Changeflow GovPing Data Privacy & Cybersecurity

Recent changes

Tuesday, March 17, 2026

Favicon for wid.cert-bund.de

OpenCTI Vulnerability Allows Bypassing Security Measures

CERT-Bund has issued a security advisory for OpenCTI, a cyber threat intelligence platform. A vulnerability (CVE) allows remote, authenticated attackers to bypass security measures. The advisory affects OpenCTI versions prior to 6.9.1.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Langflow Vulnerabilities Allow Code Execution and Security Bypass

CERT-Bund has issued a security advisory (WID-SEC-2026-0747) regarding critical vulnerabilities in Langflow versions <=1.8.1 and <1.7.2. These flaws allow remote code execution and security bypass, with a CVSS base score of 10.0. Mitigation is available.

Urgent Notice Cybersecurity
Favicon for wid.cert-bund.de

Vercel Next.js Vulnerabilities Allow DoS or Security Bypass

CERT-Bund has issued a security advisory for Vercel Next.js, detailing vulnerabilities that could allow remote attackers to perform Denial of Service attacks or bypass security measures. The advisory affects versions prior to 16.1.7 and 15.5.13, with a CVSS base score of 6.5.

Priority review Notice Cybersecurity
4h ago ENISA News
Favicon for www.enisa.europa.eu

ENISA Chairs EU Agencies Network, Strengthens Cybersecurity

ENISA has taken over the chair of the EU Agencies Network (EUAN) for 2025-2026, focusing on implementing a new governance framework and strengthening cybersecurity across EU agencies. A Memorandum of Understanding was signed to reassert cooperation on shared services, including HR, cybersecurity, and legal services.

Routine Notice Cybersecurity
Favicon for www.pcpd.org.hk

PCPD Releases AI Storybook for Primary Students

The Office of the Privacy Commissioner for Personal Data (PCPD) in Hong Kong has published a new Chinese storybook titled “Adventure in the AI Labyrinth” for primary school students. This initiative aims to educate young students on the proper use of artificial intelligence and the importance of personal data privacy protection.

Routine Guidance Data Privacy
Favicon for www.cisa.gov

CISA KEV: Wing FTP Server Path Disclosure Vulnerability

CISA has added CVE-2025-47813, a path disclosure vulnerability in Wing FTP Server, to its Known Exploited Vulnerabilities (KEV) catalog. This vulnerability affects versions prior to 7.4.4 and requires specific conditions to exploit.

Priority review Notice Cybersecurity
14h ago ICO Decision Notices
Favicon for ico.org.uk

ICO Decision: DFE FOI Request on Student Finance Costs

The UK's Information Commissioner's Office (ICO) issued a decision regarding a Freedom of Information (FOI) request to the Department for Education (DfE) concerning student finance costs. The ICO upheld the DfE's decision to withhold projected cost information under FOIA section 35(1)(a).

Routine Enforcement Government Contracting
14h ago ICO Decision Notices
Favicon for ico.org.uk

ICO upholds Cabinet Office refusal of Trump-Starmer communication records

The UK's Information Commissioner's Office (ICO) has upheld the Cabinet Office's refusal to release records of a communication between Donald Trump and Keir Starmer. The ICO found that the Cabinet Office was justified in citing section 27 (international relations) of the Freedom of Information Act as grounds for withholding the information.

Routine Enforcement Government Contracting
14h ago ICO Decision Notices
Favicon for ico.org.uk

ICO Decision: FOI Complaint Against Council for Delayed Response Upheld

The UK's Information Commissioner's Office (ICO) has upheld a Freedom of Information (FOI) complaint against the London Borough of Barking and Dagenham Council. The council failed to respond to an FOI request within the statutory 20 working days. The ICO has ordered the council to respond within 30 calendar days.

