CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  20779 articles  ·  updated every 4 hours · grows forever

20779Total
18097Full Text
May 18, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-35071 | Dell PowerScale InsightIQ up to up to 6.2.0 os command injection (dsa-2026-208)

A vulnerability, which was classified as critical , was found in Dell PowerScale InsightIQ up to up to 6.2.0 . This vulnerability affects unknown code. The manipulation results in os command injection…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-40638 | Dell PowerScale InsightIQ up to 6.2.0 unnecessary privileges (dsa-2026-208)

A vulnerability has been found in Dell PowerScale InsightIQ up to 6.2.0 and classified as critical . This issue affects some unknown processing. This manipulation causes execution with unnecessary pri…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-32687 | elixir-ecto postgrex up to 0.22.1 notifications.ex handle_connect channel sql injection

A vulnerability was found in elixir-ecto postgrex up to 0.22.1 and classified as critical . Impacted is the function handle_connect in the library lib/postgrex/notifications.ex . Such manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-6866 | Schneider Electric EcoStruxure Panel Server insecure default initialization of resource (SEVD-2026-132-04)

A vulnerability was found in Schneider Electric EcoStruxure Panel Server . It has been classified as problematic . The affected element is an unknown function. Performing a manipulation results in ins…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43938 | YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 DbLogger.cs FormatStackTrace UserAgent cross site scripting

A vulnerability was found in YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 . It has been declared as problematic . The impacted element is the function FormatStackTrace of the file YAFNET.Core/Logger/…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43937 | YAFNET YetAnotherForum.NET up to 4.0.4 /Info/4 sql injection

A vulnerability was found in YAFNET YetAnotherForum.NET up to 4.0.4 . It has been rated as critical . This affects an unknown function of the file /Info/4 . The manipulation leads to sql injection. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43939 | YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 cross site scripting

A vulnerability categorized as problematic has been discovered in YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 . This impacts an unknown function. The manipulation results in cross site scripting. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43983 | pocket-id Pocket ID up to 2.5.x Refresh Token createTokenFromRefreshToken improper authorization

A vulnerability identified as critical has been detected in pocket-id Pocket ID up to 2.5.x . Affected is the function createTokenFromRefreshToken of the component Refresh Token Handler . This manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-5061 | HashiCorp Tooling up to 0.41.x link following

A vulnerability labeled as critical has been found in HashiCorp Tooling up to 0.41.x . Affected by this vulnerability is an unknown functionality. Such manipulation leads to link following. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-7431 | Ivanti Secure Access Client up to 22.8R5 permission assignment

A vulnerability marked as problematic has been reported in Ivanti Secure Access Client up to 22.8R5 . Affected by this issue is some unknown functionality. Performing a manipulation results in incorre…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-42260 | Aas-ee open-webSearch up to 2.1.6 server-side request forgery

A vulnerability described as critical has been identified in Aas-ee open-webSearch up to 2.1.6 . This affects an unknown part. Executing a manipulation can lead to server-side request forgery. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8043 | Ivanti Xtraction up to 2026.1 HTML File file inclusion

A vulnerability classified as critical has been found in Ivanti Xtraction up to 2026.1 . This vulnerability affects unknown code of the component HTML File Handler . The manipulation leads to file inc…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8368 | OALDERS LWP::UserAgent up to 6.82 on Perl insufficiently protected credentials

A vulnerability classified as problematic was found in OALDERS LWP::UserAgent up to 6.82 on Perl. This issue affects some unknown processing. The manipulation results in insufficiently protected crede…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8051 | Ivanti Virtual Traffic Manager up to 22.9r3 os command injection

A vulnerability, which was classified as critical , has been found in Ivanti Virtual Traffic Manager up to 22.9r3 . Impacted is an unknown function. This manipulation causes os command injection. The …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8111 | Ivanti Endpoint Manager up to 2024 SU5 Web Console sql injection

A vulnerability, which was classified as critical , was found in Ivanti Endpoint Manager up to 2024 SU5 . The affected element is an unknown function of the component Web Console . Such manipulation l…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8109 | Ivanti Endpoint Manager up to 2024 SU5 Core Server routine

A vulnerability has been found in Ivanti Endpoint Manager up to 2024 SU5 and classified as problematic . The impacted element is an unknown function of the component Core Server . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8401 | Mozilla Firefox up to 150.0.2 Profile Backup sandbox

A vulnerability was found in Mozilla Firefox up to 150.0.2 and classified as critical . This affects an unknown function of the component Profile Backup Component . Executing a manipulation can lead t…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-7432 | Ivanti Secure Access Client up to 22.8R5 race condition

A vulnerability was found in Ivanti Secure Access Client up to 22.8R5 . It has been classified as critical . This impacts an unknown function. The manipulation leads to race condition. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8110 | Ivanti Endpoint Manager up to 2024 SU5 permission assignment

A vulnerability was found in Ivanti Endpoint Manager up to 2024 SU5 . It has been declared as critical . Affected is an unknown function. The manipulation results in incorrect permission assignment. T…

VulDB Read →
◇ Industry News & Leadership May 12, 2026
Critical “Cline” AI Agent Vulnerability Enables RCE Attacks

A critical security flaw has been identified in the Cline Kanban server that allows threat actors to exfiltrate workspace data and execute arbitrary code silently and remotely. Security researcher The…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
North Korean Hackers Weaponize Git Hooks to Deploy Cross-Platform Malware

North Korean hackers have found a new way to hide malware inside the tools that software developers rely on every single day. Instead of sending phishing emails or planting fake links, they are now bu…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
Hackers Hijack Microsoft Teams Accounts to Deliver ModeloRAT

A new wave of cyberattacks is putting Microsoft Teams users on high alert across organizations worldwide. Hackers have been found hijacking Teams accounts to impersonate IT support staff and push a da…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
SAP Patches Critical SQL injection Vulnerability in SAP S/4HANA

On May 12, 2026, SAP released its highly anticipated monthly Security Patch Day updates, addressing numerous severe security flaws across its entire enterprise software portfolio. The most alarming di…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
New Stealthy Vidar Stealer Campaign Bypass EDR and Steal Credentials

A new and highly stealthy campaign distributing Vidar Stealer has surfaced, targeting Windows users with a sophisticated attack chain designed to slip past endpoint defenses and harvest sensitive cred…

Cybersecurity News Read →
← Prev 62 / 866 Next →