A vulnerability classified as critical was found in Directus up to 11.16.x . Impacted is an unknown function of the file /files/ . Such manipulation of the argument filename_disk leads to improper acc…
cyberintel.kalymoon.com · 46520 articles · updated every 4 hours · grows forever
A vulnerability classified as critical was found in Directus up to 11.16.x . Impacted is an unknown function of the file /files/ . Such manipulation of the argument filename_disk leads to improper acc…
A vulnerability, which was classified as problematic , has been found in Directus up to 11.16.x . The affected element is an unknown function. Performing a manipulation results in information disclosu…
A vulnerability, which was classified as critical , was found in OSGeo MapServer up to 7.x . The impacted element is an unknown function. Executing a manipulation can lead to injection. This vulnerabi…
A vulnerability has been found in GatewayGeo MapServer for Windows on Windows and classified as critical . This affects an unknown function. The manipulation leads to injection. This vulnerability is …
A vulnerability was found in LimeSurvey 6.15.20 and classified as problematic . This impacts an unknown function. The manipulation of the argument Box[title]/box[url] results in cross site scripting. …
A vulnerability was found in pyLoad up to 0.5.0b3.dev96 . It has been classified as problematic . Affected is an unknown function of the file /json/package_order of the component WebUI JSON Endpoint .…
A vulnerability was found in sgbett bsv-ruby-sdk up to 0.8.1 . It has been declared as problematic . Affected by this vulnerability is the function BSV::Network of the component Transaction Handler . …
A vulnerability was found in sgbett bsv-ruby-sdk, bsv-sdk and bsv-wallet . It has been rated as critical . Affected by this issue is the function BSV::Wallet::WalletClient . Performing a manipulation …
A vulnerability categorized as critical has been discovered in Ethereum web3.py up to 7.14.x/8.0.0b1 . This affects the function eth_call/call of the component Backend Service . Executing a manipulati…
A vulnerability identified as critical has been detected in Rapid7 Velociraptor up to 0.74.6/0.75.6/0.76.1 . This vulnerability affects unknown code of the component Client Monitoring Message handler …
A vulnerability labeled as critical has been found in unjs unhead up to 2.1.12 . This issue affects the function useHeadSafe of the file packages/unhead/src/plugins/safe.ts . The manipulation results …
A vulnerability marked as critical has been reported in hashgraph guardian up to 3.5.0 . Impacted is an unknown function of the component Environment Variable Handler . This manipulation causes exposu…
A vulnerability described as problematic has been identified in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . The affected element is an unknown function. Such manipulation leads to ou…
A vulnerability classified as problematic has been found in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . The impacted element is an unknown function. Performing a manipulation results…
A vulnerability classified as critical was found in linuxdeepin dde-control-center and deepin-deepinid-plugin . This affects an unknown function of the component Deepinid Cloud Service . Executing a m…
Start Here: Strong Monitoring, Behavior-Based Controls, Virtual Patching Thanks to Anthropic's Mythos presaging a world in which zero-day exploits are common, one cybersecurity expert says the new man…
Also: Cambodia Moves to Combat Online Scam Networks Every week, ISMG rounds up cybersecurity incidents in digital assets. This week, Bithumb's recovery plan, Circle criticized, a new Cambodian law to …
Former DoD CIO Beavers on Ethics, Reliability and AI as a National Security Tool As AI is increasingly used in defense operations, a critical question emerges: Who controls the system - the military o…
Google’s accelerated post-quantum encryption deadline has spurred other leaders in the industry, including Cloudflare, to consider pushing forward their own plans. The US National Institute of Standar…
Mallory is launching an AI-native threat intelligence platform, purpose-built to answer the questions CISOs and their teams are asking every day: What are the real threat vectors for our organization?…
In the latest demonstration of how AI assistants can help with bug hunting, Horizon3.ai researcher Naveen Sunkavally used Claude to unearth CVE-2026-34197, a remote code execution vulnerability in Apa…
MyLovely.AI, an AI girlfriend platform, suffered a data breach that exposed over 100,000 users. MyLovely.AI allows people to create personalized not safe for work (NSFW) content and engage in real-tim…
Anthropic’s Claude Managed Agents are a suite of composable APIs for building and deploying cloud-hosted agents at scale, handling sandboxed code execution, checkpointing, credential management, scope…
The cybersecurity community is waiting with bated breath to see if Iranian hackers will honor a ceasefire that doesn't actually name or directly involve them.