CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  50778 articles  ·  updated every 4 hours · grows forever

50778Total
34533Full Text
Sep 07, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33634 | aquasecurity setup-trivy/trivy-action/trivy up to 0.2.5 malicious code (GHSA-69fq-xp46-6x23)

A vulnerability marked as critical has been reported in aquasecurity setup-trivy, trivy-action and trivy up to 0.2.5 . Impacted is an unknown function. The manipulation leads to embedded malicious cod…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-3079 | StellarWP LearnDash LMS Plugin up to 5.0.3 on WordPress AJAX Action filters[orderby_order] sql injection

A vulnerability described as critical has been identified in StellarWP LearnDash LMS Plugin up to 5.0.3 on WordPress. The affected element is an unknown function of the component AJAX Action Handler .…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4056 | wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress REST API Endpoint check_permissions authorization

A vulnerability classified as critical has been found in wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress. The impacted element is the function check_permissions of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33170 | rails activesupport prior 7.2.3.1/8.0.4.1/8.1.2.1 html_unsafe cross site scripting (GHSA-89vf-4333-qx8v)

A vulnerability classified as problematic was found in rails activesupport . This affects the function html_unsafe . Such manipulation leads to cross site scripting. This vulnerability is documented a…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-27183 | OpenClaw up to 2026.3.6 authorization (GHSA-r6qf-8968-wj9q)

A vulnerability, which was classified as problematic , has been found in OpenClaw up to 2026.3.6 . This impacts an unknown function. Performing a manipulation results in incorrect authorization. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33167 | rails actionpack up to 8.1/8.1.2.1 consider_all_requests_local cross site scripting (GHSA-pgm4-439c-5jp6)

A vulnerability, which was classified as problematic , was found in rails actionpack up to 8.1/8.1.2.1 . Affected is the function consider_all_requests_local . Executing a manipulation can lead to cro…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-32913 | OpenClaw up to 2026.3.6 Header Validation insufficiently protected credentials (GHSA-6mgf-v5j7-45cr)

A vulnerability has been found in OpenClaw up to 2026.3.6 and classified as critical . Affected by this vulnerability is an unknown functionality of the component Header Validation Handler . The manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4066 | inc2734 Smart Custom Fields Plugin up to 5.0.6 on WordPress relational_posts_search authorization

A vulnerability was found in inc2734 Smart Custom Fields Plugin up to 5.0.6 on WordPress and classified as problematic . Affected by this issue is the function relational_posts_search . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4306 | wpjobportal WP Job Portal Plugin up to 2.4.8 on WordPress Parameter radius sql injection

A vulnerability was found in wpjobportal WP Job Portal Plugin up to 2.4.8 on WordPress. It has been classified as critical . This affects an unknown part of the component Parameter Handler . This mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-3225 | thimpress LearnPress Plugin up to 4.3.2.8 on WordPress delete_question_answer authorization

A vulnerability was found in thimpress LearnPress Plugin up to 4.3.2.8 on WordPress. It has been declared as problematic . This vulnerability affects the function delete_question_answer . Such manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-2412 | expresstech Quiz and Survey Master Plugin up to 10.3.5 on WordPress Parameter sanitize_text_field wpdb sql injection

A vulnerability was found in expresstech Quiz and Survey Master Plugin up to 10.3.5 on WordPress. It has been rated as critical . This issue affects the function sanitize_text_field of the component P…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-27646 | OpenClaw up to 2026.3.6 /acp authorization (GHSA-9q36-67vc-rrwg)

A vulnerability categorized as problematic has been discovered in OpenClaw up to 2026.3.6 . Impacted is an unknown function of the file /acp . Executing a manipulation can lead to incorrect authorizat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33046 | Indico up to 3.3.11 LaTeX indico.conf os command injection (GHSA-rm2q-f7jv-3cfp)

A vulnerability identified as critical has been detected in Indico up to 3.3.11 . The affected element is an unknown function of the file indico.conf of the component LaTeX Handler . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33168 | rails actionview prior 7.2.3.1/8.0.4.1/8.1.2.1 Attribute cross site scripting (GHSA-v55j-83pf-r9cq)

A vulnerability labeled as problematic has been found in rails actionview . The impacted element is an unknown function of the component Attribute Handler . The manipulation results in cross site scri…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-32279 | opensource-workshop connect-cms up to 1.41.0/2.41.0 server-side request forgery (GHSA-jh46-85jr-6ph9)

A vulnerability marked as critical has been reported in opensource-workshop connect-cms up to 1.41.0/2.41.0 . This affects an unknown function. This manipulation causes server-side request forgery. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-32299 | opensource-workshop connect-cms up to 1.41.0/2.41.0 access control (GHSA-62ch-j6x7-722j)

A vulnerability described as critical has been identified in opensource-workshop connect-cms up to 1.41.0/2.41.0 . This impacts an unknown function. Such manipulation leads to improper access controls…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-32300 | opensource-workshop connect-cms up to 1.41.0/2.41.0 My Page improper authorization (GHSA-qr6x-wvxr-8hm9)

A vulnerability classified as critical has been found in opensource-workshop connect-cms up to 1.41.0/2.41.0 . Affected is an unknown function of the component My Page . Performing a manipulation resu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-1969 | WP-FeedStats trx_addons Plugin up to 2.38.4 on WordPress unrestricted upload

A vulnerability classified as critical was found in WP-FeedStats trx_addons Plugin up to 2.38.4 on WordPress. Affected by this vulnerability is an unknown functionality. Executing a manipulation can l…

VulDB Read →
◉ Threat Intelligence Mar 24, 2026
ISC Stormcast For Tuesday, March 24th, 2026 https://isc.sans.edu/podcastdetail/9862, (Tue, Mar 24th)
SANS ISC Read →
◇ Industry News & Leadership Mar 24, 2026
AI Disruption Fears Rattle Cybersecurity Stocks

J.P. Morgan’s Brian Essex on Why Valuations Drop as Fundamentals Hold Steady Investor anxiety over AI's long-term impact is dragging down stock valuations despite steady growth and profitability, whil…

Data Breach Today Read →
◇ Industry News & Leadership Mar 24, 2026
AI Redefines Trust in Global Payments

Visa CISO Subra Kumaraswamy on Securing Agents, Fighting Fraud, Protecting Commerce AI is transforming trust in global payments as attackers scale faster and agents automate decisions. CISO Subra Kuma…

Data Breach Today Read →
◇ Industry News & Leadership Mar 24, 2026
Mazda Data Breach Exposing Employee and Partner Records Via System Vulnerability

Mazda Motor Corporation has officially disclosed a security incident involving unauthorized external access to an internal warehouse management system, potentially exposing 692 personal data records o…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 24, 2026
Palo Alto updates security platform to discover AI agents

As CISOs worry about AI agent sprawl, Palo Alto Networks has announced an update to its Prisma AIRS security platform and enterprise browser to include the ability to discover AI agents, models, and c…

CSO Online Read →
◇ Industry News & Leadership Mar 24, 2026
ISO und ISMS: Darum gehen Security-Zertifizierungen schief

Mit einer ISO 27001-Zertifizierung weisen Unternehmen nach, dass sie ein wirksames Informationssicherheits-Managementsystems (ISMS) betreiben. Lesen Sie, weshalb der Zertifizierungsprozess häufig schi…

CSO Online Read →
← Prev 1881 / 2116 Next →