CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  22816 articles  ·  updated every 4 hours · grows forever

22816Total
19322Full Text
May 26, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41399 | OpenClaw up to 2026.3.27 WebSocket Upgrade allocation of resources (GHSA-f44p-c7w9-7xr7)

A vulnerability classified as problematic was found in OpenClaw up to 2026.3.27 . This affects an unknown function of the component WebSocket Upgrade Handler . Such manipulation leads to allocation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41402 | OpenClaw up to 2026.3.30 Webhook Replay Cache Deduplication name resolution (GHSA-hhq4-97c2-p447)

A vulnerability, which was classified as problematic , has been found in OpenClaw up to 2026.3.30 . This impacts an unknown function of the component Webhook Replay Cache Deduplication . Performing a …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41407 | OpenClaw up to 2026.4.1 timing discrepancy (GHSA-jj6q-rrrf-h66h)

A vulnerability, which was classified as problematic , was found in OpenClaw up to 2026.4.1 . Affected is an unknown function. Executing a manipulation can lead to observable timing discrepancy. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42422 | OpenClaw up to 2026.4.7 authorization (GHSA-whf9-3hcx-gq54)

A vulnerability has been found in OpenClaw up to 2026.4.7 and classified as critical . Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect authorization. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42431 | OpenClaw up to 2026.4.7 node.invoke authorization (GHSA-cmfr-9m2r-xwhq / EUVD-2026-26133)

A vulnerability was found in OpenClaw up to 2026.4.7 and classified as critical . Affected by this issue is the function node.invoke . The manipulation results in incorrect authorization. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42423 | OpenClaw up to 2026.4.7 failing open (GHSA-q2gc-xjqw-qp89)

A vulnerability was found in OpenClaw up to 2026.4.7 . It has been classified as problematic . This affects an unknown part. This manipulation causes not failing securely. This vulnerability appears a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-6807 | NSA GRASSMARLIN 3.2.1 XML xml external entity reference (icsa-26-118-01)

A vulnerability was found in NSA GRASSMARLIN 3.2.1 . It has been declared as problematic . This vulnerability affects unknown code of the component XML Handler . Such manipulation leads to xml externa…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41403 | OpenClaw up to 2026.3.30 reliance on untrusted inputs in a security decision (GHSA-3xv9-89fm-7h4r)

A vulnerability was found in OpenClaw up to 2026.3.30 . It has been rated as problematic . This issue affects some unknown processing. Performing a manipulation results in reliance on untrusted inputs…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41377 | OpenClaw up to 2026.3.30 Plugin Installation failing open (GHSA-cwq8-6f96-g3q4)

A vulnerability categorized as critical has been discovered in OpenClaw up to 2026.3.30 . Impacted is an unknown function of the component Plugin Installation Handler . Executing a manipulation can le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41394 | OpenClaw up to 2026.3.30 authorization (GHSA-mhgq-xpfq-6r66)

A vulnerability identified as critical has been detected in OpenClaw up to 2026.3.30 . The affected element is an unknown function. The manipulation leads to missing authorization. This vulnerability …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41396 | OpenClaw up to 2026.3.30 Environment Variable OPENCLAW_BUNDLED_PLUGINS_DIR inclusion of functionality from untrusted control sphere (GHSA-qcj9-wwgw-6gm8)

A vulnerability labeled as problematic has been found in OpenClaw up to 2026.3.30 . The impacted element is an unknown function of the component Environment Variable Handler . The manipulation of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41912 | OpenClaw up to 2026.4.7 server-side request forgery (GHSA-vr5g-mmx7-h897)

A vulnerability marked as critical has been reported in OpenClaw up to 2026.4.7 . This affects an unknown function. This manipulation causes server-side request forgery. The identification of this vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41914 | OpenClaw up to 2026.4.7 Media Download server-side request forgery (GHSA-3fv3-6p2v-gxwj)

A vulnerability described as critical has been identified in OpenClaw up to 2026.4.7 . This impacts an unknown function of the component Media Download Handler . Such manipulation leads to server-side…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42429 | OpenClaw up to 2026.4.7 authorization (GHSA-4f8g-77mw-3rxc / EUVD-2026-26131)

A vulnerability classified as critical has been found in OpenClaw up to 2026.4.7 . Affected is an unknown function. Performing a manipulation results in incorrect authorization. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42432 | OpenClaw up to 2026.4.7 authorization (GHSA-5wj5-87vq-39xm / EUVD-2026-26134)

A vulnerability classified as problematic was found in OpenClaw up to 2026.4.7 . Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to incorrect authorizatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41398 | OpenClaw up to 2026.4.1 origin validation (GHSA-4p4f-fc8q-84m3)

A vulnerability, which was classified as problematic , has been found in OpenClaw up to 2026.4.1 . Affected by this issue is some unknown functionality. The manipulation leads to origin validation err…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-41911 | OpenClaw up to 2026.4.7 upload_file path traversal (GHSA-5fc7-f62m-8983)

A vulnerability, which was classified as critical , was found in OpenClaw up to 2026.4.7 . This affects the function upload_file . The manipulation results in path traversal. This vulnerability is cat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42424 | OpenClaw up to 2026.4.7 file inclusion (GHSA-qqq7-4hxc-x63c)

A vulnerability has been found in OpenClaw up to 2026.4.7 and classified as problematic . This vulnerability affects unknown code. This manipulation causes file inclusion. This vulnerability is regist…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42430 | OpenClaw up to 2026.4.7 server-side request forgery (GHSA-w8g9-x8gx-crmm / EUVD-2026-26132)

A vulnerability was found in OpenClaw up to 2026.4.7 and classified as critical . This issue affects some unknown processing. Such manipulation leads to server-side request forgery. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42428 | OpenClaw up to 2026.4.7 integrity check (GHSA-3vvq-q2qc-7rmp / EUVD-2026-26130)

A vulnerability was found in OpenClaw up to 2026.4.7 . It has been classified as problematic . Impacted is an unknown function. Performing a manipulation results in missing support for integrity check…

VulDB Read →
◉ Threat Intelligence Apr 29, 2026
Simplifying AWS defense with Microsoft Sentinel UEBA

Learn how Microsoft Sentinel UEBA helps defenders distinguish benign AWS activity from attacker behavior by enriching raw CloudTrail logs with clear, binary behavioral signals derived from baseline us…

Microsoft Security Read →
◉ Threat Intelligence Apr 29, 2026
CrowdStrike Named a Leader in Frost & Sullivan 2026 Radar for Cloud-Native Application Protection Platforms
CrowdStrike Read →
◉ Threat Intelligence Apr 29, 2026
CrowdStrike Expands ChatGPT Enterprise Integration with Enhanced Audit Logging and Activity Monitoring
CrowdStrike Read →
◉ Threat Intelligence Apr 29, 2026
VECT: Ransomware by design, Wiper by accident

Key Takeaways Background VECT Ransomware is a Ransomware-as-a-Service (RaaS) program that made its first appearance in December 2025 on a Russian-language cybercrime forum. After claiming their first …

Check Point Research Read →
← Prev 225 / 951 Next →