CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  44079 articles  ·  updated every 4 hours · grows forever

44079Total
31137Full Text
Aug 13, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-32650 | Anviz CrossChex Standard downgrade (icsa-26-106-03)

A vulnerability categorized as problematic has been discovered in Anviz CrossChex Standard . Affected is an unknown function. Such manipulation leads to algorithm downgrade. This vulnerability is docu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-3842 | QEMU KVM hw/hyperv/syndbg.c cpu_physical_memory_map out-of-bounds write

A vulnerability identified as critical has been detected in QEMU . Affected by this vulnerability is the function cpu_physical_memory_map of the file hw/hyperv/syndbg.c of the component KVM . Performi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6284 | Horner Automation Cscape/XL4/XL7 PLC weak password (icsa-26-106-02)

A vulnerability labeled as critical has been found in Horner Automation Cscape, XL4 and XL7 PLC . Affected by this issue is some unknown functionality. Executing a manipulation can lead to weak passwo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6421 | Mobatek MobaXterm Home Edition up to 26.1 msimg32.dll uncontrolled search path

A vulnerability marked as problematic has been reported in Mobatek MobaXterm Home Edition up to 26.1 . This affects an unknown part in the library msimg32.dll . The manipulation leads to uncontrolled …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6483 | Wavlink WL-WN530H4 20220721 /cgi-bin/internet.cgi strcat/snprintf os command injection

A vulnerability described as critical has been identified in Wavlink WL-WN530H4 20220721 . This vulnerability affects the function strcat/snprintf of the file /cgi-bin/internet.cgi . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-35496 | CubeCart up to 6.5.x path traversal (EUVD-2026-23370)

A vulnerability classified as critical has been found in CubeCart up to 6.5.x . This issue affects some unknown processing. This manipulation causes path traversal. This vulnerability is handled as CV…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-21719 | CubeCart up to 6.5.x os command injection (EUVD-2026-23366)

A vulnerability classified as critical was found in CubeCart up to 6.5.x . Impacted is an unknown function. Such manipulation leads to os command injection. This vulnerability is uniquely identified a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-34018 | CubeCart up to 6.5.x sql injection (EUVD-2026-23368)

A vulnerability, which was classified as critical , has been found in CubeCart up to 6.5.x . The affected element is an unknown function. Performing a manipulation results in sql injection. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-5797 | expresstech Quiz and Survey Master Plugin up to 10.1.0 on WordPress do_shortcode cross site scripting

A vulnerability, which was classified as problematic , was found in expresstech Quiz and Survey Master Plugin up to 10.1.0 on WordPress. The impacted element is the function do_shortcode . Executing a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6482 | Rapid7 Insight Agent 4.1.0.2 Agent Service openssl.cnf inclusion of functionality from untrusted control sphere

A vulnerability has been found in Rapid7 Insight Agent 4.1.0.2 and classified as problematic . This affects an unknown function of the file openssl.cnf of the component Agent Service . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6486 | classroombookings up to 2.17.0 User Display Name layout.php read displayname cross site scripting

A vulnerability was found in classroombookings up to 2.17.0 and classified as problematic . This impacts the function read of the file crbs-core/application/views/layout.php of the component User Disp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6487 | Qihui jtbc5 CMS 5.0.3.6 Code Endpoint manage.php path path traversal

A vulnerability was found in Qihui jtbc5 CMS 5.0.3.6 . It has been classified as problematic . Affected is an unknown function of the file /dev/code/common/diplomat/manage.php of the component Code En…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6441 | flightbycanto Canto Plugin up to 3.1.1 on WordPress class-canto.php updateOptions authorization

A vulnerability was found in flightbycanto Canto Plugin up to 3.1.1 on WordPress. It has been declared as critical . Affected by this vulnerability is the function updateOptions of the file class-cant…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6443 | essentialplugin Accordion and Accordion Slider Plugin 1.4.6 on WordPress malicious code

A vulnerability was found in essentialplugin Accordion and Accordion Slider Plugin 1.4.6 on WordPress. It has been rated as critical . Affected by this issue is some unknown functionality. Performing …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-4659 | unitecms Unlimited Elements for Elementor Plugin up to 2.0.6 on WordPress Setting URLtoRelative/URLToPath URL path traversal

A vulnerability categorized as critical has been discovered in unitecms Unlimited Elements for Elementor Plugin up to 2.0.6 on WordPress. This affects the function URLtoRelative/URLToPath of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6488 | QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 GET Request Parameter admin/editcourse.php ID sql injection

A vulnerability identified as critical has been detected in QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 . This vulnerability affects unknown code of the file admin/editcourse.php of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6489 | QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 Background Management Page admin/addteacher.php image unrestricted upload

A vulnerability labeled as critical has been found in QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 . This issue affects some unknown processing of the file admin/addteacher.php of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6490 | QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 GET Request Parameter admin/deletecourse.php ID sql injection

A vulnerability marked as critical has been reported in QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 . Impacted is an unknown function of the file admin/deletecourse.php of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6491 | libvips up to 8.18.2 nip2 vips7compat.c im_minpos_vec n heap-based overflow (Issue 4965)

A vulnerability described as problematic has been identified in libvips up to 8.18.2 . The affected element is the function im_minpos_vec of the file libvips/deprecated/vips7compat.c of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6492 | arnobt78 Hotel Booking Management System up to f8922d0e0f6ac1cc761974c7616f44c2bbc04bea Health Check Endpoint /api/health/detailed information disclosure

A vulnerability classified as problematic has been found in arnobt78 Hotel Booking Management System up to f8922d0e0f6ac1cc761974c7616f44c2bbc04bea . The impacted element is an unknown function of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6493 | lukevella rallly up to 4.7.4 Reset Password reset-password-form.tsx redirectTo cross site scripting

A vulnerability classified as problematic was found in lukevella rallly up to 4.7.4 . This affects an unknown function of the file apps/web/src/app/[locale]/(auth)/reset-password/components/reset-pass…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-23853 | Dell PowerProtect Data Domain up to 7.13.1.50/8.3.1.20/8.5 weak credentials (dsa-2026-060)

A vulnerability, which was classified as critical , has been found in Dell PowerProtect Data Domain up to 7.13.1.50/8.3.1.20/8.5 . This impacts an unknown function. The manipulation leads to use of we…

VulDB Read →
◉ Threat Intelligence Apr 17, 2026
Lumma Stealer infection with Sectop RAT (ArechClient2), (Fri, Apr 17th)

Introduction

SANS ISC Read →
◉ Threat Intelligence Apr 17, 2026
ISC Stormcast For Friday, April 17th, 2026 https://isc.sans.edu/podcastdetail/9896, (Fri, Apr 17th)
SANS ISC Read →
← Prev 1236 / 1837 Next →