CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  29870 articles  ·  updated every 4 hours · grows forever

29870Total
23503Full Text
Jun 20, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9520 | blitz-js blitz up to 3.0.2 on GitHub Sign-in LoginForm.tsx Next cross site scripting

A vulnerability classified as problematic has been found in blitz-js blitz up to 3.0.2 on GitHub. This impacts an unknown function of the file packages/generator/templates/app/src/app/auth/components/…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9521 | fraillt bitsery up to 5.2.4 std_smart_ptr.h loadFromSharedState improper validation of specified type of input

A vulnerability classified as critical was found in fraillt bitsery up to 5.2.4 . Affected is the function loadFromSharedState in the library include/bitsery/ext/std_smart_ptr.h . Such manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9523 | Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform getCalcmeterDetailDayListTree sql injection

A vulnerability, which was classified as critical , has been found in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 3000WEBV2 . Affected by this vulnerability is an u…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9524 | xianrendzw EasyReport up to 2.0.17.0522_Beta REST Endpoint execute reportParams sql injection

A vulnerability, which was classified as critical , was found in xianrendzw EasyReport up to 2.0.17.0522_Beta . Affected by this issue is the function execute of the component REST Endpoint . Executin…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9525 | itsourcecode Electronic Judging System 1.0 /admin/edit_judge.php judge_id sql injection

A vulnerability has been found in itsourcecode Electronic Judging System 1.0 and classified as critical . This affects an unknown part of the file /admin/edit_judge.php . The manipulation of the argum…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9526 | itsourcecode Electronic Judging System 1.0 /admin/edit_team.php num_id sql injection

A vulnerability was found in itsourcecode Electronic Judging System 1.0 and classified as critical . This vulnerability affects unknown code of the file /admin/edit_team.php . The manipulation of the …

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9527 | itsourcecode Electronic Judging System 1.0 /admin/judges.php fname cross site scripting

A vulnerability was found in itsourcecode Electronic Judging System 1.0 . It has been classified as problematic . This issue affects some unknown processing of the file /admin/judges.php . This manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9528 | itsourcecode Electronic Judging System 1.0 /admin/delete_judge.php judge_id sql injection

A vulnerability was found in itsourcecode Electronic Judging System 1.0 . It has been declared as critical . Impacted is an unknown function of the file /admin/delete_judge.php . Such manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9529 | GNU LibreDWG up to 0.14 Dwggrep Utility dwggrep.c match_BLOCK_HEADER null pointer dereference (Issue 1247)

A vulnerability was found in GNU LibreDWG up to 0.14 . It has been rated as problematic . The affected element is the function match_BLOCK_HEADER of the file dwggrep.c of the component Dwggrep Utility…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9530 | GNU LibreDWG up to 0.14 Dwgbmp Utility src/decode.c read_2004_compressed_section out-of-bounds (Issue 1248)

A vulnerability categorized as problematic has been discovered in GNU LibreDWG up to 0.14 . The impacted element is the function read_2004_compressed_section of the file src/decode.c of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48846 | Roundcube Webmail up to 1.6.15/1.7.0 CSS var resource transfer

A vulnerability identified as critical has been detected in Roundcube Webmail up to 1.6.15/1.7.0 . This affects the function var of the component CSS Handler . The manipulation leads to incorrect reso…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-24546 | Ruben Garcia GamiPress Plugin up to 7.6.3 on WordPress authorization

A vulnerability labeled as problematic has been found in Ruben Garcia GamiPress Plugin up to 7.6.3 on WordPress. This impacts an unknown function. The manipulation results in missing authorization. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48844 | Roundcube Webmail up to 1.6.15/1.7.0 LDAP control flow

A vulnerability marked as problematic has been reported in Roundcube Webmail up to 1.6.15/1.7.0 . Affected is an unknown function of the component LDAP . This manipulation causes incorrect control flo…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48848 | Roundcube Webmail up to 1.6.15/1.7.0 SVG Document attributeName cross site scripting (EUVD-2026-31727)

A vulnerability described as problematic has been identified in Roundcube Webmail up to 1.6.15/1.7.0 . Affected by this vulnerability is an unknown functionality of the component SVG Document Handler …

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48845 | Roundcube Webmail up to 1.6.15/1.7.0 Email Message resource transfer

A vulnerability classified as critical has been found in Roundcube Webmail up to 1.6.15/1.7.0 . Affected by this issue is some unknown functionality of the component Email Message Handler . Performing…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48843 | Roundcube Webmail up to 1.6.15/1.7.0 Mail Message server-side request forgery (EUVD-2026-31718)

A vulnerability classified as critical was found in Roundcube Webmail up to 1.6.15/1.7.0 . This affects an unknown part of the component Mail Message Handler . Executing a manipulation can lead to ser…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48847 | Roundcube Webmail up to 1.6.15/1.7.0 redis/memcache resource transfer

A vulnerability, which was classified as problematic , has been found in Roundcube Webmail up to 1.6.15/1.7.0 . This vulnerability affects unknown code of the component redis/memcache . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-48842 | Roundcube Webmail up to 1.6.15/1.7.0 preg_replace sql injection

A vulnerability, which was classified as critical , was found in Roundcube Webmail up to 1.6.15/1.7.0 . This issue affects the function preg_replace . The manipulation results in sql injection. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9531 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi setUpgradeUboot FileName os command injection

A vulnerability has been found in Totolink CA750-PoE 6.2c.510 and classified as critical . Impacted is the function setUpgradeUboot of the file /cgi-bin/cstecgi.cgi of the component Setting Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9532 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi setUploadUserData FileName os command injection

A vulnerability was found in Totolink CA750-PoE 6.2c.510 and classified as critical . The affected element is the function setUploadUserData of the file /cgi-bin/cstecgi.cgi of the component Setting H…

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9533 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi recvUpgradeNewFw fwUrl/magicid os command injection

A vulnerability was found in Totolink CA750-PoE 6.2c.510 . It has been classified as critical . The impacted element is the function recvUpgradeNewFw of the file /cgi-bin/cstecgi.cgi of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs May 26, 2026
CVE-2026-9534 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi setWiFiWpsConfig PIN os command injection

A vulnerability was found in Totolink CA750-PoE 6.2c.510 . It has been declared as critical . This affects the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component Setting Handl…

VulDB Read →
◉ Threat Intelligence May 26, 2026
TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)

TeamPCP now operates across three package ecosystems in parallel, it reached GitHub&#;x26;#;39;s own internal codebase, it trojanized an officially Microsoft-published Python SDK, and it appears to ha…

SANS ISC Read →
◉ Threat Intelligence May 26, 2026
TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)

TeamPCP now operates across three package ecosystems in parallel, it reached GitHub&#;x26;#;39;s own internal codebase, it trojanized an officially Microsoft-published Python SDK, and it appears to ha…

SANS ISC Read →
← Prev 299 / 1245 Next →