CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  42738 articles  ·  updated every 4 hours · grows forever

42738Total
30446Full Text
Aug 08, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41173 | open-telemetry opentelemetry-dotnet-contrib up to 0.1.0-alpha.7 Sampling Endpoint ReadAsStringAsync allocation of resources (GHSA-28xm-prxc-5866 / EUVD-2026-25271)

A vulnerability, which was classified as problematic , has been found in open-telemetry opentelemetry-dotnet-contrib up to 0.1.0-alpha.7 . Impacted is the function ReadAsStringAsync of the component S…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41078 | open-telemetry opentelemetry-dotnet/OpenTelemetry.Exporter.Jaeger allocation of resources (GHSA-38h3-2333-qx47)

A vulnerability, which was classified as problematic , was found in open-telemetry opentelemetry-dotnet and OpenTelemetry.Exporter.Jaeger up to 1.6.0-rc.1 . The affected element is an unknown function…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41241 | pretalx 2.3.1/2.3.2 cross site scripting (GHSA-cjcx-jfp2-f7m2)

A vulnerability has been found in pretalx 2.3.1/2.3.2 and classified as problematic . The impacted element is an unknown function. The manipulation leads to cross site scripting. This vulnerability is…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-6074 | Intrado 911 Emergency Gateway 5.x/6.x/7.x EGW Management Interface path traversal (icsa-26-113-06)

A vulnerability was found in Intrado 911 Emergency Gateway 5.x/6.x/7.x and classified as critical . This affects an unknown function of the component EGW Management Interface . The manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41138 | FlowiseAI Flowise up to 3.0.x question code injection (GHSA-f228-chmx-v6j6)

A vulnerability was found in FlowiseAI Flowise up to 3.0.x . It has been classified as critical . This impacts an unknown function. This manipulation of the argument question causes code injection. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41268 | FlowiseAI Flowise up to 3.0.x Environment Variable NODE_OPTIONS input validation (GHSA-cvrr-qhgw-2mm6)

A vulnerability was found in FlowiseAI Flowise up to 3.0.x . It has been declared as problematic . Affected is an unknown function of the component Environment Variable Handler . Such manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41137 | FlowiseAI Flowise/flowise-components up to 3.0.x CSVAgent code injection (GHSA-9wc7-mj3f-74xv)

A vulnerability was found in FlowiseAI Flowise and flowise-components up to 3.0.x . It has been rated as critical . Affected by this vulnerability is an unknown functionality of the component CSVAgent…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41266 | FlowiseAI Flowise up to 3.0.x :id information disclosure (GHSA-4jpm-cgx2-8h37)

A vulnerability categorized as problematic has been discovered in FlowiseAI Flowise up to 3.0.x . Affected by this issue is some unknown functionality of the file /api/v1/public-chatbotConfig/:id . Ex…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41267 | FlowiseAI Flowise up to 3.0.x Account Registration Endpoint authorization (GHSA-48m6-ch88-55mj)

A vulnerability identified as problematic has been detected in FlowiseAI Flowise up to 3.0.x . This affects an unknown part of the component Account Registration Endpoint . The manipulation leads to a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41269 | FlowiseAI Flowise up to 3.0.x Setting unrestricted upload (GHSA-rh7v-6w34-w2rr / EUVD-2026-25286)

A vulnerability labeled as critical has been found in FlowiseAI Flowise up to 3.0.x . This vulnerability affects unknown code of the component Setting Handler . The manipulation results in unrestricte…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41273 | FlowiseAI Flowise up to 3.0.x missing authentication (GHSA-6f7g-v4pp-r667 / EUVD-2026-25290)

A vulnerability marked as critical has been reported in FlowiseAI Flowise up to 3.0.x . This issue affects some unknown processing. This manipulation causes missing authentication. The identification …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41270 | FlowiseAI Flowise/flowise-components up to 3.0.x Custom Function Feature access control (GHSA-xhmj-rg95-44hv / EUVD-2026-25287)

