CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  46676 articles  ·  updated every 4 hours · grows forever

46676Total
32420Full Text
Aug 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39865 | Axios up to 1.13.1 lib/adapters/http.js Http2Sessions.getSession resource consumption

A vulnerability was found in Axios up to 1.13.1 and classified as problematic . This affects the function Http2Sessions.getSession in the library lib/adapters/http.js . Executing a manipulation can le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39408 | honojs hono up to 4.12.11 toSSG path traversal

A vulnerability was found in honojs hono up to 4.12.11 . It has been classified as critical . This vulnerability affects the function toSSG . The manipulation leads to path traversal. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39407 | honojs hono up to 4.12.11 path traversal

A vulnerability was found in honojs hono up to 4.12.11 . It has been declared as critical . This issue affects some unknown processing. The manipulation results in path traversal. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39409 | honojs hono up to 4.12.11 ipRestriction incorrect behavior order: validate before canonicalize

A vulnerability was found in honojs hono up to 4.12.11 . It has been rated as problematic . Impacted is the function ipRestriction . This manipulation causes incorrect behavior order: validate before …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39390 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 compInfosPost cMap cross site scripting

A vulnerability categorized as problematic has been discovered in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . The affected element is the function compInfosPost . Such manipulation of the argument …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39392 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 Pages cross site scripting (GHSA-fjpj-6qcq-6pw2)

A vulnerability identified as problematic has been detected in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . The impacted element is an unknown function of the component Pages Module . Performing a m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39389 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 improper authorization (GHSA-9rxp-f27p-wv3h)

A vulnerability labeled as critical has been found in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . This affects an unknown function. Executing a manipulation can lead to improper authorization. The …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39391 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 ajax_blackList_post note cross site scripting (GHSA-7cm9-v848-cfh2)

A vulnerability marked as problematic has been reported in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . This impacts the function UserController::ajax_blackList_post . The manipulation of the argume…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39393 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 missing authentication (GHSA-8rh5-4mvx-xj7j)

A vulnerability described as critical has been identified in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . Affected is an unknown function. The manipulation results in missing authentication. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39394 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 Setting Install::index crlf injection (GHSA-vfhx-5459-qhqh)

A vulnerability classified as problematic has been found in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . Affected by this vulnerability is the function Install::index of the component Setting Handle…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5811 | SourceCodester Online Food Ordering System 1.0 POST Parameter /Actions.php save_product price logic error

A vulnerability classified as critical was found in SourceCodester Online Food Ordering System 1.0 . Affected by this issue is the function save_product of the file /Actions.php of the component POST …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5812 | SourceCodester Pharmacy Product Management System 1.0 POST Parameter add-sales.php txtqty logic error

A vulnerability, which was classified as critical , has been found in SourceCodester Pharmacy Product Management System 1.0 . This affects an unknown part of the file add-sales.php of the component PO…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5813 | PHPGurukul Online Course Registration 3.1 /check_availability.php cid sql injection

A vulnerability, which was classified as critical , was found in PHPGurukul Online Course Registration 3.1 . This vulnerability affects unknown code of the file /check_availability.php . Executing a m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5814 | PHPGurukul Online Course Registration 3.1 check_availability.php regno sql injection

A vulnerability has been found in PHPGurukul Online Course Registration 3.1 and classified as critical . This issue affects some unknown processing of the file /admin/check_availability.php . The mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5815 | D-Link DIR-645 1.01/1.02/1.03 /cgi-bin/hedwig.cgi hedwigcgi_main stack-based overflow

A vulnerability was found in D-Link DIR-645 1.01/1.02/1.03 and classified as critical . Impacted is the function hedwigcgi_main of the file /cgi-bin/hedwig.cgi . The manipulation results in stack-base…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-33753 | trailofbits rfc3161-client up to 1.0.5 Time-Stamp Protocol certificate validation

A vulnerability was found in trailofbits rfc3161-client up to 1.0.5 . It has been classified as critical . The affected element is an unknown function of the component Time-Stamp Protocol Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-33229 | xwiki xwiki-platform up to 17.4.7/17.10.0 Velocity Scripting API authorization

A vulnerability was found in xwiki xwiki-platform, xwiki-platform-legacy-oldcore and xwiki-platform-oldcore up to 17.4.7/17.10.0 . It has been declared as problematic . The impacted element is an unkn…

VulDB Read →
◉ Threat Intelligence Apr 08, 2026
Understanding and Anticipating Venezuelan Government Actions

Explore an in-depth analysis of Venezuela’s political landscape following the January 2026 US operation to capture Nicolás Maduro. This executive summary examines Acting President Delcy Rodríguez’s tr…

Recorded Future Read →
◉ Threat Intelligence Apr 08, 2026
More Honeypot Fingerprinting Scans, (Wed, Apr 8th)

One question that often comes up when I talk about honeypots: Are attackers able to figure out if they are connected to a honeypot? The answer is pretty simple: Yes!

SANS ISC Read →
◇ Industry News & Leadership Apr 08, 2026
Live Webinar | Cloud-Conscious Intrusions: How to Detect and Contain Attacks in Seconds with CrowdStrike and Google Cloud
Data Breach Today Read →
◇ Industry News & Leadership Apr 08, 2026
Cyber Defense for Education & SLTTs: Doing More with Less Using MDR

Cyber threats are rising across SLTT and education environments, but most teams are already stretched thin. Learn how organizations are improving detection and response without adding staff or complex…

Data Breach Today Read →
◇ Industry News & Leadership Apr 08, 2026
Anthropic Unveils Claude Mythos Preview With Powerful Zero-Day Detection Capabilities

Anthropic has introduced Claude Mythos Preview, an advanced language model with extraordinary capabilities for discovering and autonomously exploiting undiscovered zero-day vulnerabilities. To ensure …

Cybersecurity News Read →
◇ Industry News & Leadership Apr 08, 2026
Hackers Actively Attacking Adobe Reader Users Using Sophisticated 0-Day Exploit

A highly sophisticated, unpatched zero-day exploit is actively targeting users of Adobe Reader. Detected by the EXPMON threat-hunting system, this malicious PDF file is designed to steal sensitive loc…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 08, 2026
IBM Identity and Verify Access Vulnerabilities Allow Remote Attacker to Access Sensitive Data

A critical security bulletin highlights multiple vulnerabilities in Verify Identity Access and Security Verify Access products. If left unpatched, these widespread security flaws could allow malicious…

Cybersecurity News Read →
← Prev 1470 / 1945 Next →