CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  53815 articles  ·  updated every 4 hours · grows forever

53815Total
35978Full Text
Sep 18, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31990 | OpenClaw up to 2026.3.1 stageSandboxMedia link following (GHSA-cfvj-7rx7-fc7c)

A vulnerability was found in OpenClaw up to 2026.3.1 . It has been declared as critical . Affected is the function stageSandboxMedia . Executing a manipulation can lead to link following. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31991 | OpenClaw up to 2026.2.25 authorization (GHSA-wm8r-w8pf-2v6w)

A vulnerability was found in OpenClaw up to 2026.2.25 . It has been rated as problematic . Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect authorization…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31995 | OpenClaw up to 2026.2.18 os command injection (GHSA-fg3m-vhrr-8gj6)

A vulnerability categorized as critical has been discovered in OpenClaw up to 2026.2.18 . Affected by this issue is some unknown functionality. The manipulation results in os command injection. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28070 | Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress authorization

A vulnerability identified as problematic has been detected in Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress. This affects an unknown part. This manipulation causes missing authorizat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32000 | OpenClaw up to 2026.2.18 Command Argument os command injection (GHSA-7fcc-cw49-xm78)

A vulnerability labeled as critical has been found in OpenClaw up to 2026.2.18 . This vulnerability affects unknown code of the component Command Argument Handler . Such manipulation leads to os comma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-1238 | veronalabs SlimStat Analytics Plugin up to 5.3.5 on WordPress cross site scripting

A vulnerability marked as problematic has been reported in veronalabs SlimStat Analytics Plugin up to 5.3.5 on WordPress. This issue affects some unknown processing. Performing a manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-27670 | OpenClaw up to 2026.3.1 ZIP Extraction toctou (GHSA-r54r-wmmq-mh84)

A vulnerability described as problematic has been identified in OpenClaw up to 2026.3.1 . Impacted is an unknown function of the component ZIP Extraction . Executing a manipulation can lead to time-of…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-29608 | OpenClaw up to 2026.3.1 system.run node-host Execution argument injection (GHSA-h3rm-6x7g-882f)

A vulnerability classified as critical has been found in OpenClaw up to 2026.3.1 . The affected element is an unknown function of the component system.run node-host Execution . The manipulation leads …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2025-36051 | IBM QRadar SIEM up to 7.5.0 UP14 Configuration file information disclosure

A vulnerability classified as problematic was found in IBM QRadar SIEM up to 7.5.0 UP14 . The impacted element is an unknown function of the component Configuration Handler . The manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31993 | OpenClaw up to 2026.2.21 incomplete blacklist (GHSA-5f9p-f3w2-fwch)

A vulnerability, which was classified as critical , has been found in OpenClaw up to 2026.2.21 . This affects an unknown function. This manipulation causes incomplete blacklist. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31989 | OpenClaw up to 2026.3.0 Network Request web_search server-side request forgery (GHSA-g99v-8hwm-g76g)

A vulnerability, which was classified as critical , was found in OpenClaw up to 2026.3.0 . This impacts the function web_search of the component Network Request Handler . Such manipulation leads to se…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31994 | OpenClaw up to 2026.2.18 Windows Scheduled Task Script Generation os command injection (GHSA-mqr9-vqhq-3jxw)

A vulnerability has been found in OpenClaw up to 2026.2.18 and classified as critical . Affected is an unknown function of the component Windows Scheduled Task Script Generation . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31998 | OpenClaw up to 2026.2.23 authorization (GHSA-gw85-xp4q-5gp9)

A vulnerability was found in OpenClaw up to 2026.2.23 and classified as problematic . Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to incorrect authori…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28044 | WP Media WP Rocket Plugin up to 3.19.4 on WordPress cross site scripting

A vulnerability was found in WP Media WP Rocket Plugin up to 3.19.4 on WordPress. It has been classified as problematic . Affected by this issue is some unknown functionality. The manipulation leads t…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28073 | Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress cross site scripting

A vulnerability was found in Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress. It has been declared as problematic . This affects an unknown part. The manipulation results in cross site …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4120 | bplugins Info Cards Plugin up to 2.0.7 on WordPress URL Protocol render.php esc_attr btnUrl cross site scripting

A vulnerability was found in bplugins Info Cards Plugin up to 2.0.7 on WordPress. It has been rated as problematic . This vulnerability affects the function esc_attr of the file render.php of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-27093 | Ovatheme Tripgo Plugin up to 1.5.5 on WordPress filename control

A vulnerability categorized as problematic has been discovered in Ovatheme Tripgo Plugin up to 1.5.5 on WordPress. This issue affects some unknown processing. Such manipulation leads to improper contr…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-2571 | codename065 Download Manager Plugin up to 3.3.49 on WordPress reviewUserStatus information disclosure

A vulnerability identified as problematic has been detected in codename065 Download Manager Plugin up to 3.3.49 on WordPress. Impacted is the function reviewUserStatus . Performing a manipulation resu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4068 | pattihis Add Custom Fields to Media Plugin up to 2.0.3 on WordPress update_option cross-site request forgery

A vulnerability labeled as problematic has been found in pattihis Add Custom Fields to Media Plugin up to 2.0.3 on WordPress. The affected element is the function update_option . Executing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-27091 | UiPress lite Plugin up to 3.5.09 on WordPress authorization

A vulnerability marked as critical has been reported in UiPress lite Plugin up to 3.5.09 on WordPress. The impacted element is an unknown function. The manipulation leads to missing authorization. Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4006 | dartiss Draft List Plugin up to 2.6.2 on WordPress Shortcode WP_Post::__get cross site scripting

A vulnerability described as problematic has been identified in dartiss Draft List Plugin up to 2.6.2 on WordPress. This affects the function WP_Post::__get of the component Shortcode Handler . The ma…

VulDB Read →
◇ Industry News & Leadership Mar 19, 2026
New SnappyClient Implant Combines Remote Access, Data Theft and Advanced Evasion

A dangerous new malware implant called SnappyClient has quietly emerged as a serious threat to Windows users, combining remote access, data theft, and sophisticated evasion techniques in one compact C…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 19, 2026
CISA Warns of Microsoft SharePoint Vulnerability Exploited in Attacks

A critical security flaw in Microsoft SharePoint has been identified as actively exploited, and on March 18, 2026, the vulnerability was officially added to the Known Exploited Vulnerabilities (KEV) c…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 19, 2026
WaterPlum Deploys New ‘StoatWaffle’ Malware in VSCode-Based Supply Chain Campaign

A North Korea-linked hacking group known as WaterPlum has introduced a dangerous new malware called StoatWaffle, deploying it through compromised Visual Studio Code (VSCode) repositories disguised as …

Cybersecurity News Read →
← Prev 2078 / 2243 Next →