A vulnerability, which was classified as critical , has been found in Sercomm SCE4255W 23080418 . Affected by this issue is some unknown functionality of the file /ftl/web/setup.cgi . The manipulation…
cyberintel.kalymoon.com · 53661 articles · updated every 4 hours · grows forever
A vulnerability, which was classified as critical , has been found in Sercomm SCE4255W 23080418 . Affected by this issue is some unknown functionality of the file /ftl/web/setup.cgi . The manipulation…
A vulnerability, which was classified as critical , was found in wolfSSL up to 5.8.4 . This affects the function wolfSSL_d2i_SSL_SESSION of the component Session Handler . The manipulation results in …
A vulnerability has been found in Elastic Kibana up to 8.19.11/9.2.5/9.3.0 and classified as problematic . This vulnerability affects unknown code of the component Endpoint . This manipulation causes …
A vulnerability was found in wolfSSL up to 5.8.3 and classified as problematic . This issue affects some unknown processing of the component CertificateVerify Message Handler . Such manipulation leads…
A vulnerability was found in Elastic Kibana up to 8.19.12/9.2.6/9.3.1 . It has been classified as problematic . Impacted is an unknown function of the component Timelion Visualization Plugin . Perform…
A vulnerability was found in DedeCMS up to 5.7.118 . It has been declared as critical . The affected element is the function array_filter . Executing a manipulation can lead to privilege escalation. T…
A vulnerability was found in wolfSSL up to 5.8.x . It has been rated as critical . The impacted element is an unknown function of the component SSL CRL Parser . The manipulation leads to out-of-bounds…
A vulnerability categorized as problematic has been discovered in Microsoft .NET up to 8.0.21/9.0.10 . This affects an unknown function of the component ASP.NET Core Kestrel . The manipulation results…
A vulnerability identified as problematic has been detected in wolfSSL up to 5.8.x . This impacts an unknown function of the component Post-Quantum Implementation . This manipulation causes incorrect …
A vulnerability labeled as problematic has been found in Langflow . Affected is an unknown function of the component v2 API . Such manipulation leads to privilege escalation. This vulnerability is doc…
A vulnerability marked as critical has been reported in MinIO . Affected by this vulnerability is an unknown functionality of the component JWT Handler . Performing a manipulation results in improper …
In recent months, Microsoft Threat Intelligence identified email campaigns using lures around W-2, tax forms, or similar themes, or posing as government tax agencies, tax services firms, and relevant …
Microsoft introduces Zero Trust for AI, adding a new AI pillar to its workshop, enhanced reference architecture, updated guidance, and a new assessment tool. The post New tools and guidance: Announcin…
Properly Configured Mobile Development Management Tools Can't Wipe Personal Data Mobile device management software is having a moment of notoriety after Iran-aligned hacking group Handala used Microso…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert urging organizations to harden their endpoint management system configurations following a cyberattack on St…
CISA has added a high-severity vulnerability affecting the Zimbra Collaboration Suite (ZCS) to its Known Exploited Vulnerabilities (KEV) catalog. Tracked as CVE-2025-66376, this security flaw is curre…
China is reportedly planning to develop its own national post-quantum cryptography standards within the next three years, even as most of the world has already begun migrating to those finalized by th…
One of the world’s most active ransomware groups, Interlock, started exploiting a critical-rated Cisco firewall vulnerability as a zero day weeks before it was patched in early March, Amazon has revea…
Cloaked plans to introduce AI agents designed to act on behalf of users to monitor, manage, and enforce privacy preferences and security postures. The post Privacy Platform Cloaked Raises $375M to Exp…
Latest ScreenConnect version adds encrypted storage and management to prevent unauthorized access to machine keys. The post Critical ScreenConnect Vulnerability Exposes Machine Keys appeared first on …
The company’s endpoint security platform monitors behavior and verifies user intent to stop cyberattacks in real time. The post 1stProtect Emerges From Stealth With $20 Million in Funding appeared fir…