CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  39236 articles  ·  updated every 4 hours · grows forever

39236Total
28596Full Text
Jul 27, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47970 | macaron-notes-great-notebook Macaron Notes Gear Notebook 5.5 memory allocation (Exploit 49953)

A vulnerability marked as problematic has been reported in macaron-notes-great-notebook Macaron Notes Gear Notebook 5.5 . This affects an unknown function. The manipulation leads to uncontrolled memor…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47971 | my-notes-safe My Notes Safe 5.3 memory allocation (Exploit 49954)

A vulnerability described as problematic has been identified in my-notes-safe My Notes Safe 5.3 . This impacts an unknown function. The manipulation results in uncontrolled memory allocation. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47972 | sticky-notes-color-widgets Sticky Notes Color Widgets 1.4.2 memory allocation (Exploit 49957)

A vulnerability classified as problematic has been found in sticky-notes-color-widgets Sticky Notes Color Widgets 1.4.2 . Affected is an unknown function. This manipulation causes uncontrolled memory …

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47973 | sticky-notes Sticky Notes Widget 3.0.6 memory allocation (Exploit 49978)

A vulnerability classified as problematic was found in sticky-notes Sticky Notes Widget 3.0.6 . Affected by this vulnerability is an unknown functionality. Such manipulation leads to uncontrolled memo…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47934 | MyBB Timeline Plugin 1.0 User Profile timeline.php cross site scripting (Exploit 49467)

A vulnerability, which was classified as problematic , has been found in MyBB Timeline Plugin 1.0 . Affected by this issue is some unknown functionality of the file timeline.php of the component User …

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47981 | Opensolution Quick.CMS 6.7 sDescription cross site scripting (Exploit 50530)

A vulnerability, which was classified as problematic , was found in Opensolution Quick.CMS 6.7 . This affects an unknown part. Executing a manipulation of the argument sDescription can lead to cross s…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2020-37247 | Kite 4.2.0.1 U1 KiteService Windows Service unquoted search path (Exploit 50975)

A vulnerability has been found in Kite 4.2.0.1 U1 and classified as problematic . This vulnerability affects unknown code of the component KiteService Windows Service . The manipulation leads to unquo…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47974 | Vxsearch VX Search 13.5.28 Search Enterprise Service unquoted search path (Exploit 50026)

A vulnerability was found in Vxsearch VX Search 13.5.28 and classified as problematic . This issue affects some unknown processing of the component Search Enterprise Service . The manipulation results…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47978 | ProcessMaker up to 3.5.4 filename control (Exploit 50229)

A vulnerability was found in ProcessMaker up to 3.5.4 . It has been classified as problematic . Impacted is an unknown function. This manipulation causes improper control of filename for include/requi…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47980 | Getfuelcms Fuel CMS 1.4.13 Activity Log Interface col sql injection (Exploit 50523)

A vulnerability was found in Getfuelcms Fuel CMS 1.4.13 . It has been declared as critical . The affected element is an unknown function of the component Activity Log Interface . Such manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2020-37245 | Supsystic Digital Publications 1.6.9 path traversal (Exploit 49542)

A vulnerability was found in Supsystic Digital Publications 1.6.9 . It has been rated as critical . The impacted element is an unknown function. Performing a manipulation results in path traversal. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2021-47975 | Wplearnmanager WP Learn Manager 1.1.2 Field Ordering Interface jslm_fieldordering cross site scripting (Exploit 50086)

A vulnerability categorized as problematic has been discovered in Wplearnmanager WP Learn Manager 1.1.2 . This affects the function jslm_fieldordering of the component Field Ordering Interface . Execu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2020-37238 | CMS Made Simple 2.2.15 SVG File cross site scripting (Exploit 49199)

A vulnerability identified as problematic has been detected in CMS Made Simple 2.2.15 . This impacts an unknown function of the component SVG File Handler . The manipulation leads to cross site script…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2020-37241 | bloofoxCMS up to 0.5.2.1 Admin User Creation Endpoint cross-site request forgery (Exploit 49507)

A vulnerability labeled as problematic has been found in bloofoxCMS up to 0.5.2.1 . Affected is an unknown function of the component Admin User Creation Endpoint . The manipulation results in cross-si…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2020-37243 | Supsystic Pricing Table 1.8.6/1.8.7 GET Parameter getListForTbl sidx sql injection (Exploit 49533)

A vulnerability marked as critical has been reported in Supsystic Pricing Table 1.8.6/1.8.7 . Affected by this vulnerability is the function getListForTbl of the component GET Parameter Handler . This…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8750 | h2oai h2o-3 up to 7402 ImportFile API PersistNFS.java importFiles information disclosure

A vulnerability described as problematic has been identified in h2oai h2o-3 up to 7402 . Affected by this issue is the function importFiles of the file h2o-core/src/main/java/water/persist/PersistNFS.…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8751 | h2oai h2o-3 up to 7402 JAR Model.java importBinaryModel deserialization

A vulnerability classified as critical has been found in h2oai h2o-3 up to 7402 . This affects the function importBinaryModel of the file h2o-core/src/main/java/hex/Model.java of the component JAR Han…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8752 | h2oai h2o-3 up to 7402 Rapids setproperty Primitive AstSetProperty.java exec access control

A vulnerability classified as critical was found in h2oai h2o-3 up to 7402 . This vulnerability affects the function exec of the file h2o-core/src/main/java/water/rapids/ast/prims/misc/AstSetProperty.…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8753 | kalcaddle Kodbox up to 1.64 fileThumb Plugin VideoResize.class.php parseVideoInfo ffmpegBin command injection

A vulnerability, which was classified as critical , has been found in kalcaddle Kodbox up to 1.64 . This issue affects the function parseVideoInfo of the file /workspace/source-code/plugins/fileThumb/…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8754 | AstrBotDevs AstrBot up to 4.23.5 File Upload chat.py post_file filename path traversal

A vulnerability, which was classified as critical , was found in AstrBotDevs AstrBot up to 4.23.5 . Impacted is the function post_file of the file astrbot/dashboard/routes/chat.py of the component Fil…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8755 | fishaudio Bert-VITS2 up to 8f7fbd8c4770965225d258db548da27dc8dd934c Model hiyoriUI.py _get_all_models path traversal

A vulnerability has been found in fishaudio Bert-VITS2 up to 8f7fbd8c4770965225d258db548da27dc8dd934c and classified as critical . The affected element is the function _get_all_models of the file hiyo…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8756 | fishaudio Bert-VITS2 up to 8f7fbd8c4770965225d258db548da27dc8dd934c Gradio Interface webui_preprocess.py generate_config data_dir path traversal

A vulnerability was found in fishaudio Bert-VITS2 up to 8f7fbd8c4770965225d258db548da27dc8dd934c and classified as critical . The impacted element is the function generate_config of the file webui_pre…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8757 | adenhq hive up to 0.11.0 Delete Request routes_sessions.py _read_events_tail path traversal

A vulnerability was found in adenhq hive up to 0.11.0 . It has been classified as critical . This affects the function _read_events_tail of the file core/framework/server/routes_sessions.py of the com…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8758 | Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06 /common/jsp/upload3.jsp File unrestricted upload

A vulnerability was found in Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06 . It has been declared as critical . This impacts an unknown function of the file /common/jsp/upload3.jsp . Executing a manipulati…

VulDB Read →
← Prev 778 / 1635 Next →