability allows local attackers to execute arbitrary code, cause a denial-of-service, or disclose confidential information. Mitigation is available.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

FFmpeg Vulnerability Allows Denial of Service and Information Disclosure

CERT-Bund has issued a security advisory (WID-SEC-2026-0740) regarding a vulnerability in the FFmpeg RV60 video decoder. The vulnerability allows remote attackers to cause a Denial of Service or disclose information. Affected versions include Open Source ffmpeg <8.1, 8.0, and 8.0.1.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

CPython Vulnerabilities Allow File Manipulation and DoS

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in CPython versions prior to 3.15.0. These vulnerabilities can be exploited by authenticated remote attackers to manipulate files or cause a denial-of-service condition. The advisory provides mitigation information for affected systems.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Octopus Deploy Vulnerability Allows Remote File Manipulation

CERT-Bund has issued a security advisory for Octopus Deploy, detailing a vulnerability that allows remote authenticated attackers to manipulate files. The advisory affects specific versions of Octopus Deploy running on Linux and Windows and provides mitigation information.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

OpenClaw AI Assistant Vulnerabilities

CERT-Bund has issued a security advisory for OpenClaw, an AI assistant, detailing multiple vulnerabilities with a high CVSS base score of 8.1. The advisory urges users to mitigate the risks associated with privilege escalation and confidential information disclosure.

Priority review Notice Cybersecurity

Showing 1–10 of 470 changes

1 2 3 47

58 monitored sources

ICO Decision Notices

Updated 13h ago 102 recent

CERT-Bund Security Advisories

Updated 3h ago 27 recent

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 2d ago 15 recent

AEPD Resolutions (Spain DPA)

Updated 14h ago 14 recent

NIST Publications

Updated 3d ago 14 recent

WA Data Breach Notifications

Updated 6d ago 12 recent

CERT-FR Security Advisories

Updated 24h ago 9 recent

CISA Known Exploited Vulnerabilities (KEV)

Updated 8h ago 8 recent

Dutch DPA News

Updated 19h ago 7 recent

CA CPPA Newsroom

Updated 11d ago 7 recent

ICO News & Blogs

Updated 5d ago 7 recent

PCPD Media Statements (HK)

Updated 5h ago 7 recent

IAPP Privacy News

Updated 3d ago 6 recent

EDPB Documents (GDPR)

Updated 5d ago 6 recent

ENISA News

Updated 3h ago 6 recent

PDPC Announcements (Singapore)

Updated 4d ago 5 recent

NCSC UK Threat Reports

Updated 4d ago 5 recent

NCSC UK News

Updated 4d ago 5 recent

Luxembourg CNPD News

Updated 4d ago 5 recent

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 2d ago 5 recent

Austria DSB News

Updated 4d ago 5 recent

Romania ANSPDCP Press

Updated 4d ago 5 recent

Hungary NAIH News

Updated 4d ago 5 recent

HITRUST News & Advisories

Updated 4d ago 5 recent

Greece HDPA News

Updated 4d ago 5 recent

Garante Privacy News

Updated 4d ago 5 recent

Canada OPC News & Actions

Updated 4d ago 5 recent

FR: Information Security Oversight Office

Updated 3d ago 5 recent

Croatia AZOP News

Updated 4d ago 5 recent

CPPA California Privacy Rulemaking

Updated 4d ago 5 recent

CSA Alerts & Advisories (Singapore)

Updated 4d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 4d ago 4 recent

NIST Cybersecurity Framework Updates

Updated 4d ago 4 recent

OAIC Media Centre

Updated 4d ago 4 recent

PCI SSC Press Releases

Updated 4d ago 4 recent

CNIL News (France DPA)

Updated 23h ago 4 recent

Regs.gov: Information Security Oversight Office

Updated 3d ago 4 recent

Regs.gov: Office of the National Cyber Director

Updated 3d ago 4 recent

CISA Cybersecurity Advisories

Updated 4d ago 4 recent

FTC Press Releases

Updated 18d ago 4 recent

CISA ICS-CERT Advisories

Updated 18h ago 3 recent

SWIFT News

Updated 4d ago 3 recent

BfDI Press Releases (Germany DPA)

Updated 1h ago 2 recent

IMY News (Sweden DPA)

Updated 21d ago 2 recent

Colorado AG Press Releases

Updated 18h ago 2 recent

Garante Privacy Newsletter (Italy DPA)

Updated 8d ago 2 recent

FR: Office of the National Cyber Director

Updated 3d ago 2 recent

NSA Cybersecurity Advisories

Updated 4d ago 1 recent

EDPB News

Updated 14d ago 1 recent

FedRAMP Changelog

Updated 1d ago 1 recent

ICO GDPR Guidance

Updated 1mo ago 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

CNIL News & Enforcement

Updated -- 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

UK NCSC Alerts & Advisories

Updated -- 0 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

Get Data Privacy & Cybersecurity alerts

Daily digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get Data Privacy & Cybersecurity alerts

We'll email you when new data privacy & cybersecurity changes are detected.

Free. Unsubscribe anytime.