A vulnerability, which was classified as critical , was found in File Access Fix up to 1.1.x on Drupal. This affects an unknown function. Such manipulation leads to incorrect authorization. This vulne…
cyberintel.kalymoon.com · 49391 articles · updated every 4 hours · grows forever
A vulnerability, which was classified as critical , was found in File Access Fix up to 1.1.x on Drupal. This affects an unknown function. Such manipulation leads to incorrect authorization. This vulne…
A vulnerability has been found in Grafana Tempo 2.10.3 and classified as problematic . This impacts an unknown function of the file /status/config . Performing a manipulation results in missing encryp…
A vulnerability was found in Unpublished Node Permissions up to 1.6.x on Drupal and classified as critical . Affected is an unknown function. Executing a manipulation can lead to incorrect authorizati…
A vulnerability was found in TP-Link TL-WR841N -/0.9.1 . It has been classified as problematic . Affected by this vulnerability is an unknown functionality of the component UPnP . The manipulation lea…
A vulnerability was found in Calculation Fields up to 1.0.3 on Drupal. It has been declared as problematic . Affected by this issue is some unknown functionality. The manipulation results in cross sit…
A vulnerability was found in Automated Logout up to 1.6.x/2.0.1 on Drupal. It has been rated as problematic . This affects an unknown part. This manipulation causes cross-site request forgery. This vu…
A vulnerability categorized as problematic has been discovered in Grafana OSS up to 11.6.14/12.1.10/12.2.8/12.3.6/12.4.1 . This vulnerability affects unknown code. Such manipulation leads to uncontrol…
A vulnerability identified as critical has been detected in Lychee up to 7.5.0 . This issue affects the function Photo::fromUrl . Performing a manipulation results in server-side request forgery. This…
A vulnerability labeled as problematic has been found in PrestaShop up to 8.2.4/9.0.x . Impacted is an unknown function. Executing a manipulation can lead to cross site scripting. This vulnerability i…
A vulnerability marked as critical has been reported in PinchTab up to 0.8.3 . The affected element is an unknown function of the file /tasks . The manipulation leads to server-side request forgery. T…
A vulnerability described as problematic has been identified in staffwiki 7.0.1.19219 . The impacted element is an unknown function of the file wff_cols_pref.css.aspx . The manipulation results in cro…
A vulnerability classified as problematic has been found in ory polis up to 26.1.x . This affects an unknown function. This manipulation causes improper neutralization of alternate xss syntax. The ide…
A vulnerability classified as problematic was found in farisc0de Uploady up to 3.1.1 . This impacts an unknown function of the component Filename Handler . Such manipulation leads to cross site script…
A vulnerability, which was classified as critical , has been found in Daylight Studio FuelCMS 1.5.2 . Affected is an unknown function of the component Password Reset Handler . Performing a manipulatio…
Unit 42 uncovers multiple clusters of cyberespionage targeting a Southeast Asian government organization with USBFect, RATs and loaders. The post Converging Interests: Analysis of Threat Clusters Targ…
Incidents Are Unrelated, Says NYC Health + Hospitals Hackers had access to New York City's municipal healthcare system for nearly three months before being detected, stealing data of an undisclosed nu…
Also, Russian Signal Phishing, Iran-Linked Malware, Breaches in Spain and France This week, Tycoon 2FA, Trio-Tech, messaging app spying and a ransomware broker sentenced. Iran-linked hackers. Mazda di…
Proponents Favor Performance Tests Over Certs The U.S. Department of Defense is for the first time piloting new skills-based assessments for its cyber hiring as an alternative to checking paper qualif…
Tails 7.6 is out, and for users operating on networks that block Tor, the most consequential addition is built-in bridge retrieval. The Tor Connection assistant can now detect when a direct connection…
RSAC 2026 showcased a wave of innovation, with vendors unveiling technologies poised to redefine cybersecurity. From AI-powered defense to breakthroughs in identity protection, this year’s conference …
More than a decade since the 2015 Jeep hack, the cybersecurity of vehicles remains of the utmost importance.
The agency put foreign-made consumer routers on its list of prohibited communications devices, but the ban could create more problems down the road.
Dutch professional football club Ajax Amsterdam (AFC Ajax) disclosed that a hacker exploited vulnerabilities in its IT systems and accessed data belonging to a few hundred people. [...]
Researchers Report Quantum Computing Can Accelerate Drug Design The Quantum Insider