CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Critical CVEs
Intel Feed

cyberintel.kalymoon.com  ·  82 articles  ·  updated every 4 hours · grows forever

82Total
21Full Text
Jul 28, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⚠ Critical CVEs Jul 28, 2026
JetBrains Patches Critical TeamCity Flaw Allowing Server Takeover - Security Affairs

JetBrains Patches Critical TeamCity Flaw Allowing Server Takeover Security Affairs

Security Affairs Read →
⚠ Critical CVEs Jul 28, 2026
JetBrains Patches Critical TeamCity Flaw Allowing Server Takeover - Security Affairs

JetBrains Patches Critical TeamCity Flaw Allowing Server Takeover Security Affairs

Security Affairs Read →
⚠ Critical CVEs Jul 26, 2026
Don’t swing at everything - Cisco Talos Blog

Don’t swing at everything Cisco Talos Blog

Cisco Talos Blog Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-66144 | Apache Neethi up to 3.2.2 denial of service

A vulnerability labeled as problematic has been found in Apache Neethi up to 3.2.2 . Affected by this vulnerability is an unknown functionality. Such manipulation leads to denial of service. This vuln…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-7484 | ABIS Technology AVESİS privileges management (ID 202606251646)

A vulnerability marked as critical has been reported in ABIS Technology AVESİS . Affected by this issue is some unknown functionality. Performing a manipulation results in improper privilege managemen…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-16743 | Red Hat Enterprise Linux 7/8/9/10 systemd-homed SetIconFile privileges management

A vulnerability described as problematic has been identified in Red Hat Enterprise Linux 7/8/9/10 . This affects the function SetIconFile of the component systemd-homed . Executing a manipulation can …

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-12503 | Loytec LIP-ME20xC up to 8.4.16 server.pem link following

A vulnerability classified as very critical was found in Loytec LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD up to 8.4.16 . This issue affects some unknown processing of the file /…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-55728 | Loytec LIP-ME20xC up to 8.4.16 /usr/bin/ltsudo cmd_ipaddr_conflict interface-name stack-based overflow

A vulnerability, which was classified as very critical , has been found in Loytec LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD up to 8.4.16 . Impacted is the function cmd_ipaddr_co…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-55731 | Loytec LIP-ME20xC up to 8.4.16 SNMP Agent unchecked input for loop condition

A vulnerability, which was classified as critical , was found in Loytec LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD up to 8.4.16 . The affected element is an unknown function of t…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-55732 | Loytec LIP-ME20xC up to 8.4.18 BACnet Packet Parsing linx_a64.exe bacdt_datetime_to_tod out-of-bounds

A vulnerability has been found in Loytec LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD up to 8.4.18 and classified as critical . The impacted element is the function bacdt_datetime_…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-12502 | Loytec LIP-ME20xC L-INX L-GATE L-ROC L-IOB L-DALI L-VIS L-PAD /usr/bin/ltsudo set-passwd privileges management

A vulnerability was found in Loytec LIP-ME20xC L-INX L-GATE L-ROC L-IOB L-DALI L-VIS L-PAD up to 8.4.16 and classified as very critical . This affects the function set-passwd of the file /usr/bin/ltsu…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-12504 | Loytec LIP-ME20xC up to 8.4.16 PAM Configuration /etc/passwd improper authentication

A vulnerability was found in Loytec LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD up to 8.4.16 . It has been rated as very critical . Affected by this vulnerability is an unknown fu…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-7007 | ZephyrProject Zephyr up to 4.4.x ext2 ext2_impl.c ext2_verify_disk_superblock s_blocks_per_group/s_inodes_per_group divide by zero

A vulnerability labeled as critical has been found in ZephyrProject Zephyr up to 4.4.x . This vulnerability affects the function ext2_verify_disk_superblock of the file subsys/fs/ext2/ext2_impl.c of t…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-49326 | Apache HBase up to 2.5.14/2.6.5/3.0.0 Thrift/Rest Delegation Service improper authorization

A vulnerability described as critical has been identified in Apache HBase up to 2.5.14/2.6.5/3.0.0 . Impacted is an unknown function of the component Thrift/Rest Delegation Service . The manipulation …

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-56163 | Microsoft Azure Kubernetes Service missing authentication

A vulnerability classified as very critical has been found in Microsoft Azure Kubernetes Service . The affected element is an unknown function. This manipulation causes missing authentication. This vu…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-16799 | Devolutions PowerShell Universal up to 2026.2.2 Automation Tests access control

A vulnerability, which was classified as very critical , has been found in Devolutions PowerShell Universal up to 2026.2.2 . This affects an unknown function of the component Automation Tests . Perfor…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-16800 | Devolutions PowerShell Universal up to 2026.2.2 Schedule Feature schedule code injection

A vulnerability, which was classified as very critical , was found in Devolutions PowerShell Universal up to 2026.2.2 . This impacts an unknown function of the component Schedule Feature . Executing a…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-16801 | Devolutions PowerShell Universal up to 2026.2.2 Variables Feature variables configuration file variable value code injection

A vulnerability has been found in Devolutions PowerShell Universal up to 2026.2.2 and classified as very critical . Affected is an unknown function of the file variables configuration file of the comp…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-58586 | Image::WebP up to 0.2 insufficient isolation of system-dependent functions

A vulnerability was found in Image::WebP up to 0.2 and classified as critical . Affected by this vulnerability is an unknown functionality. The manipulation results in insufficient isolation of system…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-57106 | Microsoft Purview Data Governance server-side request forgery

A vulnerability was found in Microsoft Purview Data Governance . It has been declared as critical . This affects an unknown part. Such manipulation leads to server-side request forgery. This vulnerabi…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-58630 | Microsoft Azure App Service for Linux access control

A vulnerability was found in Microsoft Azure App Service for Linux . It has been rated as critical . This vulnerability affects unknown code. Performing a manipulation results in improper access contr…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-8789 | Easy Appointments Plugin up to 3.12.27 on WordPress ea_delete_multiple_connections improper authorization

A vulnerability identified as problematic has been detected in Easy Appointments Plugin up to 3.12.27 on WordPress. Impacted is the function ea_delete_multiple_connections . The manipulation leads to …

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-66004 | ahujasid blender-mcp download_polyhaven_asset path traversal

A vulnerability labeled as critical has been found in ahujasid blender-mcp . The affected element is the function download_polyhaven_asset . The manipulation results in path traversal. This vulnerabil…

VulDB Read →
⚠ Critical CVEs Jul 24, 2026
CVE-2026-66006 | Treeverse lakeFS up to 1.83.0 improper authentication

A vulnerability marked as critical has been reported in Treeverse lakeFS up to 1.83.0 . The impacted element is an unknown function. This manipulation causes improper authentication. The identificatio…

VulDB Read →
1 / 4 Next →