A vulnerability classified as problematic was found in Mattermost up to 10.11.10/11.2.2/11.3.1/11.4.0 . Affected is an unknown function of the component Group Retrieval Endpoint . The manipulation res…
cyberintel.kalymoon.com · 49315 articles · updated every 4 hours · grows forever
A vulnerability classified as problematic was found in Mattermost up to 10.11.10/11.2.2/11.3.1/11.4.0 . Affected is an unknown function of the component Group Retrieval Endpoint . The manipulation res…
A vulnerability, which was classified as critical , has been found in kysely up to 0.28.13 . Affected by this vulnerability is the function sanitizeStringLiteral . This manipulation causes sql injecti…
A vulnerability, which was classified as problematic , was found in russellhaering goxmldsig up to 1.5.x . Affected by this issue is the function validateSignature of the component XML Digital Signatu…
A vulnerability has been found in h3js h3 up to 2.0.0-0/2.0.1-rc.16/2.0.2-rc.17 and classified as problematic . This affects the function mount . Performing a manipulation results in incorrectly-resol…
A vulnerability was found in kysely-org kysely up to 0.28.13 and classified as critical . This vulnerability affects the function sanitizeStringLiteral of the file CreateViewBuilder.as . Executing a m…
A vulnerability was found in ory oathkeeper up to 26.1.x . It has been classified as critical . This issue affects the function oauth2_introspection . The manipulation leads to improper validation of …
A vulnerability was found in ory oathkeeper up to 26.1.x . It has been declared as critical . Impacted is an unknown function of the component Path Normalization Handler . The manipulation results in …
A vulnerability was found in OpenClaw up to 2026.3.23 . It has been rated as critical . The affected element is the function isLikelyLocalPath of the component Path Validation Handler . This manipulat…
A vulnerability categorized as critical has been discovered in EVerest everest-core 2025.9.0/2025.10.0/2025.12.0 . The impacted element is the function ISO15118_chargerImpl::handle_session_setup . Suc…
A vulnerability identified as critical has been detected in ory kratos up to 26.1.x . This affects an unknown function of the component ListCourierMessages Admin API . Performing a manipulation result…
A vulnerability labeled as critical has been found in Firecrawl up to 2.8.0 . This impacts an unknown function of the component Playwright Scraping Service . Executing a manipulation can lead to serve…
A vulnerability marked as problematic has been reported in EVerest everest-core 2025.9.0/2025.10.0/2025.12.0 . Affected is the function std::map . The manipulation leads to race condition. This vulner…
A vulnerability described as problematic has been identified in Mattermost Plugins up to 11.4.x . Affected by this vulnerability is an unknown functionality of the component Webhook Endpoint . The man…
A vulnerability classified as problematic has been found in Mattermost Plugins up to 10.11.11/11.4.x . Affected by this issue is some unknown functionality of the component Webhook Request Handler . T…
A vulnerability classified as problematic was found in blakeblackshear frigate 0.17.0 . This affects an unknown part of the file /api/timeline . Such manipulation leads to missing authorization. This …
A vulnerability, which was classified as problematic , has been found in Mattermost up to 10.11.11/11.2.3/11.3.1/11.4.0 . This vulnerability affects unknown code. Performing a manipulation results in …
A vulnerability, which was classified as problematic , was found in sakaiproject sakai up to 23.4/25.1 . This issue affects some unknown processing of the component Description Handler . Executing a m…
A vulnerability has been found in blakeblackshear frigate 0.17.0 and classified as problematic . Impacted is an unknown function of the file /api/config/raw of the component Configuration Handler . Th…
A vulnerability was found in roadiz core-bundle-dev-app up to 2.3.41/2.5.43/2.6.27/2.7.8 and classified as critical . The affected element is an unknown function of the component Environment Variable …
A vulnerability was found in ory hydra up to 26.1.x . It has been classified as critical . The impacted element is an unknown function of the component Admin API . This manipulation causes sql injecti…
This is the first update to the TeamPCP supply chain campaign threat intelligence report, "When the Security Scanner Became the Weapon" (v3.0, March 25, 2026). That report covers the full campaign fro…
Cyborg's Nicolas Dupont on Closing the Encrypted Vector Search Gap Cyborg CEO Nicolas Dupont describes how vector databases concentrate sensitive enterprise data in a structurally unencrypted layer, a…
Capitol Meridian Partners' Niloofar Razi on Innovation Sandbox, AI-Driven Offense Cybersecurity can no longer stop at the system boundary. Organizations must understand how humans and AI agents behave…
Jim DuBois, Former Microsoft CIO and CISO, on Incentives, AI and Cyber's Future As AI reshapes cybersecurity, aligning security and innovation teams is more critical than ever. Former Microsoft CIO an…