Priority review Enforcement Government Contracting
14h ago ICO Decision Notices
Favicon for ico.org.uk

ICO Decision Notice: NPCC FOI Complaint Not Upheld

The ICO has decided not to uphold a Freedom of Information complaint against the National Police Chiefs' Council (NPCC). The NPCC confirmed it holds no further information beyond what was already provided regarding cross-force access, and the ICO agreed.

Routine Enforcement Judicial Administration

Showing 21–30 of 478 changes

1 2 3 4 5 48

58 monitored sources

ICO Decision Notices

Updated 14h ago 102 recent

CERT-Bund Security Advisories

Updated 4h ago 27 recent

CERT-FR Security Advisories

Updated 1h ago 17 recent

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 2d ago 15 recent

AEPD Resolutions (Spain DPA)

Updated 15h ago 14 recent

NIST Publications

Updated 3d ago 14 recent

WA Data Breach Notifications

Updated 6d ago 12 recent

CISA Known Exploited Vulnerabilities (KEV)

Updated 9h ago 8 recent

CA CPPA Newsroom

Updated 11d ago 7 recent

ICO News & Blogs

Updated 5d ago 7 recent

PCPD Media Statements (HK)

Updated 6h ago 7 recent

Dutch DPA News

Updated 20h ago 7 recent

IAPP Privacy News

Updated 3d ago 6 recent

EDPB Documents (GDPR)

Updated 5d ago 6 recent

ENISA News

Updated 4h ago 6 recent

Hungary NAIH News

Updated 4d ago 5 recent

HITRUST News & Advisories

Updated 4d ago 5 recent

Greece HDPA News

Updated 4d ago 5 recent

Garante Privacy News

Updated 4d ago 5 recent

Luxembourg CNPD News

Updated 4d ago 5 recent

NCSC UK News

Updated 4d ago 5 recent

FR: Information Security Oversight Office

Updated 3d ago 5 recent

NCSC UK Threat Reports

Updated 4d ago 5 recent

Croatia AZOP News

Updated 4d ago 5 recent

PDPC Announcements (Singapore)

Updated 4d ago 5 recent

Canada OPC News & Actions

Updated 4d ago 5 recent

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 2d ago 5 recent

CPPA California Privacy Rulemaking

Updated 4d ago 5 recent

Austria DSB News

Updated 4d ago 5 recent

Romania ANSPDCP Press

Updated 4d ago 5 recent

NIST Cybersecurity Framework Updates

Updated 4d ago 4 recent

OAIC Media Centre

Updated 4d ago 4 recent

PCI SSC Press Releases

Updated 4d ago 4 recent

Regs.gov: Information Security Oversight Office

Updated 3d ago 4 recent

Regs.gov: Office of the National Cyber Director

Updated 3d ago 4 recent

CNIL News (France DPA)

Updated 1d ago 4 recent

CSA Alerts & Advisories (Singapore)

Updated 4d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 4d ago 4 recent

FTC Press Releases

Updated 19d ago 4 recent

CISA Cybersecurity Advisories

Updated 4d ago 4 recent

CISA ICS-CERT Advisories

Updated 19h ago 3 recent

SWIFT News

Updated 4d ago 3 recent

Colorado AG Press Releases

Updated 19h ago 2 recent

BfDI Press Releases (Germany DPA)

Updated 2h ago 2 recent

FR: Office of the National Cyber Director

Updated 3d ago 2 recent

IMY News (Sweden DPA)

Updated 21d ago 2 recent

Garante Privacy Newsletter (Italy DPA)

Updated 8d ago 2 recent

EDPB News

Updated 14d ago 1 recent

NSA Cybersecurity Advisories

Updated 4d ago 1 recent

FedRAMP Changelog

Updated 1d ago 1 recent

UK NCSC Alerts & Advisories

Updated -- 0 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

CNIL News & Enforcement

Updated -- 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

ICO GDPR Guidance

Updated 1mo ago 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

Get Data Privacy & Cybersecurity alerts

Daily digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get Data Privacy & Cybersecurity alerts

We'll email you when new data privacy & cybersecurity changes are detected.

Free. Unsubscribe anytime.