CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  49189 articles  ·  updated every 4 hours · grows forever

49189Total
33600Full Text
Sep 01, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2025-59028 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 improper authentication (adv-2026-0001)

A vulnerability identified as critical has been detected in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . This affects an unknown function. This manipulation causes improper authentication. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27858 | Open-Xchange OX Dovecot Pro up to 2.3.0/2.4.0/3.1.0 Message resource consumption (adv-2026-0001)

A vulnerability labeled as problematic has been found in Open-Xchange OX Dovecot Pro up to 2.3.0/2.4.0/3.1.0 . This impacts an unknown function of the component Message Handler . Such manipulation lea…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27859 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.0.2/3.1.0 Mail Message resource consumption (adv-2026-0001)

A vulnerability marked as problematic has been reported in Open-Xchange OX Dovecot Pro up to 2.4.0/3.0.2/3.1.0 . Affected is an unknown function of the component Mail Message Handler . Performing a ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2025-59031 | Open-Xchange OX Dovecot Pro up to 2.3.0 OOXML information disclosure (adv-2026-0001)

A vulnerability described as problematic has been identified in Open-Xchange OX Dovecot Pro up to 2.3.0 . Affected by this vulnerability is an unknown functionality of the component OOXML Handler . Ex…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2025-59032 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 ManageSieve Service denial of service (adv-2026-0001)

A vulnerability classified as problematic has been found in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . Affected by this issue is some unknown functionality of the component ManageSieve Service . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-0394 | Open-Xchange OX Dovecot Pro up to 2.3.0 path traversal (adv-2026-0001)

A vulnerability classified as critical was found in Open-Xchange OX Dovecot Pro up to 2.3.0 . This affects an unknown part. The manipulation results in path traversal. This vulnerability is known as C…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-24031 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 auth_username_chars sql injection (adv-2026-0001)

A vulnerability, which was classified as critical , has been found in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . This vulnerability affects unknown code. This manipulation of the argument auth_us…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27855 | Open-Xchange OX Dovecot Pro up to 2.3.0 SCRAM Protocol authentication replay (adv-2026-0001)

A vulnerability, which was classified as critical , was found in Open-Xchange OX Dovecot Pro up to 2.3.0 . This issue affects some unknown processing of the component SCRAM Protocol Handler . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27860 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 auth_username_chars ldap injection (adv-2026-0001)

A vulnerability has been found in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 and classified as problematic . Impacted is an unknown function. Performing a manipulation of the argument auth_username…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4968 | SourceCodester Diary App 1.0 diary.php cross-site request forgery

A vulnerability was found in SourceCodester Diary App 1.0 and classified as problematic . The affected element is an unknown function of the file diary.php . Executing a manipulation can lead to cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4969 | code-projects Social Networking Site 1.0 Alert /home.php content cross site scripting

A vulnerability was found in code-projects Social Networking Site 1.0 . It has been classified as problematic . The impacted element is an unknown function of the file /home.php of the component Alert…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4970 | code-projects Social Networking Site 1.0 Endpoint delete_photos.php ID sql injection

A vulnerability was found in code-projects Social Networking Site 1.0 . It has been declared as critical . This affects an unknown function of the file delete_photos.php of the component Endpoint . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4971 | SourceCodester Note Taking App up to 1.0 cross-site request forgery

A vulnerability was found in SourceCodester Note Taking App up to 1.0 . It has been rated as problematic . This impacts an unknown function. This manipulation causes cross-site request forgery. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4972 | code-projects Online Reviewer System up to 1.0 btn_functions.php Description cross site scripting

A vulnerability categorized as problematic has been discovered in code-projects Online Reviewer System up to 1.0 . Affected is an unknown function of the file /system/system/students/assessments/datab…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4973 | SourceCodester Online Quiz System up to 1.0 add-question.php quiz_question cross site scripting

A vulnerability identified as problematic has been detected in SourceCodester Online Quiz System up to 1.0 . Affected by this vulnerability is an unknown functionality of the file endpoint/add-questio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4974 | Tenda AC7 15.03.06.44 POST Request /goform/SetSysTimeCfg fromSetSysTime stack-based overflow

A vulnerability labeled as critical has been found in Tenda AC7 15.03.06.44 . Affected by this issue is the function fromSetSysTime of the file /goform/SetSysTimeCfg of the component POST Request Hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4975 | Tenda AC15 15.03.05.19 POST Request /goform/setcfm formSetCfm funcpara1 stack-based overflow

A vulnerability marked as critical has been reported in Tenda AC15 15.03.05.19 . This affects the function formSetCfm of the file /goform/setcfm of the component POST Request Handler . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4976 | Totolink LR350 9.3.5u.6369_B20220309 /cgi-bin/cstecgi.cgi setWiFiGuestCfg ssid buffer overflow

A vulnerability described as critical has been identified in Totolink LR350 9.3.5u.6369_B20220309 . This vulnerability affects the function setWiFiGuestCfg of the file /cgi-bin/cstecgi.cgi . The manip…

VulDB Read →
◇ Industry News & Leadership Mar 27, 2026
Webinar | The Brass Ring of AppSec: Is AI Finally Making DAST to SAST Correlation Possible?
Data Breach Today Read →
◇ Industry News & Leadership Mar 27, 2026
World Leaks data extortion: What you need to know

World Leaks is a cyber extortion operation that steals sensitive data from organizations and threatens to leak it via the dark web if a ransom is not paid. Read more in my article on the Fortra blog.

Graham Cluley Read →
◇ Industry News & Leadership Mar 27, 2026
Critical Citrix NetScaler and Gateway Vulnerabilities Let Remote Attackers Leak Sensitive Information

Cloud Software Group has issued a critical security bulletin detailing two newly discovered vulnerabilities affecting customer-managed NetScaler ADC and NetScaler Gateway appliances. These flaws, trac…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 27, 2026
Red Hat Warns of Malware Code Embedded in Popular Linux Tool Allow Unauthorized Access to Systems

Red Hat has issued a critical security warning regarding malicious code discovered in recent versions of the “xz” compression tools and libraries. Tracked as CVE-2024-3094, this highly sophisticated s…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 27, 2026
Telnyx PyPI Package With 742,000 downloads Compromised in TeamPCP Supply Chain Attack

The official Telnyx Python SDK on PyPI was compromised this morning as part of an escalating, weeks-long supply chain campaign orchestrated by the threat actor group TeamPCP. Malicious versions 4.87.1…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 27, 2026
Hackers Use Phishing ZIP Files to Deploy PXA Stealer Against Financial Firms

A new wave of cyberattacks is putting financial institutions on high alert, as threat actors ramp up the use of PXA Stealer — a powerful information-stealing malware — against organizations worldwide.…

Cybersecurity News Read →
← Prev 1747 / 2050 Next →