CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  42403 articles  ·  updated every 4 hours · grows forever

42403Total
30225Full Text
Aug 07, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7220 | jackwrichards FastlyMCP up to 6f3d0b0e654fc51076badc7fa16c03c461f95620 fastly_cli Tool fastly-mcp.mjs command os command injection

A vulnerability was found in jackwrichards FastlyMCP up to 6f3d0b0e654fc51076badc7fa16c03c461f95620 . It has been classified as critical . This impacts an unknown function of the file fastly-mcp.mjs o…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7221 | TencentCloudBase CloudBase-MCP up to 2.17.0 open-url API Endpoint interactive-server.ts openUrl req.body.url server-side request forgery (Issue 509)

A vulnerability was found in TencentCloudBase CloudBase-MCP up to 2.17.0 . It has been declared as critical . Affected is the function openUrl of the file mcp/src/interactive-server.ts of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7222 | code-projects Coaching Management System 1.0 Complaint Form Page complaint.php cross site scripting

A vulnerability was found in code-projects Coaching Management System 1.0 . It has been rated as problematic . Affected by this vulnerability is an unknown functionality of the file /cims/modules/stud…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7223 | BigSweetPotatoStudio HyperChat up to 2.0.0-alpha.63 AI Proxy Middleware aiProxyMiddleware.mts fetch baseurl server-side request forgery (Issue 142)

A vulnerability categorized as critical has been discovered in BigSweetPotatoStudio HyperChat up to 2.0.0-alpha.63 . Affected by this issue is the function fetch of the file packages/core/src/http/aiP…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7224 | SourceCodester Pizzafy Ecommerce System 1.0 ajax.php?action=delete_cart ID sql injection

A vulnerability identified as critical has been detected in SourceCodester Pizzafy Ecommerce System 1.0 . This affects the function delete_cart of the file /admin/ajax.php?action=delete_cart . Perform…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7225 | SourceCodester Pizzafy Ecommerce System 1.0 ajax.php?action=delete_menu ID sql injection

A vulnerability labeled as critical has been found in SourceCodester Pizzafy Ecommerce System 1.0 . This vulnerability affects the function delete_menu of the file /admin/ajax.php?action=delete_menu .…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7226 | SourceCodester Pizzafy Ecommerce System 1.0 ajax.php?action=login2 e-mail sql injection

A vulnerability marked as critical has been reported in SourceCodester Pizzafy Ecommerce System 1.0 . This issue affects the function login2 of the file /admin/ajax.php?action=login2 . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7227 | SourceCodester Pizzafy Ecommerce System 1.0 ajax.php?action=login e-mail sql injection

A vulnerability described as critical has been identified in SourceCodester Pizzafy Ecommerce System 1.0 . Impacted is the function Login of the file /admin/ajax.php?action=login . The manipulation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7228 | SourceCodester Pizzafy Ecommerce System 1.0 ajax.php?action=get_cart_count ID sql injection

A vulnerability classified as critical has been found in SourceCodester Pizzafy Ecommerce System 1.0 . The affected element is the function get_cart_count of the file /admin/ajax.php?action=get_cart_c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-41464 | ProjeQtor up to 12.4.3 Password Hash objectDetail.php authorization

A vulnerability classified as problematic was found in ProjeQtor up to 12.4.3 . The impacted element is an unknown function of the file objectDetail.php of the component Password Hash Handler . Such m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7229 | code-projects Coaching Management System 1.0 POST reply.php complaintreply sql injection

A vulnerability, which was classified as critical , has been found in code-projects Coaching Management System 1.0 . This affects an unknown function of the file /cims/modules/admin/reply.php of the c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-41465 | ProjeQtor up to 12.4.3 dynamicDialog.php logname path traversal

A vulnerability, which was classified as critical , was found in ProjeQtor up to 12.4.3 . This impacts an unknown function of the file dynamicDialog.php . Executing a manipulation of the argument logn…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-41463 | ProjeQtor up to 12.4.3 Archive Extraction path traversal

A vulnerability has been found in ProjeQtor up to 12.4.3 and classified as critical . Affected is an unknown function of the component Archive Extraction Handler . The manipulation leads to path trave…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-41466 | ProjeQtor up to 12.4.3 Security.php checkValidHtmlText cross site scripting

A vulnerability was found in ProjeQtor up to 12.4.3 and classified as problematic . Affected by this vulnerability is the function checkValidHtmlText of the file Security.php . The manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-30352 | leonvanzyl autocoder 79d02a Command /devserver/start privilege escalation

A vulnerability was found in leonvanzyl autocoder 79d02a . It has been classified as critical . Affected by this issue is some unknown functionality of the file /devserver/start of the component Comma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-30351 | leonvanzyl autocoder 79d02a URL path traversal

A vulnerability was found in leonvanzyl autocoder 79d02a . It has been declared as critical . This affects an unknown part of the component URL Handler . Such manipulation leads to path traversal. Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-41462 | ProjeQtor up to 12.4.3 Authentication Endpoint Username sql injection

A vulnerability was found in ProjeQtor up to 12.4.3 . It has been rated as critical . This vulnerability affects unknown code of the component Authentication Endpoint . Performing a manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2025-54505 | AMD EPYC 7001 Processors/EPYC Embedded 3000 Processors Floating Point information disclosure

A vulnerability categorized as problematic has been discovered in AMD EPYC 7001 Processors and EPYC Embedded 3000 Processors . This issue affects some unknown processing of the component Floating Poin…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-41467 | ProjeQtor up to 12.4.3 File checkValidFileName cross site scripting

A vulnerability identified as problematic has been detected in ProjeQtor up to 12.4.3 . Impacted is the function checkValidFileName of the component File Handler . The manipulation leads to cross site…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7230 | SourceCodester Safety Anger Pad 1.0 angerDisplay cross site scripting

A vulnerability labeled as problematic has been found in SourceCodester Safety Anger Pad 1.0 . The affected element is an unknown function. The manipulation of the argument angerDisplay results in cro…

VulDB Read →
◉ Threat Intelligence Apr 27, 2026
27th April – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 27th April, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Vercel, a frontend cloud platform, has disclosed a s…

Check Point Research Read →
◉ Threat Intelligence Apr 27, 2026
TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Identified, and Tier 1 Coverage Returns, (Mon, Apr 27th)

This update succeeds&#;x26;#;xc2;&#;x26;#;xa0;TeamPCP Supply Chain Campaign Update 007, published April 8, 2026, which left the campaign in credential-monetization mode following the Cisco source code…

SANS ISC Read →
◇ Industry News & Leadership Apr 27, 2026
Is Your IAM Ready for AI?

Explore how AI is reshaping the security landscape—uncover emerging threats, identity challenges, and the strategies needed to stay ahead.

Data Breach Today Read →
◇ Industry News & Leadership Apr 27, 2026
Microsoft Outlook.com Issue Blocks Users From Accessing Emails

Microsoft has acknowledged a service degradation affecting Outlook.com, with users reporting difficulties accessing the platform as of Monday, April 27, 2026. The company’s official Microsoft 365 Stat…

Cybersecurity News Read →
← Prev 1049 / 1767 Next →