CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  42403 articles  ·  updated every 4 hours · grows forever

42403Total
30225Full Text
Aug 07, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
◬ AI & Machine Learning Apr 27, 2026
Can SOC Operators Explain their Decisions while Triaging Alarms? A Real-World Study

arXiv:2604.22001v1 Announce Type: new Abstract: Security Operations Centers (SOCs) are pivotal in modern enterprises. Tasked to monitor complex network environments constantly under attack, SOCs can b…

arXiv Security Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7150 | dh1011 auto-favicon up to f189116a9259950c2393f114dbcb94dde0ad864b MCP Tool server.py generate_favicon_from_url image_url server-side request forgery

A vulnerability was found in dh1011 auto-favicon up to f189116a9259950c2393f114dbcb94dde0ad864b and classified as critical . This issue affects the function generate_favicon_from_url of the file src/a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7151 | Tenda HG3 2.0 /boaform/formIPv6Routing formUploadConfig destNet stack-based overflow

A vulnerability was found in Tenda HG3 2.0 . It has been classified as critical . Impacted is the function formUploadConfig of the file /boaform/formIPv6Routing . This manipulation of the argument des…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7152 | Totolink A8000RU 7.1cu.643_b20200521 CGI /cgi-bin/cstecgi.cgi setTelnetCfg telnet_enabled os command injection

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521 . It has been declared as critical . The affected element is the function setTelnetCfg of the file /cgi-bin/cstecgi.cgi of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7153 | Totolink A8000RU 7.1cu.643_b20200521 CGI /cgi-bin/cstecgi.cgi setMiniuiHomeInfoShow sys_info os command injection

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521 . It has been rated as critical . The impacted element is the function setMiniuiHomeInfoShow of the file /cgi-bin/cstecgi.cgi of the c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7154 | Totolink A8000RU 7.1cu.643_b20200521 CGI /cgi-bin/cstecgi.cgi setAdvancedInfoShow tty_server os command injection

A vulnerability categorized as critical has been discovered in Totolink A8000RU 7.1cu.643_b20200521 . This affects the function setAdvancedInfoShow of the file /cgi-bin/cstecgi.cgi of the component CG…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7155 | Totolink A8000RU 7.1cu.643_b20200521 CGI /cgi-bin/cstecgi.cgi setLoginPasswordCfg admpass os command injection

A vulnerability identified as critical has been detected in Totolink A8000RU 7.1cu.643_b20200521 . This impacts the function setLoginPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component CGI H…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7156 | Totolink A8000RU 7.1cu.643_b20200521 CGI /cgi-bin/cstecgi.cgi CsteSystem HTTP os command injection

A vulnerability labeled as critical has been found in Totolink A8000RU 7.1cu.643_b20200521 . Affected is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the component CGI Handler . The man…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7157 | disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc aider_ai_code server.py relative_editable_files command injection

A vulnerability marked as critical has been reported in disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc . Affected by this vulnerability is an unknown functionality of the file …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7158 | dmitryglhf mcp-url-downloader up to 4b8cf2de55f6e8864a77d108e8a94a5b8e4394c6 server.py _validate_url_safe url server-side request forgery

A vulnerability described as critical has been identified in dmitryglhf mcp-url-downloader up to 4b8cf2de55f6e8864a77d108e8a94a5b8e4394c6 . Affected by this issue is the function _validate_url_safe of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7159 | douinc mkdocs-mcp-plugin up to 0.4.1 server.py read_document/list_documents docs_dir/file_path path traversal

A vulnerability classified as critical has been found in douinc mkdocs-mcp-plugin up to 0.4.1 . This affects the function read_document/list_documents of the file server.py . Performing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7160 | Tenda HG3 2.0 /boaform/formTracert datasize command injection

A vulnerability classified as critical was found in Tenda HG3 2.0 . This vulnerability affects the function formTracert of the file /boaform/formTracert . Executing a manipulation of the argument data…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-3868 | Moxa EDR-8010/EDR-G9010 up to 3.23 HTTPS Management Interface length parameter

A vulnerability, which was classified as critical , has been found in Moxa EDR-8010 and EDR-G9010 up to 3.23 . This issue affects some unknown processing of the component HTTPS Management Interface . …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-7106 | jgrodgers Highland Software Custom Role Manager Plugin up to 1.0.0 on WordPress Profile Page hscrm_save_user_roles privileges management

A vulnerability, which was classified as critical , was found in jgrodgers Highland Software Custom Role Manager Plugin up to 1.0.0 on WordPress. Impacted is the function hscrm_save_user_roles of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-42363 | GeoVision GV-IP Device Utility 9.0.5.0 Broadcast Message reliance on security through obscurity

A vulnerability has been found in GeoVision GV-IP Device Utility 9.0.5.0 and classified as critical . The affected element is an unknown function of the component Broadcast Message Handler . This mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-3867 | Moxa EDR-8010/EDR-G9010 up to 3.23 Configuration File improper ownership management

A vulnerability was found in Moxa EDR-8010 and EDR-G9010 up to 3.23 and classified as problematic . The impacted element is an unknown function of the component Configuration File Handler . Such manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-3006 | WinFSP up to 2.1.25156 Kernel heap-based overflow

A vulnerability was found in WinFSP up to 2.1.25156 . It has been classified as critical . This affects an unknown function of the component Kernel . Performing a manipulation results in heap-based bu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-33277 | JPCERT LogonTracer up to 1.x os command injection

A vulnerability was found in JPCERT LogonTracer up to 1.x . It has been declared as critical . This impacts an unknown function. Executing a manipulation can lead to os command injection. The identifi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-33566 | JPCERT LogonTracer up to 1.x Windows Event data query logic injection

A vulnerability was found in JPCERT LogonTracer up to 1.x . It has been rated as problematic . Affected is an unknown function of the component Windows Event Handler . The manipulation leads to improp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-27172 | Apache Camel up to 4.14.5/4.18.0 camel-consul ConsulRegistry malicious deserialization

A vulnerability categorized as critical has been discovered in Apache Camel up to 4.14.5/4.18.0 . Affected by this vulnerability is an unknown functionality of the component camel-consul ConsulRegistr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-33453 | Apache Camel up to 4.14.4/4.18.0 CoAP URI Query Parameter injection

A vulnerability identified as critical has been detected in Apache Camel up to 4.14.4/4.18.0 . Affected by this issue is some unknown functionality of the component CoAP URI Query Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-33454 | Apache Camel up to 4.14.5/4.18.0 Inbound Header Filter injection

A vulnerability labeled as critical has been found in Apache Camel up to 4.14.5/4.18.0 . This affects an unknown part of the component Inbound Header Filter . Such manipulation leads to injection. Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-40022 | Apache Camel up to 4.14.5/4.18.1 Camel-Platform-HTTP-Main improper authentication

A vulnerability marked as critical has been reported in Apache Camel up to 4.14.5/4.18.1 . This vulnerability affects unknown code of the component Camel-Platform-HTTP-Main . Performing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 27, 2026
CVE-2026-40048 | Apache Camel up to 4.18.1/4.19.x Camel-PQC deserialization

A vulnerability described as critical has been identified in Apache Camel up to 4.18.1/4.19.x . This issue affects some unknown processing of the component Camel-PQC . Executing a manipulation can lea…

VulDB Read →
← Prev 1055 / 1767 Next →