CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  41249 articles  ·  updated every 4 hours · grows forever

41249Total
29605Full Text
Aug 03, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-6418 | PaperCut NG/MF up to 25.0.10 Account Synchronization absolute path traversal

A vulnerability, which was classified as problematic , was found in PaperCut NG and MF up to 25.0.10 . Affected is an unknown function of the component Account Synchronization Component . Such manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7824 | PaperCut Hive up to 2.1.x log file

A vulnerability has been found in PaperCut Hive up to 2.1.x and classified as problematic . Affected by this vulnerability is an unknown functionality. Performing a manipulation results in sensitive i…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-3359 | 10web Form Maker Plugin up to 1.15.42 on WordPress inputs sql injection

A vulnerability was found in 10web Form Maker Plugin up to 1.15.42 on WordPress and classified as critical . Affected by this issue is some unknown functionality. Executing a manipulation of the argum…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-3601 | wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress Shortcode embed_form_action authorization

A vulnerability was found in wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress. It has been classified as critical . This affects the function embed_form_action of the component…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7844 | chatchat-space Langchain-Chatchat up to 0.3.1.3 Compatible File Service openai_routes.py missing authentication (Issue 5465)

A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3 . It has been declared as critical . This vulnerability affects the function files/list_files/retrieve_file/retrieve_file_c…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7845 | chatchat-space Langchain-Chatchat up to 0.3.1.3 Vision Chat Paste Image dialogue.py PIL.Image.tobytes paste_image.image_data weak hash (Issue 5462)

A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3 . It has been rated as problematic . This issue affects the function PIL.Image.tobytes of the file libs/chatchat-server/cha…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7846 | chatchat-space Langchain-Chatchat up to 0.3.1.3 OpenAI-Compatible File Upload API openai_routes.py files file.filename toctou (Issue 5463)

A vulnerability categorized as problematic has been discovered in chatchat-space Langchain-Chatchat up to 0.3.1.3 . Impacted is the function files of the file libs/chatchat-server/chatchat/server/api_…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7847 | chatchat-space Langchain-Chatchat up to 0.3.1.3 Uploaded File openai_routes.py _get_file_id random values (Issue 5464)

A vulnerability identified as problematic has been detected in chatchat-space Langchain-Chatchat up to 0.3.1.3 . The affected element is the function _get_file_id of the file libs/chatchat-server/chat…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-6322 | fast-uri up to 3.1.1 normalize interpretation conflict

A vulnerability labeled as problematic has been found in fast-uri up to 3.1.1 . The impacted element is the function normalize . Executing a manipulation can lead to interpretation conflict. This vuln…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7851 | D-Link DI-8100 16.07.26A1 yyxz.asp sprintf ID stack-based overflow

A vulnerability marked as critical has been reported in D-Link DI-8100 16.07.26A1 . This affects the function sprintf of the file yyxz.asp . The manipulation of the argument ID leads to stack-based bu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2025-42611 | Mikrotik RouterOS up to 7.20.x certificate validation

A vulnerability described as critical has been identified in Mikrotik RouterOS up to 7.20.x . This impacts an unknown function. The manipulation results in improper certificate validation. This vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7853 | D-Link DI-8100 16.07.26A1 HTTP /auto_reboot.asp sprintf enable/time buffer overflow

A vulnerability classified as critical has been found in D-Link DI-8100 16.07.26A1 . Affected is the function sprintf of the file /auto_reboot.asp of the component HTTP Handler . This manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7854 | D-Link DI-8100 16.07.26A1 POST Parameter /url_rule.asp url_rule_asp buffer overflow

A vulnerability classified as critical was found in D-Link DI-8100 16.07.26A1 . Affected by this vulnerability is the function url_rule_asp of the file /url_rule.asp of the component POST Parameter Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7855 | D-Link DI-8100 16.07.26A1 HTTP Request /tggl.asp tggl_asp Name buffer overflow

A vulnerability, which was classified as critical , has been found in D-Link DI-8100 16.07.26A1 . Affected by this issue is the function tggl_asp of the file /tggl.asp of the component HTTP Request Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7856 | D-Link DI-8100 16.07.26A1 Web Management Interface /url_member.asp Name buffer overflow

A vulnerability, which was classified as critical , was found in D-Link DI-8100 16.07.26A1 . This affects an unknown part of the file /url_member.asp of the component Web Management Interface . Execut…

VulDB Read →
⬡ Vulnerabilities & CVEs May 05, 2026
CVE-2026-7857 | D-Link DI-8100 16.07.26A1 CGI /user_group.asp sprintf buffer overflow

A vulnerability has been found in D-Link DI-8100 16.07.26A1 and classified as critical . This vulnerability affects the function sprintf of the file /user_group.asp of the component CGI Handler . The …

VulDB Read →
◉ Threat Intelligence May 05, 2026
Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise

Microsoft Defender Research observed a large-scale credential theft campaign that exemplifies this trend, using code of conduct-themed lures, a multi-step attack chain, and legitimate email services t…

Microsoft Security Read →
◉ Threat Intelligence May 05, 2026
CrowdStrike Technical Risk Assessments Reveal Common Exposure Patterns
CrowdStrike Read →
◉ Threat Intelligence May 05, 2026
4th May – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 4th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Medtronic, a global medical device maker, has disclosed…

Check Point Research Read →
◉ Threat Intelligence May 05, 2026
Working in London at the World’s Largest Intelligence Company

See what it is like to work at the Recorded Future London office.

Recorded Future Read →
◉ Threat Intelligence May 05, 2026
DShield Honeypot Update, (Mon, May 4th)

This week, I will release a few updates to our DShield honeypot. The update should happen automatically if you have "automatic updates" enabled on your system. There will be two major changes:

SANS ISC Read →
◉ Threat Intelligence May 05, 2026
TeamPCP Weekly Analysis: 2026-W18 (2026-04-27 through 2026-05-03), (Mon, May 4th)

Summary

SANS ISC Read →
◉ Threat Intelligence May 05, 2026
ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)
SANS ISC Read →
◉ Threat Intelligence May 05, 2026
Cleartext Passwords in MS Edge? In 2026?, (Mon, May 4th)

Yup, that is for real.

SANS ISC Read →
← Prev 962 / 1719 Next →