A vulnerability was found in OpenChoreo up to 1.0.2/1.1.2 . It has been declared as critical . The affected element is an unknown function of the file internal/openchoreo-api/api/handlers/webhook_hand…
cyberintel.kalymoon.com · 44283 articles · updated every 4 hours · grows forever
A vulnerability was found in OpenChoreo up to 1.0.2/1.1.2 . It has been declared as critical . The affected element is an unknown function of the file internal/openchoreo-api/api/handlers/webhook_hand…
A vulnerability was found in OpenChoreo up to 1.0.1/1.1.1 . It has been rated as very critical . The impacted element is an unknown function of the file internal/cluster-gateway/server.go of the compo…
A vulnerability categorized as critical has been discovered in Budibase up to 3.39.29 . This affects the function users.getGlobalUserByEmail of the file packages/backend-core/src/middleware/passport/s…
A vulnerability identified as problematic has been detected in Budibase up to 3.39.24 . This impacts an unknown function of the file packages/server/src/utilities/global.ts of the component User Objec…
A vulnerability labeled as problematic has been found in Jupyter JupyterLab up to 4.5.9/4.6.1 . Affected is an unknown function of the file packages/notebook-extension/src/index.ts of the component No…
A vulnerability marked as critical has been reported in nextauthjs next-auth up to 5.0.0-beta.31 . Affected by this vulnerability is the function auth of the component Session Parsing . The manipulati…
A vulnerability described as critical has been identified in OpenChoreo up to 1.1.x . Affected by this issue is some unknown functionality of the file internal/openchoreo-api/api/handlers/exec.go of t…
A vulnerability classified as problematic has been found in OpenChoreo . This affects an unknown part of the file internal/cluster-gateway/server.go of the component cluster-gateway . This manipulatio…
A vulnerability classified as critical was found in NextAuth.js @auth, core and next-auth . This vulnerability affects the function defaultNormalizer of the component Email Normalization . Such manipu…
A vulnerability, which was classified as problematic , has been found in Eugeny Russh up to 0.62.3 . This issue affects some unknown processing of the file russh/src/server/encrypted.rs of the compone…
A vulnerability, which was classified as critical , was found in Budibase up to 3.39.23 . Impacted is the function validateGlobalRoleUpdate of the file packages/server/src/api/controllers/public/globa…
A vulnerability has been found in Basecamp Trix up to 2.1.17 and classified as problematic . The affected element is the function StringPiece.fromJSON of the component HTMLParser/StringPiece . The man…
Fulcrumsec Claims 2nd Data Dump Exposes Firm's Hugging Face Models, Drug R&D Data Extortion gang Fulcrumsec has leaked on its dark web site a second large cache of data it allegedly stole in a June at…
Also, LiteLLM Attack Exposed 430,000 Pipelines, Ukrainian IT Workers Targeted This week: An evil twin attack on a Delta flight, the LiteLLM attack exposed 430,000 pipelines, Russian hackers targeted U…
Resilience Data Shows Social Engineering Dominates Over AI-Native Losses AI is amplifying familiar attacks rather than creating new categories of loss. Resilience's Jud Dressler explains why social en…
CEO: Funding Will Expand Exploit Blocking Across Cloud-Native and Agentic Apps Startup Oligo raised $60 million to expand runtime exploit blocking to agentic AI, tracing activity from prompts and tool…
Security researchers have seen evidence that attackers are attempting to exploit a currently unpatched SQL injection vulnerability in GeoServer, an open-source web server for managing and publishing g…
Exploitation against CVE-2026–59310 began earlier this month, and patching the vulnerability may not be enough to fully mitigate the threat.
An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine into Safe Mode with Networking. [...]
Authorities in Ukraine shut down 94 fraudulent call centers across the country that lured people into investment scams or tried to obtain access to bank accounts. [...]
AI incident response: faster threats in 2026 Spiceworks
Cellebrite DI Releases Q2 2026 Financial Results AlphaStreet
Cellebrite (CLBT) boosts H1 2026 revenue 17% while net income falls sharply Stock Titan
Stock Market Today, Aug. 13: Cellebrite Shares Plummet 29% After Missing Earnings, Cutting 2026 Revenue Guidance The Motley Fool