CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  54107 articles  ·  updated every 4 hours · grows forever

54107Total
36143Full Text
Sep 19, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32770 | parse-community parse-server up to 8.6.42/9.6.0-alpha.18 Regular Expression uncaught exception (GHSA-827p-g5x5-h86c)

A vulnerability categorized as problematic has been discovered in parse-community parse-server up to 8.6.42/9.6.0-alpha.18 . This vulnerability affects unknown code of the component Regular Expression…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32886 | parse-community parse-server up to 8.6.46/9.6.0-alpha.23 prototype pollution (GHSA-4263-jgmp-7pf4)

A vulnerability identified as problematic has been detected in parse-community parse-server up to 8.6.46/9.6.0-alpha.23 . This issue affects some unknown processing. This manipulation causes improperl…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32943 | parse-community parse-server up to 8.6.47/9.6.0-alpha.27 Password Reset Token toctou (GHSA-r3xq-68wh-gwvh)

A vulnerability labeled as problematic has been found in parse-community parse-server up to 8.6.47/9.6.0-alpha.27 . Impacted is an unknown function of the component Password Reset Token Handler . Such…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2025-15031 | mlflow tar path traversal

A vulnerability marked as critical has been reported in mlflow . The affected element is an unknown function of the component tar Handler . Performing a manipulation results in path traversal. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-33163 | parse-community parse-server up to 8.6.49/9.6.0-alpha.36 Personal Information toJSONwithObjects information disclosure (GHSA-5hmj-jcgp-6hff)

A vulnerability described as problematic has been identified in parse-community parse-server up to 8.6.49/9.6.0-alpha.36 . The impacted element is the function toJSONwithObjects of the component Perso…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31969 | samtools htslib up to 1.21.0/1.22.1/1.23 cram_byte_array_stop_decode_char heap-based overflow (GHSA-q4cj-f4h5-fqgc)

A vulnerability classified as critical has been found in samtools htslib up to 1.21.0/1.22.1/1.23 . This affects the function cram_byte_array_stop_decode_char . The manipulation leads to heap-based bu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31971 | samtools htslib up to 1.21.0/1.22.1/1.23 cram_byte_array_len_decode stack-based overflow (GHSA-jvx4-4wq7-6fmh)

A vulnerability classified as critical was found in samtools htslib up to 1.21.0/1.22.1/1.23 . This impacts the function cram_byte_array_len_decode . The manipulation results in stack-based buffer ove…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32700 | heartcombo devise up to 5.0.2 Confirmable confirmation_token/unconfirmed_email race condition (ID 5783)

A vulnerability, which was classified as problematic , has been found in heartcombo devise up to 5.0.2 . Affected is an unknown function of the component Confirmable Module . This manipulation of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31972 | SAMtools up to 1.21.0 use after free (GHSA-72c8-4jf3-f27p)

A vulnerability, which was classified as critical , was found in SAMtools up to 1.21.0 . Affected by this vulnerability is an unknown functionality. Such manipulation leads to use after free. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32636 | ImageMagick up to 6.9.13-41/7.1.2-16 Image Parser NewXMLTree out-of-bounds write (GHSA-gc62-2v5p-qpmp)

A vulnerability has been found in ImageMagick up to 6.9.13-41/7.1.2-16 and classified as critical . Affected by this issue is the function NewXMLTree of the component Image Parser . Performing a manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32742 | parse-community parse-server up to 8.6.41/9.6.0-alpha.16 Session Creation Endpoint dynamically-determined object attributes (GHSA-5v7g-9h8f-8pgg)

A vulnerability was found in parse-community parse-server up to 8.6.41/9.6.0-alpha.16 and classified as problematic . This affects an unknown part of the component Session Creation Endpoint . Executin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4396 | Devolutions Hub Reporting Service up to 2025.3.1.1 certificate validation (DEVO-2026-0009)

A vulnerability was found in Devolutions Hub Reporting Service up to 2025.3.1.1 . It has been classified as critical . This vulnerability affects unknown code. The manipulation leads to improper certi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31973 | SAMtools up to 1.21.0/1.22.1/1.23 CRAM File Parser cram_decode_compression_header null pointer dereference (GHSA-x86f-q6fj-cm43)

A vulnerability was found in SAMtools up to 1.21.0/1.22.1/1.23 . It has been declared as problematic . This issue affects the function cram_decode_compression_header of the component CRAM File Parser …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32723 | nyariv SandboxJS up to 0.8.34 Timer Call currentTicks.current race condition (GHSA-7p5m-xrh7-769r)

A vulnerability was found in nyariv SandboxJS up to 0.8.34 . It has been rated as problematic . Impacted is the function currentTicks.current of the component Timer Call Handler . This manipulation ca…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32736 | HytaleModding wiki up to 0.x authorization

A vulnerability categorized as problematic has been discovered in HytaleModding wiki up to 0.x . The affected element is an unknown function. Such manipulation leads to missing authorization. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32730 | apostrophecms apostrophe up to 4.27.x Multi-Factor Authentication improper authentication

A vulnerability identified as critical has been detected in apostrophecms apostrophe up to 4.27.x . The impacted element is an unknown function of the component Multi-Factor Authentication . Performin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32703 | opf openproject up to 16.6.8/17.0.5/17.1.2/17.2.0 Repositories cross site scripting (GHSA-p423-72h4-fjvp)

A vulnerability labeled as problematic has been found in opf openproject up to 16.6.8/17.0.5/17.1.2/17.2.0 . This affects an unknown function of the component Repositories Module . Executing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32731 | apostrophecms import-export up to 3.5.2 path traversal

A vulnerability marked as critical has been reported in apostrophecms import-export up to 3.5.2 . This impacts an unknown function. The manipulation leads to path traversal. This vulnerability is refe…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32638 | withstudiocms up to 0.4.3 REST API Rank authorization (GHSA-xvf4-ch4q-2m24)

A vulnerability described as problematic has been identified in withstudiocms studiocms up to 0.4.3 . Affected is an unknown function of the component REST API . The manipulation of the argument Rank …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32735 | Chrimle openapi-to-java-records-mustache-templates-parent up to 3.5.0 POM File Parser input validation

A vulnerability classified as problematic has been found in Chrimle openapi-to-java-records-mustache-templates-parent up to 3.5.0 . Affected by this vulnerability is an unknown functionality of the co…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32728 | parse-community parse-server up to 8.6.40/9.6.0-alpha.14 File Extension cross site scripting (GHSA-42ph-pf9q-cr72)

A vulnerability classified as problematic was found in parse-community parse-server up to 8.6.40/9.6.0-alpha.14 . Affected by this issue is some unknown functionality of the component File Extension H…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4407 | Xpdf 4.06 out-of-bounds

A vulnerability, which was classified as problematic , has been found in Xpdf 4.06 . This affects an unknown part. Performing a manipulation results in out-of-bounds read. This vulnerability is catalo…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32737 | ctfer-io romeo up to 0.2.0 access control

A vulnerability, which was classified as critical , was found in ctfer-io romeo up to 0.2.0 . This vulnerability affects unknown code. Executing a manipulation can lead to improper access controls. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32805 | ctfer-io romeo up to 0.2.1 Tar decoder.go sanitizeArchivePath path traversal

A vulnerability has been found in ctfer-io romeo up to 0.2.1 and classified as critical . This issue affects the function sanitizeArchivePath of the file webserver/api/v1/decoder.go of the component T…

VulDB Read →
← Prev 2098 / 2255 Next →