Changeflow GovPing Data Privacy & Cybersecurity

Recent changes

Tuesday, March 17, 2026

Favicon for www.cert.ssi.gouv.fr

Microsoft Products Vulnerability CVE-2026-32249 Discovered

CERT-FR has issued a notice regarding a vulnerability (CVE-2026-32249) discovered in Microsoft products. The advisory details affected systems and directs users to Microsoft's security bulletin for patches.

Priority review Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

CERT-FR: Multiple Redmine Vulnerabilities Identified

CERT-FR has issued a security advisory regarding multiple vulnerabilities discovered in Redmine software. The vulnerabilities include Cross-Site Scripting (XSS) and security policy bypass, affecting specific versions of Redmine. Users are advised to consult the Redmine security advisories for patch information.

Priority review Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

CERT-FR: Multiple Spring AI Vulnerabilities, SQL Injection Risks

CERT-FR has issued an advisory regarding multiple vulnerabilities in Spring AI, versions 1.0.x prior to 1.0.4 and 1.1.x prior to 1.1.3. These vulnerabilities allow for SQL injection and security policy bypass. Users are advised to consult the vendor's security bulletins for patch information.

Priority review Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

CERT-FR: Multiple Xen Vulnerabilities Disclosed

CERT-FR has issued a security advisory regarding multiple vulnerabilities discovered in Xen versions 4.17.x and 4.18.x. These vulnerabilities could lead to data breaches, remote denial of service, and privilege escalation. Users are advised to apply security patches provided by Xen.

Priority review Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

Microsoft Edge Vulnerability CVE-2026-3909

CERT-FR has issued a security advisory regarding a vulnerability in Microsoft Edge, identified as CVE-2026-3909. The advisory notes that this vulnerability is actively being exploited and affects versions prior to 146.0.3856.62.

Urgent Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

Multiple Python Vulnerabilities Affect CPython Systems

CERT-FR has issued a security advisory regarding multiple vulnerabilities discovered in Python, specifically affecting CPython systems without the latest security patches. These vulnerabilities could lead to security policy bypass. Users are advised to consult the editor's security bulletins for available patches.

Priority review Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

Multiple Vulnerabilities in Kaspersky Products Identified

CERT-FR has issued a security advisory regarding multiple vulnerabilities discovered in various Kaspersky product versions. These vulnerabilities could allow an attacker to cause unspecified security issues. Users are advised to consult Kaspersky's security bulletin for patch information.

Priority review Notice Cybersecurity
Favicon for www.cert.ssi.gouv.fr

CERT-FR: Multiple vulnerabilities in Mattermost Server

CERT-FR has issued an advisory regarding multiple vulnerabilities discovered in Mattermost Server. These vulnerabilities could allow an attacker to bypass security policies. Users are advised to consult Mattermost's security bulletins for patch information.

Priority review Notice Cybersecurity
Favicon for www.bfdi.bund.de

Global Privacy Assembly Adopts Resolution on Trustworthy International Data Traffic

The Global Privacy Assembly (GPA) adopted a resolution on trustworthy international data traffic, also known as Data Free Flow with Trust (DFFT). Initiated by the German delegation, the resolution provides core data protection elements to guide legal frameworks and transfer instruments for secure data transfers.

Routine Notice Data Privacy
Favicon for www.bfdi.bund.de

BfDI Welcomes EDPB GDPR Guidelines on Legitimate Interest

The European Data Protection Board (EDPB) has released draft guidelines on the processing of personal data based on legitimate interest under GDPR. The German Federal Commissioner for Data Protection and Freedom of Information (BfDI) welcomes the initiative to provide greater legal certainty. The guidelines are now open for public consultation.

Priority review Consultation Data Privacy

Showing 1–10 of 478 changes

1 2 3 48

58 monitored sources

ICO Decision Notices

Updated 16h ago 102 recent

CERT-Bund Security Advisories

Updated 5h ago 27 recent

CERT-FR Security Advisories

Updated 3h ago 17 recent

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 2d ago 15 recent

AEPD Resolutions (Spain DPA)

Updated 17h ago 14 recent

NIST Publications

Updated 3d ago 14 recent

WA Data Breach Notifications

Updated 6d ago 12 recent

CISA Known Exploited Vulnerabilities (KEV)

Updated 11h ago 8 recent

CA CPPA Newsroom

Updated 11d ago 7 recent

ICO News & Blogs

Updated 5d ago 7 recent

PCPD Media Statements (HK)

Updated 8h ago 7 recent

Dutch DPA News

Updated 22h ago 7 recent

IAPP Privacy News

Updated 3d ago 6 recent

EDPB Documents (GDPR)

Updated 5d ago 6 recent

ENISA News

Updated 6h ago 6 recent

Hungary NAIH News

Updated 4d ago 5 recent

HITRUST News & Advisories

Updated 4d ago 5 recent

Greece HDPA News

Updated 4d ago 5 recent

Garante Privacy News

Updated 4d ago 5 recent

Luxembourg CNPD News

Updated 4d ago 5 recent

NCSC UK News

Updated 4d ago 5 recent

FR: Information Security Oversight Office

Updated 3d ago 5 recent

NCSC UK Threat Reports

Updated 4d ago 5 recent

Croatia AZOP News

Updated 4d ago 5 recent

PDPC Announcements (Singapore)

Updated 4d ago 5 recent

Canada OPC News & Actions

Updated 4d ago 5 recent

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 2d ago 5 recent

CPPA California Privacy Rulemaking

Updated 4d ago 5 recent

Austria DSB News

Updated 4d ago 5 recent

Romania ANSPDCP Press

Updated 4d ago 5 recent

NIST Cybersecurity Framework Updates

Updated 4d ago 4 recent

OAIC Media Centre

Updated 4d ago 4 recent

PCI SSC Press Releases

Updated 4d ago 4 recent

Regs.gov: Information Security Oversight Office

Updated 3d ago 4 recent

Regs.gov: Office of the National Cyber Director

Updated 3d ago 4 recent

CNIL News (France DPA)

Updated 1d ago 4 recent

CSA Alerts & Advisories (Singapore)

Updated 4d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 4d ago 4 recent

FTC Press Releases

Updated 19d ago 4 recent

CISA Cybersecurity Advisories

Updated 4d ago 4 recent

CISA ICS-CERT Advisories

Updated 21h ago 3 recent

SWIFT News

Updated 4d ago 3 recent

Colorado AG Press Releases

Updated 21h ago 2 recent

BfDI Press Releases (Germany DPA)

Updated 4h ago 2 recent

FR: Office of the National Cyber Director

Updated 3d ago 2 recent

IMY News (Sweden DPA)

Updated 21d ago 2 recent

Garante Privacy Newsletter (Italy DPA)

Updated 8d ago 2 recent

EDPB News

Updated 14d ago 1 recent

NSA Cybersecurity Advisories

Updated 4d ago 1 recent

FedRAMP Changelog

Updated 1d ago 1 recent

UK NCSC Alerts & Advisories

Updated -- 0 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

CNIL News & Enforcement

Updated -- 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

ICO GDPR Guidance

Updated 1mo ago 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

Get Data Privacy & Cybersecurity alerts

Daily digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get Data Privacy & Cybersecurity alerts

We'll email you when new data privacy & cybersecurity changes are detected.

Free. Unsubscribe anytime.