Here’s the reality most security teams are already living: over 80% of employees are using unapproved AI tools at work, and nearly half are actively hiding it from IT. The question facing every organi…
cyberintel.kalymoon.com · 46676 articles · updated every 4 hours · grows forever
Here’s the reality most security teams are already living: over 80% of employees are using unapproved AI tools at work, and nearly half are actively hiding it from IT. The question facing every organi…
We evolved for a linear world. If you walk for an hour, you cover a certain distance. Walk for two hours and you cover double that distance. This intuition served us well on the savannah. But it catas…
Rapid7’s Incident Response (IR) team was engaged to investigate an incident involving exploitation of CVE-2025-59718 against a vulnerable FortiGate appliance. In December 2025, Fortinet disclosed this…
Horilla v1.3 - RCE
Microsoft MMC MSC EvilTwin - Local Admin Creation
SQLite 3.50.1 - Heap Overflow
xibocms 3.3.4 - RCE
7-Zip 24.00 - Directory Traversal
FortiWeb 8.0.2 - Remote Code Execution
A vulnerability was found in Red Hat Process Automation 7 . It has been classified as critical . Affected by this vulnerability is an unknown functionality of the component Process Automation Manager …
A vulnerability was found in Red Hat Ansible Automation Platform 2 . It has been declared as critical . Affected by this issue is some unknown functionality. Executing a manipulation can lead to incor…
A vulnerability was found in Red Hat Multicluster Engine for Kubernetes . It has been rated as critical . This affects an unknown part. The manipulation leads to incorrect default permissions. This vu…
A vulnerability categorized as critical has been discovered in Red Hat Web Terminal . This vulnerability affects unknown code. The manipulation results in incorrect default permissions. This vulnerabi…
A vulnerability identified as critical has been detected in Red Hat OpenShift Update Service . This issue affects some unknown processing. This manipulation causes incorrect default permissions. The i…
A vulnerability labeled as critical has been found in idachev mcp-javadc up to 1.2.4 . Impacted is an unknown function of the component HTTP Interface . Such manipulation of the argument jarFilePath l…
A vulnerability marked as critical has been reported in bigsk1 openai-realtime-ui up to 188ccde27fdf3d8fab8da81f3893468f53b2797c . The affected element is an unknown function of the file server.js of …
A vulnerability described as critical has been identified in code-projects Easy Blog Site up to 1.0 . The impacted element is an unknown function of the file /users/contact_us.php . Executing a manipu…
A vulnerability classified as problematic has been found in code-projects Easy Blog Site 1.0 . This affects an unknown function of the file /posts/update.php . The manipulation of the argument postTit…
A vulnerability classified as problematic was found in openstatusHQ openstatus up to 1b678e71a85961ae319cbb214a8eae634059330c . This impacts an unknown function of the file apps/dashboard/src/app/(das…
A vulnerability, which was classified as problematic , has been found in SourceCodester Sales and Inventory System 1.0 . Affected is an unknown function of the file /delete.php of the component GET Pa…
A vulnerability, which was classified as critical , was found in honojs node-server up to 1.19.12 . Affected by this vulnerability is an unknown functionality of the component Request Path Handler . S…
A vulnerability has been found in honojs hono up to 4.12.11 and classified as problematic . Affected by this issue is the function parse . Performing a manipulation results in improper input validatio…