A vulnerability described as critical has been identified in FlowiseAI Flowise and flowise-components up to 3.0.x . Impacted is an unknown function of the component Custom Function Feature . Such mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41271 | FlowiseAI Flowise/flowise-components up to 3.0.x API Chain server-side request forgery (GHSA-6r77-hqx7-7vw8 / EUVD-2026-25288)

A vulnerability classified as critical has been found in FlowiseAI Flowise and flowise-components up to 3.0.x . The affected element is an unknown function of the component API Chain Component . Perfo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41272 | FlowiseAI Flowise/flowise-components up to 3.0.x secureAxiosRequest/secureFetch server-side request forgery (GHSA-2x8m-83vc-6wv4 / EUVD-2026-25289)

A vulnerability classified as critical was found in FlowiseAI Flowise and flowise-components up to 3.0.x . The impacted element is an unknown function of the component secureAxiosRequest/secureFetch .…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41264 | FlowiseAI Flowise up to 3.0.x CSV_Agents incomplete blacklist (GHSA-3hjv-c53m-58jj)

A vulnerability, which was classified as critical , has been found in FlowiseAI Flowise up to 3.0.x . This affects the function CSV_Agents . The manipulation leads to incomplete blacklist. This vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41265 | FlowiseAI Flowise up to 3.0.x Airtable_Agents command injection (GHSA-v38x-c887-992f)

A vulnerability, which was classified as critical , was found in FlowiseAI Flowise up to 3.0.x . This impacts the function Airtable_Agents . The manipulation results in command injection. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41276 | FlowiseAI Flowise up to 3.0.x Password Reset Token reset-password resetPassword improper authentication (GHSA-f6hc-c5jr-878p)

A vulnerability has been found in FlowiseAI Flowise up to 3.0.x and classified as critical . Affected is the function resetPassword of the file /api/v1/account/reset-password of the component Password…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41275 | FlowiseAI Flowise up to 3.0.x cleartext transmission (GHSA-x5w6-38gp-mrqh / EUVD-2026-25291)

A vulnerability was found in FlowiseAI Flowise up to 3.0.x and classified as problematic . Affected by this vulnerability is an unknown functionality. Such manipulation leads to cleartext transmission…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-6941 | radareorg radare2 up to 6.1.3 zrp Archive link following

A vulnerability was found in radareorg radare2 up to 6.1.3 . It has been classified as critical . Affected by this issue is some unknown functionality of the component zrp Archive Handler . Performing…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-25874 | Hugging Face LeRobot up to 0.5.1 Pickle pickle.loads deserialization (ID 3047)

A vulnerability was found in Hugging Face LeRobot up to 0.5.1 . It has been declared as critical . This affects the function pickle.loads of the component Pickle Handler . Executing a manipulation can…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41277 | FlowiseAI Flowise up to 3.0.x DocumentStore Creation Endpoint repository.save access control (GHSA-3prp-9gf7-4rxx)

A vulnerability was found in FlowiseAI Flowise up to 3.0.x . It has been rated as critical . This vulnerability affects the function repository.save of the component DocumentStore Creation Endpoint . …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-6376 | SpiceJet Online Booking System missing authentication (icsa-26-113-04 / EUVD-2026-25300)

A vulnerability categorized as critical has been discovered in SpiceJet Online Booking System . This issue affects some unknown processing. The manipulation results in missing authentication. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41278 | FlowiseAI Flowise up to 3.0.x :id sanitizeFlowDataForPublicEndpoint information disclosure (GHSA-w47f-j8rh-wx87)

A vulnerability identified as problematic has been detected in FlowiseAI Flowise up to 3.0.x . Impacted is the function sanitizeFlowDataForPublicEndpoint of the file /api/v1/public-chatflows/:id . Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 24, 2026
CVE-2026-41279 | FlowiseAI Flowise up to 3.0.x generate authorization (GHSA-5fw2-mwhh-9947)

A vulnerability labeled as problematic has been found in FlowiseAI Flowise up to 3.0.x . The affected element is an unknown function of the file /api/v1/text-to-speech/generate . Such manipulation lea…

VulDB Read →
← Prev 1092 / 1781 Next →