CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10250 articles  ·  updated every 4 hours · grows forever

10250Total
4232Full Text
Jun 30, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13514 | Chess Play and Learn App up to 4.9.42 on Android com.chess AndroidManifest.xml backup

A vulnerability was found in Chess Play and Learn App up to 4.9.42 on Android. It has been rated as problematic . This issue affects some unknown processing of the file AndroidManifest.xml of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13515 | Tenda JD12L 16.03.53.23 /goform/SetPptpServerCfg formSetPPTPServer startIp stack-based overflow

A vulnerability categorized as critical has been discovered in Tenda JD12L 16.03.53.23 . Impacted is the function formSetPPTPServer of the file /goform/SetPptpServerCfg . Such manipulation of the argu…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13516 | Tenda JD12L 16.03.53.23 /goform/WifiGuestSet fromSetWifiGusetBasic shareSpeed stack-based overflow

A vulnerability identified as critical has been detected in Tenda JD12L 16.03.53.23 . The affected element is the function fromSetWifiGusetBasic of the file /goform/WifiGuestSet . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13517 | Tenda JD12L 16.03.53.23 /goform/WifiBasicSet formWifiBasicSet security_5g stack-based overflow

A vulnerability labeled as critical has been found in Tenda JD12L 16.03.53.23 . The impacted element is the function formWifiBasicSet of the file /goform/WifiBasicSet . Executing a manipulation of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13518 | Tenda JD12L 16.03.53.23 /goform/addressNat fromAddressNat page stack-based overflow

A vulnerability marked as critical has been reported in Tenda JD12L 16.03.53.23 . This affects the function fromAddressNat of the file /goform/addressNat . The manipulation of the argument page leads …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13519 | Tenda JD12L 16.03.53.23 /goform/NatStaticSetting fromNatStaticSetting page stack-based overflow

A vulnerability described as critical has been identified in Tenda JD12L 16.03.53.23 . This impacts the function fromNatStaticSetting of the file /goform/NatStaticSetting . The manipulation of the arg…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13520 | itsourcecode Hospital Management System 1.0 Appointment /appointmentapproval.php editid sql injection

A vulnerability classified as critical has been found in itsourcecode Hospital Management System 1.0 . Affected is an unknown function of the file /appointmentapproval.php of the component Appointment…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13521 | SourceCodester Class and Exam Timetabling System 1.0/5.php /preview5.php course_year_section sql injection

A vulnerability classified as critical was found in SourceCodester Class and Exam Timetabling System 1.0/5.php . Affected by this vulnerability is an unknown functionality of the file /preview5.php . …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 28, 2026
CVE-2026-13522 | Investintech SlimPDFReader up to 2.0.14 PDF File SlimPDFReader.exe TeighaDo+0x25cde0 out-of-bounds

A vulnerability, which was classified as problematic , has been found in Investintech SlimPDFReader up to 2.0.14 . Affected by this issue is the function SlimPDFReader!Investintech::PCV::TeighaDo+0x25…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13484 | MLflow up to 4666cffc7912ea606d592fc38d6a75e2935f65e7 Experiment-scoped Label Schema CRUD API authorization (Issue 23608)

A vulnerability categorized as problematic has been discovered in MLflow up to 4666cffc7912ea606d592fc38d6a75e2935f65e7 . The impacted element is an unknown function of the component Experiment-scoped…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13485 | SourceCodester Class and Exam Timetabling System 1.0 /preview.php course_year_section sql injection

A vulnerability identified as critical has been detected in SourceCodester Class and Exam Timetabling System 1.0 . This affects an unknown function of the file /preview.php . Performing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13486 | SourceCodester Class and Exam Timetabling System 1.0/6.php /preview6.php course_year_section sql injection

A vulnerability labeled as critical has been found in SourceCodester Class and Exam Timetabling System 1.0/6.php . This impacts an unknown function of the file /preview6.php . Executing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13487 | SourceCodester Class and Exam Timetabling System 1.0 /archive.php sy sql injection

A vulnerability marked as critical has been reported in SourceCodester Class and Exam Timetabling System 1.0 . Affected is an unknown function of the file /archive.php . The manipulation of the argume…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13488 | SourceCodester Class and Exam Timetabling System 1.0/7.php /preview7.php course_year_section sql injection

A vulnerability described as critical has been identified in SourceCodester Class and Exam Timetabling System 1.0/7.php . Affected by this vulnerability is an unknown functionality of the file /previe…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13489 | 78 xiaozhi-esp32 up to 2.2.6 MCP Response main/mcp_server.cc ParseMessage improper synchronization (Issue 2020)

A vulnerability classified as critical has been found in 78 xiaozhi-esp32 up to 2.2.6 . Affected by this issue is the function ParseMessage of the file main/mcp_server.cc of the component MCP Response…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13490 | glpi-project glpi 11.0.5/11.0.6/11.0.7 Document front/document.send.php Document::canViewFile docid authorization

A vulnerability classified as critical was found in glpi-project glpi 11.0.5/11.0.6/11.0.7 . This affects the function Document::canViewFile of the file front/document.send.php of the component Docume…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13491 | 78 xiaozhi-esp32 up to 2.2.6 MQTT Goodbye mqtt_protocol.cc Application::GetInstance session_id denial of service (Issue 2022)

A vulnerability, which was classified as problematic , has been found in 78 xiaozhi-esp32 up to 2.2.6 . This vulnerability affects the function Application::GetInstance of the file main/protocols/mqtt…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13493 | AIDC-AI ComfyUI-Copilot up to 2.0.28 Workflow Checkpoint Restore conversation_api.py resource injection (Issue 149)

A vulnerability, which was classified as problematic , was found in AIDC-AI ComfyUI-Copilot up to 2.0.28 . This issue affects some unknown processing of the file backend/controller/conversation_api.py…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13495 | itsourcecode Hospital Management System 1.0 /adminprofile.php loginid sql injection

A vulnerability has been found in itsourcecode Hospital Management System 1.0 and classified as critical . Impacted is an unknown function of the file /adminprofile.php . The manipulation of the argum…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13496 | itsourcecode Hospital Management System 1.0 /ajaxmedicine.php medicineid sql injection

A vulnerability was found in itsourcecode Hospital Management System 1.0 and classified as critical . The affected element is an unknown function of the file /ajaxmedicine.php . The manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13497 | itsourcecode Hospital Management System 1.0 /appointment.php editid sql injection

A vulnerability was found in itsourcecode Hospital Management System 1.0 . It has been classified as critical . The impacted element is an unknown function of the file /appointment.php . This manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13498 | yashpokharna2555 restaurent-management-system POST Parameter /forgotpassword.php email sql injection

A vulnerability was found in yashpokharna2555 restaurent-management-system . It has been declared as critical . This affects an unknown function of the file /forgotpassword.php of the component POST P…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13499 | yashpokharna2555 restaurent-management-system Registration login_register.php Username cross site scripting

A vulnerability was found in yashpokharna2555 restaurent-management-system . It has been rated as problematic . This impacts an unknown function of the file login_register.php of the component Registr…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13500 | antlr ANTLR4 up to 4.13.2 Grammar Action Block OutputFile.java code injection

A vulnerability categorized as critical has been discovered in antlr ANTLR4 up to 4.13.2 . Affected is an unknown function of the file tool/src/org/antlr/v4/codegen/model/OutputFile.java of the compon…

VulDB Read →
← Prev 10 / 428 Next →