CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  44700 articles  ·  updated every 4 hours · grows forever

44700Total
31395Full Text
Aug 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4479 | wpcodefactory WholeSale Products Dynamic Pricing Management WooCommerce Plugin Setting cross site scripting

A vulnerability was found in wpcodefactory WholeSale Products Dynamic Pricing Management WooCommerce Plugin up to 1.2 on WordPress. It has been rated as problematic . This issue affects some unknown p…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27681 | SAP Business Planning and Consolidation and Business Warehouse sql injection

A vulnerability categorized as critical has been discovered in SAP Business Planning and Consolidation and Business Warehouse up to SAP_BW 750 . Impacted is an unknown function. Executing a manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27683 | SAP BusinessObjects Business Intelligence Platform 2025/2027/ENTERPRISE 430 cross site scripting

A vulnerability identified as problematic has been detected in SAP BusinessObjects Business Intelligence Platform 2025/2027/ENTERPRISE 430 . The affected element is an unknown function. The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-26460 | vTiger CRM 8.4.0 Dashboard DashBoardTab tabid cross site scripting

A vulnerability labeled as problematic has been found in vTiger CRM 8.4.0 . The impacted element is the function DashBoardTab of the component Dashboard Module . The manipulation of the argument tabid…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-6203 | wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress wp_redirect redirect_to_on_logout

A vulnerability marked as problematic has been reported in wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress. This affects the function wp_redirect of the component User Registr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-1607 | Surbma Plugin up to 2.1 on WordPress Shortcode surbma-bookingcom cross site scripting

A vulnerability described as problematic has been identified in Surbma Plugin up to 2.1 on WordPress. This impacts the function surbma-bookingcom of the component Shortcode Handler . Such manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-40313 | MervinPraison PraisonAI up to 4.5.139 GITHUB_TOKEN inclusion of functionality from untrusted control sphere (GHSA-3959-6v5q-45q2)

A vulnerability classified as critical has been found in MervinPraison PraisonAI up to 4.5.139 . Affected is an unknown function. Performing a manipulation of the argument GITHUB_TOKEN results in incl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-34069 | nimiq core-rs-albatross up to 1.2.x get_macro_blocks assertion (GHSA-48m6-486p-9j8p)

A vulnerability classified as problematic was found in nimiq core-rs-albatross up to 1.2.x . Affected by this vulnerability is the function get_macro_blocks . Executing a manipulation can lead to reac…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4059 | devitemsllc ShopLentor Plugin up to 3.3.5 on WordPress Shortcode woolentor_quickview_button cross site scripting

A vulnerability, which was classified as problematic , has been found in devitemsllc ShopLentor Plugin up to 3.3.5 on WordPress. Affected by this issue is the function woolentor_quickview_button of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4388 | 10web Form Maker Plugin up to 1.15.40 on WordPress sanitize_text_field Matrix cross site scripting

A vulnerability, which was classified as problematic , was found in 10web Form Maker Plugin up to 1.15.40 on WordPress. This affects the function sanitize_text_field . The manipulation of the argument…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-0512 | SAP Supplier Relationship Management 713/714/SRM_SERVER 702 SICF cross site scripting

A vulnerability has been found in SAP Supplier Relationship Management 713/714/SRM_SERVER 702 and classified as problematic . This vulnerability affects unknown code of the component SICF Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-34262 | SAP HANA Cockpit/HANA Database Explorer SAP_HANA_COCKPIT 2.0 insufficiently protected credentials

A vulnerability was found in SAP HANA Cockpit and HANA Database Explorer SAP_HANA_COCKPIT 2.0 and classified as problematic . This issue affects some unknown processing. Such manipulation leads to ins…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-39425 | 1Panel-dev MaxKB up to 2.7.x Chatbot Interface /admin/api/workspace/ prologue cross site scripting (GHSA-3rq5-pgm7-pvp4)

A vulnerability was found in 1Panel-dev MaxKB up to 2.7.x . It has been classified as problematic . Impacted is an unknown function of the file /admin/api/workspace/ of the component Chatbot Interface…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-39426 | 1Panel-dev MaxKB up to 2.7.x cross site scripting (GHSA-q2qg-43vq-f2wv)

A vulnerability was found in 1Panel-dev MaxKB up to 2.7.x . It has been declared as problematic . The affected element is an unknown function. Executing a manipulation can lead to cross site scripting…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2025-70936 | vTiger CRM 8.4.0 MailManager _folder cross site scripting

A vulnerability was found in vTiger CRM 8.4.0 . It has been rated as problematic . The impacted element is an unknown function of the component MailManager Module . The manipulation of the argument _f…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-39423 | 1Panel-dev MaxKB up to 2.7.x AI Chat Interface cross site scripting (GHSA-462x-99gf-mp79)

A vulnerability categorized as problematic has been discovered in 1Panel-dev MaxKB up to 2.7.x . This affects an unknown function of the component AI Chat Interface . The manipulation results in cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-39422 | 1Panel-dev MaxKB up to 2.7.x Public Chat Interface /ui/chat/ name/icon cross site scripting (GHSA-wf7p-3jq5-q52w)

A vulnerability identified as problematic has been detected in 1Panel-dev MaxKB up to 2.7.x . This impacts an unknown function of the file /ui/chat/ of the component Public Chat Interface . This manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-2582 | vendidero Germanized for WooCommerce Plugin up to 3.20.5 on WordPress Shortcode account_holder code injection

A vulnerability labeled as critical has been found in vendidero Germanized for WooCommerce Plugin up to 3.20.5 on WordPress. Affected is an unknown function of the component Shortcode Handler . Such m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-31908 | Apache APISIX up to 3.15.0 Forward Auth Plugin injection

A vulnerability marked as critical has been reported in Apache APISIX up to 3.15.0 . Affected by this vulnerability is an unknown functionality of the component Forward Auth Plugin . Performing a mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-31923 | Apache APISIX up to 3.14.x Openid-connect tls_verify cleartext transmission

A vulnerability described as problematic has been identified in Apache APISIX up to 3.14.x . Affected by this issue is some unknown functionality of the component Openid-connect . Executing a manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-31924 | Apache APISIX up to 3.14.x tencent-cloud-cls cleartext transmission

A vulnerability classified as problematic has been found in Apache APISIX up to 3.14.x . This affects an unknown part of the component tencent-cloud-cls . The manipulation leads to cleartext transmiss…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-33929 | Apache PDFBox Examples up to 2.0.36/3.0.7 ExtractEmbeddedFiles path traversal

A vulnerability classified as critical was found in Apache PDFBox Examples up to 2.0.36/3.0.7 . This vulnerability affects unknown code of the component ExtractEmbeddedFiles . The manipulation results…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-39984 | sigstore timestamp-authority up to 2.0.5 certificate validation

A vulnerability, which was classified as critical , has been found in sigstore timestamp-authority up to 2.0.5 . This issue affects some unknown processing. This manipulation causes improper certifica…

VulDB Read →
◇ Industry News & Leadership Apr 14, 2026
Hackers Use Fake Proxifier Installer on GitHub to Spread ClipBanker Crypto-Stealing Malware

A dangerous malware campaign has been silently targeting cryptocurrency users by hiding inside a fake version of Proxifier, a popular proxy software tool. Threat actors set up a GitHub repository desi…

Cybersecurity News Read →
← Prev 1314 / 1863 Next →