CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5596 articles  ·  updated every 4 hours · grows forever

5596Total
4031Full Text
May 15, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-46333 | Linux Kernel up to 7.0.7 ptrace get_dumpable privilege escalation

A vulnerability identified as problematic has been detected in Linux Kernel up to 7.0.7 . Affected by this vulnerability is the function get_dumpable of the component ptrace . This manipulation causes…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-34253 | vorbis-tools 1.4.3 ogg123 remote.c remotethread stack-based overflow

A vulnerability labeled as critical has been found in vorbis-tools 1.4.3 . Affected by this issue is the function remotethread of the file remote.c of the component ogg123 . Such manipulation leads to…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-45736 | websockets ws up to 8.20.0 websocket.close Reason uninitialized resource (GHSA-58qx-3vcg-4xpx)

A vulnerability marked as problematic has been reported in websockets ws up to 8.20.0 . This affects the function websocket.close . Performing a manipulation of the argument Reason results in uninitia…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-39052 | Oinone Pamirs up to 7.0.0 ScriptRunner.run access control

A vulnerability described as critical has been identified in Oinone Pamirs up to 7.0.0 . This vulnerability affects the function ScriptRunner.run . Executing a manipulation can lead to improper access…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-39054 | Oinone Pamirs 7.0.0 CommandHelper.executeCommands command injection

A vulnerability classified as critical has been found in Oinone Pamirs 7.0.0 . This issue affects the function CommandHelper.executeCommands . The manipulation leads to command injection. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-46483 | vim up to 9.2.0478 Archive File runtime/autoload/tar.vim Vimuntar os command injection (GHSA-2fpv-9ff7-xg5w)

A vulnerability classified as critical was found in vim up to 9.2.0478 . Impacted is the function Vimuntar of the file runtime/autoload/tar.vim of the component Archive File Handler . The manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-8669 | TONYC Imager up to 1.030 on Perl imgif.c Imager::File::GIF out-of-bounds write

A vulnerability, which was classified as critical , has been found in TONYC Imager up to 1.030 on Perl. The affected element is the function Imager::File::GIF of the file imgif.c . This manipulation c…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2025-14972 | Silabs Simplicity SDK entropy

A vulnerability, which was classified as problematic , was found in Silabs Simplicity SDK . The impacted element is an unknown function. Such manipulation leads to insufficient entropy. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-39053 | Oinone Pamirs 7.0.0 XML Parser xml external entity reference

A vulnerability has been found in Oinone Pamirs 7.0.0 and classified as problematic . This affects an unknown function of the component XML Parser . Performing a manipulation results in xml external e…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-38728 | Nodemailer smtp_server up to 3.18.2 lib/smtp-stream.js SMTPStream._write denial of service

A vulnerability was found in Nodemailer smtp_server up to 3.18.2 and classified as problematic . This impacts the function SMTPStream._write in the library lib/smtp-stream.js . Executing a manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-2031 | Google Cloud Internal Integration Platform API prior 2026-01-23 API Endpoint authorization

A vulnerability was found in Google Cloud Internal Integration Platform API . It has been classified as critical . Affected is an unknown function of the component API Endpoint . The manipulation lead…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-35194 | Apache Flink up to 1.20.3/2.0.1/2.1.1/2.2.0 TaskManagers code injection

A vulnerability was found in Apache Flink up to 1.20.3/2.0.1/2.1.1/2.2.0 . It has been declared as critical . Affected by this vulnerability is an unknown functionality of the component TaskManagers .…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-45772 | vercel turborepo/codemod/workspaces up to 2.9.13 untrusted search path

A vulnerability was found in vercel turborepo, codemod and workspaces up to 2.9.13 . It has been rated as problematic . Affected by this issue is some unknown functionality. This manipulation causes u…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-45803 | cli up to 2.91.x control sequence

A vulnerability categorized as problematic has been discovered in cli up to 2.91.x . This affects an unknown part. Such manipulation leads to improper neutralization of escape, meta, or control sequen…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-46508 | vercel turborepo up to 2.9.13999 command injection

A vulnerability identified as critical has been detected in vercel turborepo up to 2.9.13999 . This vulnerability affects unknown code. Performing a manipulation results in command injection. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-45773 | vercel turborepo up to 2.9.13 cross-site request forgery

A vulnerability labeled as problematic has been found in vercel turborepo up to 2.9.13 . This issue affects some unknown processing. Executing a manipulation can lead to cross-site request forgery. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2025-67437 | Medical Management System Password Reset password recovery

A vulnerability marked as problematic has been reported in Medical Management System . Impacted is an unknown function of the component Password Reset Handler . The manipulation leads to weak password…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
Chrome Zero-Day CVE-2026-5281 Exploited in Wild — 4th of 2026, Patch to 146.0.7680.178 Now - abhs.in

Chrome Zero-Day CVE-2026-5281 Exploited in Wild — 4th of 2026, Patch to 146.0.7680.178 Now abhs.in

abhs.in Read →
⬡ Vulnerabilities & CVEs May 15, 2026
46 Vulnerability Statistics 2026: Key Trends in Discovery, Exploitation, and Risk - Security Boulevard

46 Vulnerability Statistics 2026: Key Trends in Discovery, Exploitation, and Risk Security Boulevard

Security Boulevard Read →
⬡ Vulnerabilities & CVEs May 15, 2026
[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution

Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
[local] Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing

Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
[local] Windows Snipping Tool - NTLMv2 Hash Hijack

Windows Snipping Tool - NTLMv2 Hash Hijack

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-41553 | DHTMLX PDF Export Module up to 0.7.5 data os command injection

A vulnerability was found in DHTMLX PDF Export Module up to 0.7.5 . It has been declared as critical . This affects an unknown function. Executing a manipulation of the argument data can lead to os co…

VulDB Read →
⬡ Vulnerabilities & CVEs May 15, 2026
CVE-2026-7182 | DHTMLX Diagram up to 1.1.0 Export path traversal

A vulnerability was found in DHTMLX Diagram up to 1.1.0 . It has been rated as critical . This impacts an unknown function of the component Export Module . The manipulation leads to path traversal. Th…

VulDB Read →
1 / 234 Next →