CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5599 articles  ·  updated every 4 hours · grows forever

5599Total
4034Full Text
May 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44442 | Frappe ERPNext up to 16.9.0 authorization (GHSA-cg5w-7g26-p3w9)

A vulnerability was found in Frappe ERPNext up to 16.9.0 . It has been classified as critical . Affected by this vulnerability is an unknown functionality. This manipulation causes missing authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44448 | Frappe ERPNext up to 15.101.x/16.10.x authorization (GHSA-444j-g95x-5pqv)

A vulnerability was found in Frappe ERPNext up to 15.101.x/16.10.x . It has been declared as problematic . Affected by this issue is some unknown functionality. Such manipulation leads to missing auth…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-41132 | CKAN up to 2.10.9/2.11.4 certificate validation (GHSA-mpfm-fpgx-647q)

A vulnerability was found in CKAN up to 2.10.9/2.11.4 . It has been rated as problematic . This affects an unknown part. Performing a manipulation results in improper certificate validation. This vuln…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45714 | CubeCart up to 6.6.x Multiple code injection (GHSA-pcfr-xgc9-xfv6)

A vulnerability categorized as critical has been discovered in CubeCart up to 6.6.x . This vulnerability affects unknown code of the component Multiple Module . Executing a manipulation can lead to co…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44441 | Frappe ERPNext up to 15.105.x/16.15.x server-side request forgery (GHSA-m4m4-j2m2-7fcw)

A vulnerability identified as critical has been detected in Frappe ERPNext up to 15.105.x/16.15.x . This issue affects some unknown processing. The manipulation leads to server-side request forgery. T…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44446 | Frappe ERPNext up to 15.104.2/16.13.x sql injection (GHSA-6fm9-g88m-hxr7)

A vulnerability labeled as critical has been found in Frappe ERPNext up to 15.104.2/16.13.x . Impacted is an unknown function. The manipulation results in sql injection. This vulnerability is identifi…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44447 | Frappe ERPNext up to 16.8.x sql injection (GHSA-q65v-fm9p-9vh3)

A vulnerability marked as critical has been reported in Frappe ERPNext up to 16.8.x . The affected element is an unknown function. This manipulation causes sql injection. This vulnerability is tracked…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44471 | GitoxideLabs gitoxide up to 0.21.0 gix-fs/src/stack.rs make_relative_path_current link following (GHSA-f89h-2fjh-2r9q)

A vulnerability described as critical has been identified in GitoxideLabs gitoxide up to 0.21.0 . The impacted element is the function gix_fs::Stack::make_relative_path_current of the file gix-fs/src/…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-43970 | ninenines cowlib up to 2.16.0 data amplification

A vulnerability classified as problematic has been found in ninenines cowlib up to 2.16.0 . This affects an unknown function. Performing a manipulation results in highly compressed data. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44437 | angular angular-cli up to 19.2.24/20.3.24/21.2.8 path traversal (GHSA-69xr-m8h6-h664)

A vulnerability classified as critical was found in angular angular-cli up to 19.2.24/20.3.24/21.2.8 . This impacts an unknown function. Executing a manipulation can lead to path traversal. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-46445 | Alinto SOGo up to 5.12.6 sql injection

A vulnerability, which was classified as critical , has been found in Alinto SOGo up to 5.12.6 . Affected is an unknown function. The manipulation leads to sql injection. This vulnerability is documen…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-46446 | Alinto SOGo up to 5.12.6 c_password sql injection

A vulnerability, which was classified as critical , was found in Alinto SOGo up to 5.12.6 . Affected by this vulnerability is an unknown functionality. The manipulation of the argument c_password resu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44418 | phili67 ecclesiacrm up to 8.0.0 Query Parameter ValidateInput sql injection (GHSA-vmgq-gpf9-mjjj)

A vulnerability has been found in phili67 ecclesiacrm up to 8.0.0 and classified as critical . Affected by this issue is the function ValidateInput of the component Query Parameter Handler . This mani…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-33584 | Arqit Symmetric Key Agreement Platform up to 26.02 routine

A vulnerability was found in Arqit Symmetric Key Agreement Platform up to 26.02 and classified as problematic . This affects an unknown part. Such manipulation leads to exposed dangerous routine. This…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-33585 | Arqit Symmetric Key Agreement Platform up to 26.02 Keycloak Interface parameters

A vulnerability was found in Arqit Symmetric Key Agreement Platform up to 26.02 . It has been classified as problematic . This vulnerability affects unknown code of the component Keycloak Interface . …

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-41255 | CKAN up to 2.10.9/2.11.4 Protected Endpoint flask-wtf.csrf.CSRFProtect member cross-site request forgery (GHSA-mcvf-jxcw-vj73)

A vulnerability was found in CKAN up to 2.10.9/2.11.4 . It has been declared as problematic . This issue affects the function flask-wtf.csrf.CSRFProtect of the component Protected Endpoint . Executing…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44439 | Lookyloo PlaywrightCapture up to 1.39.5 server-side request forgery (GHSA-687h-xw6f-q2qw)

A vulnerability was found in Lookyloo PlaywrightCapture up to 1.39.5 . It has been rated as critical . Impacted is an unknown function. The manipulation leads to server-side request forgery. This vuln…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44445 | Frappe ERPNext up to 15.104.2/16.11.x EDI Module xml external entity reference (GHSA-mhm9-75w7-423r)

A vulnerability categorized as problematic has been discovered in Frappe ERPNext up to 15.104.2/16.11.x . The affected element is an unknown function of the component EDI Module . The manipulation res…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44919 | OpenStack Ironic incorrect behavior order

A vulnerability identified as problematic has been detected in OpenStack Ironic . The impacted element is an unknown function. This manipulation causes incorrect behavior order. The identification of …

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-46419 | Yubico webauthn-server-core 2.8.0/2.8.1 function return value

A vulnerability labeled as problematic has been found in Yubico webauthn-server-core 2.8.0/2.8.1 . This affects an unknown function. Such manipulation leads to incorrect check of function return value…

VulDB Read →
⬡ Vulnerabilities & CVEs May 13, 2026
CVE-2026-0239 | Palo Alto Chronosphere Chronocollector up to 0.115.x Collector Service exposure of sensitive system information to an unauthorized control sphere

A vulnerability marked as problematic has been reported in Palo Alto Chronosphere Chronocollector up to 0.115.x . This issue affects some unknown processing of the component Collector Service . Perfor…

VulDB Read →
⬡ Vulnerabilities & CVEs May 13, 2026
CVE-2026-0256 | Palo Alto Cloud NGFW/PAN-OS/Prisma Access Web Interface cross site scripting

A vulnerability described as problematic has been identified in Palo Alto Cloud NGFW, PAN-OS and Prisma Access . Impacted is an unknown function of the component Web Interface . Executing a manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 13, 2026
CVE-2026-44579 | vercel next.js up to 15.5.15/16.2.4 Cache Components Feature allocation of resources (GHSA-mg66-mrh9-m8jx)

A vulnerability classified as problematic has been found in vercel next.js up to 15.5.15/16.2.4 . The affected element is an unknown function of the component Cache Components Feature . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 13, 2026
CVE-2026-0237 | Palo Alto Prisma Browser prior 146.16.6.165 improper protection of alternate path

A vulnerability classified as critical was found in Palo Alto Prisma Browser . The impacted element is an unknown function. The manipulation results in improper protection of alternate path. This vuln…

VulDB Read →
← Prev 10 / 234 Next →