CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6147 articles  ·  updated every 4 hours · grows forever

6147Total
4056Full Text
May 21, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 16, 2026
NAVTOR patches critical NavBox flaws after Cydome disclosure - Splash247

NAVTOR patches critical NavBox flaws after Cydome disclosure Splash247

Splash247 Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2025-53444 | DeluxeThemes Userpro Plugin up to 5.1.10 on WordPress cross-site request forgery

A vulnerability marked as problematic has been reported in DeluxeThemes Userpro Plugin up to 5.1.10 on WordPress. This affects an unknown function. This manipulation causes cross-site request forgery.…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20147 | Cisco Identity Services Engine Software command injection (cisco-sa-ise-rce-traversal-8bYndVrZ)

A vulnerability described as critical has been identified in Cisco Identity Services Engine Software and ISE Passive Identity Connector . This impacts an unknown function. Such manipulation leads to c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20180 | Cisco Identity Services Engine Software up to 3.5.0 path traversal (cisco-sa-ise-rce-4fverepv)

A vulnerability classified as critical has been found in Cisco Identity Services Engine Software . Affected is an unknown function. Performing a manipulation results in path traversal. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20186 | Cisco Identity Services Engine Software up to 3.4.0 command injection (cisco-sa-ise-rce-4fverepv)

A vulnerability classified as critical was found in Cisco Identity Services Engine Software . Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to command i…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20148 | Cisco Identity Services Engine Software HTTP path traversal (cisco-sa-ise-rce-traversal-8bYndVrZ)

A vulnerability, which was classified as critical , has been found in Cisco Identity Services Engine Software and ISE Passive Identity Connector . Affected by this issue is some unknown functionality …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20152 | Cisco Secure Web Appliance up to 15.2.5-013 Authentication Service authentication bypass (cisco-sa-wsa-auth-bypass-6YZkTQhd)

A vulnerability, which was classified as problematic , was found in Cisco Secure Web Appliance . This affects an unknown part of the component Authentication Service . The manipulation results in auth…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20184 | Cisco Webex Meetings up to 45.4 certificate validation (cisco-sa-webex-cui-cert-8jSZYhWL)

A vulnerability has been found in Cisco Webex Meetings and classified as critical . This vulnerability affects unknown code. This manipulation causes improper certificate validation. This vulnerabilit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20060 | Cisco Unity Connection up to 15SU3 Web-based Management Interface Request redirect (cisco-sa-unity-vulns-n2EJSbbw / EUVD-2026-22953)

A vulnerability was found in Cisco Unity Connection up to 15SU3 and classified as problematic . This issue affects some unknown processing of the component Web-based Management Interface . Such manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20061 | Cisco Unity Connection up to 15SU3 Web-based Management Interface sql injection (cisco-sa-unity-vulns-n2EJSbbw / EUVD-2026-22955)

A vulnerability was found in Cisco Unity Connection up to 15SU3 . It has been classified as critical . Impacted is an unknown function of the component Web-based Management Interface . Performing a ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20078 | Cisco Unity Connection up to 15SU3 HTTPS path traversal (cisco-sa-unity-file-download-RmKEVWPx)

A vulnerability was found in Cisco Unity Connection . It has been declared as problematic . The affected element is an unknown function of the component HTTPS Handler . Executing a manipulation can le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20081 | Cisco Unity Connection up to 15SU3 HTTPS path traversal (cisco-sa-unity-file-download-RmKEVWPx)

A vulnerability was found in Cisco Unity Connection . It has been rated as problematic . The impacted element is an unknown function of the component HTTPS Handler . The manipulation leads to relative…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20136 | Cisco Identity Services Engine Software up to 3.5.0 CLI command injection (cisco-sa-ise-cmd-inj-5WSJcYJB / EUVD-2026-22960)

A vulnerability categorized as critical has been discovered in Cisco Identity Services Engine Software . This affects an unknown function of the component CLI . The manipulation results in command inj…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20132 | Cisco Identity Services Engine Software up to 3.4.0 cross site scripting (cisco-sa-isexss-BS8ctE7U)

A vulnerability identified as problematic has been detected in Cisco Identity Services Engine Software . This impacts an unknown function. This manipulation causes cross site scripting. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20170 | Cisco Webex Contact Center Contact Center Service cross site scripting (cisco-sa-webexcc-xss-WEX5nUnA / EUVD-2026-22967)

A vulnerability labeled as problematic has been found in Cisco Webex Contact Center . Affected is an unknown function of the component Contact Center Service . Such manipulation leads to basic cross s…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20059 | Cisco Unity Connection up to 15SU4 Web-based Management Interface cross site scripting (cisco-sa-unity-vulns-n2EJSbbw / EUVD-2026-22951)

A vulnerability marked as problematic has been reported in Cisco Unity Connection up to 15SU4 . Affected by this vulnerability is an unknown functionality of the component Web-based Management Interfa…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-20161 | Cisco ThousandEyes Enterprise Agent up to 5.1.2 CLI link following (cisco-sa-te-agentfilewrite-tqUw3SMU)

A vulnerability described as critical has been identified in Cisco ThousandEyes Enterprise Agent up to 5.1.2 . Affected by this issue is some unknown functionality of the component CLI . Executing a m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-6370 | HashThemes Mini Ajax Cart for WooCommerce Plugin up to 1.3.4 on WordPress cross site scripting

A vulnerability classified as problematic has been found in HashThemes Mini Ajax Cart for WooCommerce Plugin up to 1.3.4 on WordPress. This affects an unknown part. The manipulation leads to cross sit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2025-15635 | Zaytech Smart Online Order for Clover Plugin up to 1.6.0 on WordPress cross-site request forgery

A vulnerability classified as problematic was found in Zaytech Smart Online Order for Clover Plugin up to 1.6.0 on WordPress. This vulnerability affects unknown code. The manipulation results in cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2025-15636 | Emarket-design YouTube Showcase Plugin up to 3.5.1 on WordPress cross site scripting

A vulnerability, which was classified as problematic , has been found in Emarket-design YouTube Showcase Plugin up to 3.5.1 on WordPress. This issue affects some unknown processing. This manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-30993 | Slah CMS up to 1.5.0 config.php session privilege escalation

A vulnerability, which was classified as critical , was found in Slah CMS up to 1.5.0 . Impacted is the function session of the file config.php . Such manipulation leads to privilege escalation. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-30996 | SAC-NFe 2.0.02 GET download.php path traversal (EUVD-2026-22977)

A vulnerability has been found in SAC-NFe 2.0.02 and classified as critical . The affected element is an unknown function of the file download.php of the component GET Handler . Performing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-30994 | Slah CMS up to 1.5.0 config.php access control

A vulnerability was found in Slah CMS up to 1.5.0 and classified as critical . The impacted element is an unknown function of the file config.php . Executing a manipulation can lead to improper access…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-5758 | Mafintosh Protocol-buffers-schema parser up to 3.6.0 code injection

A vulnerability was found in Mafintosh Protocol-buffers-schema parser up to 3.6.0 . It has been classified as critical . This affects an unknown function. The manipulation leads to code injection. Thi…

VulDB Read →
← Prev 104 / 257 Next →