CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  49612 articles  ·  updated every 4 hours · grows forever

49612Total
33838Full Text
Sep 02, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-33932 | OpenEMR up to 8.0.0.3 CCDA Document Preview cross site scripting (GHSA-g77x-9p3x-2j8f)

A vulnerability categorized as problematic has been discovered in OpenEMR up to 8.0.0.3 . Affected is an unknown function of the component CCDA Document Preview . The manipulation results in cross sit…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-33348 | OpenEMR up to 8.0.0.3 Notes cross site scripting (GHSA-6ch2-p26g-x33h)

A vulnerability identified as problematic has been detected in OpenEMR up to 8.0.0.3 . Affected by this vulnerability is an unknown functionality of the component Notes Handler . This manipulation cau…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-33933 | OpenEMR up to 8.0.0.2 cross site scripting (GHSA-9qh7-cfq4-j7c3)

A vulnerability labeled as problematic has been found in OpenEMR . Affected by this issue is some unknown functionality. Such manipulation leads to cross site scripting. This vulnerability is uniquely…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2025-15101 | ASUS Router 3.0.0.6_102 Web Management Interface cross-site request forgery

A vulnerability marked as problematic has been reported in ASUS Router 3.0.0.6_102 . This affects an unknown part of the component Web Management Interface . Performing a manipulation results in cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-1206 | elemntor Elementor Website Builder Plugin up to 3.35.7 on WordPress Template is_allowed_to_read_template authorization

A vulnerability described as problematic has been identified in elemntor Elementor Website Builder Plugin up to 3.35.7 on WordPress. This vulnerability affects the function is_allowed_to_read_template…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-33416 | pnggroup libpng up to 1.6.55 PNG File Parser png_set_tRNS/png_set_PLTE use after free

A vulnerability classified as critical has been found in pnggroup libpng up to 1.6.55 . This issue affects the function png_set_tRNS/png_set_PLTE of the component PNG File Parser . The manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-33636 | pnggroup libpng up to 1.6.36 out-of-bounds write

A vulnerability classified as critical was found in pnggroup libpng up to 1.6.36 . Impacted is an unknown function. The manipulation results in out-of-bounds write. This vulnerability is identified as…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-4875 | itsourcecode Free Hotel Reservation System 1.0 index.php?view=add image unrestricted upload

A vulnerability, which was classified as critical , has been found in itsourcecode Free Hotel Reservation System 1.0 . The affected element is an unknown function of the file /admin/mod_amenities/inde…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-4876 | itsourcecode Free Hotel Reservation System 1.0 index.php?view=editpic ID sql injection

A vulnerability, which was classified as critical , was found in itsourcecode Free Hotel Reservation System 1.0 . The impacted element is an unknown function of the file /admin/mod_amenities/index.php…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-4877 | itsourcecode Payroll Management System up to 1.0 /index.php page cross site scripting

A vulnerability has been found in itsourcecode Payroll Management System up to 1.0 and classified as problematic . This affects an unknown function of the file /index.php . Performing a manipulation o…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2025-15433 | Shared Files Plugin up to 1.7.57 on WordPress path traversal

A vulnerability was found in Shared Files Plugin up to 1.7.57 on WordPress and classified as critical . This impacts an unknown function. Executing a manipulation can lead to path traversal. This vuln…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2025-15488 | Responsive Plus Plugin up to 3.4.2 on WordPress Shortcode content_rech_data authorization

A vulnerability was found in Responsive Plus Plugin up to 3.4.2 on WordPress. It has been classified as critical . Affected is the function update_responsive_woo_free_shipping_left_shortcode of the co…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-4247 | FreeBSD ACK tcp_respond memory leak

A vulnerability was found in FreeBSD . It has been declared as problematic . Affected by this vulnerability is the function tcp_respond of the component ACK Handler . The manipulation results in memor…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-4652 | FreeBSD NVMe null pointer dereference

A vulnerability was found in FreeBSD . It has been rated as problematic . Affected by this issue is some unknown functionality of the component NVMe . This manipulation causes null pointer dereference…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-1430 | Syed Balkhi WP Lightbox 2 Plugin up to 3.0.6 on WordPress Setting cross site scripting

A vulnerability categorized as problematic has been discovered in Syed Balkhi WP Lightbox 2 Plugin up to 3.0.6 on WordPress. This affects an unknown part of the component Setting Handler . Such manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 26, 2026
CVE-2026-1890 | LeadConnector Plugin up to 3.0.21 on WordPress authorization

A vulnerability identified as critical has been detected in LeadConnector Plugin up to 3.0.21 on WordPress. This vulnerability affects unknown code. Performing a manipulation results in missing author…

VulDB Read →
◇ Industry News & Leadership Mar 26, 2026
Ghost SPN Attack Lets Hackers Conduct Stealthy Kerberoasting Under the Radar

A sophisticated evolution of Kerberoasting dubbed the “Ghost SPN” attack that allows adversaries to extract Active Directory credentials while erasing all traces of their activity, rendering tradition…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 26, 2026
Fake VS Code Security Alerts on GitHub Used to Push Malware in Widespread Phishing Campaign

A large-scale phishing campaign is targeting software developers on GitHub, using fake Visual Studio Code security alerts posted in GitHub Discussions to trick users into downloading malicious softwar…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 26, 2026
Fake npm Install Messages Hide RAT Malware in New Open Source Supply Chain Campaign

A new and carefully crafted software supply chain campaign is targeting developers through the npm package registry, using fake installation messages to hide malicious activity. The campaign, which se…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 26, 2026
10 essenzielle Maßnahmen für physische Sicherheit

Wenn physische Security nur immer so simpel umzusetzen wäre… Foto: Leremy | shutterstock.com Obwohl CISOs im Allgemeinen eher selten mit dem gesamten Spektrum der Gesundheits- und Arbeitssicherheitsbe…

CSO Online Read →
◇ Industry News & Leadership Mar 26, 2026
Unbreakable Enterprise Kernel 8.2 ships with confidential computing support, XFS live repair

Many enterprise Linux deployments rely on hardware-level memory isolation to protect sensitive workloads from co-tenants and compromised hypervisors. Oracle’s Unbreakable Enterprise Kernel 8.2 (UEK 8.…

Help Net Security Read →
◇ Industry News & Leadership Mar 26, 2026
Who owns AI agent access? At most companies, nobody knows

AI agents are operating across production enterprise environments at scale, and the identity infrastructure managing their access has not kept up with their deployment. A January 2026 survey of 228 IT…

Help Net Security Read →
◇ Industry News & Leadership Mar 26, 2026
Your facilities run on fragile supply chains and nobody wants to admit it

In this Help Net Security interview, Christa Dodoo, Global Chair at IFMA, discusses how facility managers are managing supply chain risk in critical building systems. She explains how sourcing, locali…

Help Net Security Read →
◇ Industry News & Leadership Mar 26, 2026
A nearly undetectable LLM attack needs only a handful of poisoned samples

Prompt engineering has become a standard part of how large language models are deployed in production, and it introduces an attack surface most organizations have not yet addressed. Researchers have d…

Help Net Security Read →
← Prev 1785 / 2068 Next →