CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  20591 articles  ·  updated every 4 hours · grows forever

20591Total
17966Full Text
May 17, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
◬ AI & Machine Learning May 14, 2026
Ghost in the Context: Measuring Policy-Carriage Failures in Decision-Time Assembly

arXiv:2605.12535v1 Announce Type: new Abstract: LM agents do not act on raw interaction history; they act on a bounded decision state assembled by truncation, summarization, reordering, and rewriting.…

arXiv Security Read →
◬ AI & Machine Learning May 14, 2026
BackFlush: Knowledge-Free Backdoor Detection and Elimination with Watermark Preservation in Large Language Models

arXiv:2605.12529v1 Announce Type: new Abstract: In recent trends, one can observe Large Language Models (LLMs) are exposed to backdoor attacks where vicious triggers added during training or model edi…

arXiv Security Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44424 | shellhub-io shellhub up to 0.24.1 /api/devices/ authorization (GHSA-j72x-xfwg-783f)

A vulnerability identified as problematic has been detected in shellhub-io shellhub up to 0.24.1 . Affected by this issue is some unknown functionality of the file /api/devices/ . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44426 | shellhub-io shellhub up to 0.24.1 /api/namespaces/:tenant authorization (GHSA-vwx9-7qcf-gg7f)

A vulnerability labeled as problematic has been found in shellhub-io shellhub up to 0.24.1 . This affects an unknown part of the file /api/namespaces/:tenant . Executing a manipulation can lead to aut…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45053 | CubeCart up to 6.6.x /api/v1/files unrestricted upload (GHSA-652f-8c88-25cx)

A vulnerability marked as critical has been reported in CubeCart up to 6.6.x . This vulnerability affects unknown code of the file /api/v1/files . The manipulation leads to unrestricted upload. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45054 | CubeCart up to 6.6.x Admin Password admin.php?_g=orders&node=transactions sqlSafe sort sql injection (GHSA-rm2f-rpcq-6w9f)

A vulnerability described as critical has been identified in CubeCart up to 6.6.x . This issue affects the function sqlSafe of the file admin.php?_g=orders&node=transactions of the component Admin Pas…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45055 | CubeCart up to 6.7.1 Request Header /index.php?_a=recover User::passwordRequest password recovery (GHSA-7pvc-gxc4-chmc)

A vulnerability classified as critical has been found in CubeCart up to 6.7.1 . Impacted is the function User::passwordRequest of the file /index.php?_a=recover of the component Request Header Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45708 | CubeCart up to 6.7.2 files/print..php code injection (GHSA-747j-4mmc-cj63)

A vulnerability classified as critical was found in CubeCart up to 6.7.2 . The affected element is an unknown function of the file files/print..php . Such manipulation leads to code injection. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-42031 | CKAN up to 2.10.9/2.11.4 datastore_search_sql sql injection (GHSA-h7j7-3rx6-xvcg)

A vulnerability, which was classified as critical , has been found in CKAN up to 2.10.9/2.11.4 . The impacted element is the function datastore_search_sql . Performing a manipulation results in sql in…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-42032 | CKAN up to 2.10.9/2.11.4 datastore_search_sql authorization (GHSA-cg4x-64p3-x59h)

A vulnerability, which was classified as critical , was found in CKAN up to 2.10.9/2.11.4 . This affects the function datastore_search_sql . Executing a manipulation can lead to incorrect authorizatio…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-5486 | unitecms Unlimited Elements for Elementor Plugin up to 2.0.7 on WordPress normalizeAjaxInputData filter_search sql injection

A vulnerability has been found in unitecms Unlimited Elements for Elementor Plugin up to 2.0.7 on WordPress and classified as critical . This impacts the function normalizeAjaxInputData . The manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44440 | Frappe ERPNext up to 15.101.0/16.9.x path traversal (GHSA-6ffr-92hr-3394)

A vulnerability was found in Frappe ERPNext up to 15.101.0/16.9.x and classified as critical . Affected is an unknown function. The manipulation results in path traversal. This vulnerability is known …

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44442 | Frappe ERPNext up to 16.9.0 authorization (GHSA-cg5w-7g26-p3w9)

A vulnerability was found in Frappe ERPNext up to 16.9.0 . It has been classified as critical . Affected by this vulnerability is an unknown functionality. This manipulation causes missing authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44448 | Frappe ERPNext up to 15.101.x/16.10.x authorization (GHSA-444j-g95x-5pqv)

A vulnerability was found in Frappe ERPNext up to 15.101.x/16.10.x . It has been declared as problematic . Affected by this issue is some unknown functionality. Such manipulation leads to missing auth…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-41132 | CKAN up to 2.10.9/2.11.4 certificate validation (GHSA-mpfm-fpgx-647q)

A vulnerability was found in CKAN up to 2.10.9/2.11.4 . It has been rated as problematic . This affects an unknown part. Performing a manipulation results in improper certificate validation. This vuln…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45714 | CubeCart up to 6.6.x Multiple code injection (GHSA-pcfr-xgc9-xfv6)

A vulnerability categorized as critical has been discovered in CubeCart up to 6.6.x . This vulnerability affects unknown code of the component Multiple Module . Executing a manipulation can lead to co…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44441 | Frappe ERPNext up to 15.105.x/16.15.x server-side request forgery (GHSA-m4m4-j2m2-7fcw)

A vulnerability identified as critical has been detected in Frappe ERPNext up to 15.105.x/16.15.x . This issue affects some unknown processing. The manipulation leads to server-side request forgery. T…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44446 | Frappe ERPNext up to 15.104.2/16.13.x sql injection (GHSA-6fm9-g88m-hxr7)

A vulnerability labeled as critical has been found in Frappe ERPNext up to 15.104.2/16.13.x . Impacted is an unknown function. The manipulation results in sql injection. This vulnerability is identifi…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44447 | Frappe ERPNext up to 16.8.x sql injection (GHSA-q65v-fm9p-9vh3)

A vulnerability marked as critical has been reported in Frappe ERPNext up to 16.8.x . The affected element is an unknown function. This manipulation causes sql injection. This vulnerability is tracked…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44471 | GitoxideLabs gitoxide up to 0.21.0 gix-fs/src/stack.rs make_relative_path_current link following (GHSA-f89h-2fjh-2r9q)

A vulnerability described as critical has been identified in GitoxideLabs gitoxide up to 0.21.0 . The impacted element is the function gix_fs::Stack::make_relative_path_current of the file gix-fs/src/…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-43970 | ninenines cowlib up to 2.16.0 data amplification

A vulnerability classified as problematic has been found in ninenines cowlib up to 2.16.0 . This affects an unknown function. Performing a manipulation results in highly compressed data. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44437 | angular angular-cli up to 19.2.24/20.3.24/21.2.8 path traversal (GHSA-69xr-m8h6-h664)

A vulnerability classified as critical was found in angular angular-cli up to 19.2.24/20.3.24/21.2.8 . This impacts an unknown function. Executing a manipulation can lead to path traversal. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-46445 | Alinto SOGo up to 5.12.6 sql injection

A vulnerability, which was classified as critical , has been found in Alinto SOGo up to 5.12.6 . Affected is an unknown function. The manipulation leads to sql injection. This vulnerability is documen…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-46446 | Alinto SOGo up to 5.12.6 c_password sql injection

A vulnerability, which was classified as critical , was found in Alinto SOGo up to 5.12.6 . Affected by this vulnerability is an unknown functionality. The manipulation of the argument c_password resu…

VulDB Read →
← Prev 33 / 858 Next →