CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6152 articles  ·  updated every 4 hours · grows forever

6152Total
4056Full Text
May 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-30778 | Apache SkyWalking up to 10.3.0 OAP Endpoint /debugging/config/dump information disclosure

A vulnerability categorized as problematic has been discovered in Apache SkyWalking up to 10.3.0 . Affected by this issue is some unknown functionality of the file /debugging/config/dump of the compon…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-40261 | Composer Perforce Reference command injection

A vulnerability identified as critical has been detected in Composer . This affects an unknown part of the component Perforce Reference Handler . This manipulation causes command injection. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-5160 | yuin goldmark up to 1.7.16 URL Validation cross site scripting

A vulnerability labeled as problematic has been found in yuin goldmark up to 1.7.16 . This vulnerability affects unknown code of the component URL Validation Handler . Such manipulation leads to cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-6293 | udamadu Inquiry Form to Posts or pages Plugin up to 1.0 on WordPress check_admin_referer inq_hidden cross-site request forgery

A vulnerability marked as problematic has been reported in udamadu Inquiry Form to Posts or pages Plugin up to 1.0 on WordPress. This issue affects the function check_admin_referer . Performing a mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-40719 | MaraDNS 3.5.0036 Deadwood control flow

A vulnerability described as problematic has been identified in MaraDNS 3.5.0036 . Impacted is an unknown function of the component Deadwood . Executing a manipulation can lead to incorrect control fl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
Coordinated vulnerability disclosure is now an EU obligation, but cultural change takes time - Help Net Security

Coordinated vulnerability disclosure is now an EU obligation, but cultural change takes time Help Net Security

Help Net Security Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
Critical Fortinet FortiClient EMS 0-Day Vulnerability Actively Exploited in the Wild - CyberSecurityNews

Critical Fortinet FortiClient EMS 0-Day Vulnerability Actively Exploited in the Wild CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-33715 | Chamilo LMS up to 2.0-RC.2 AJAX Endpoint global.inc.php test_mailer missing authentication (GHSA-mxc9-9335-45mc)

A vulnerability was found in Chamilo LMS up to 2.0-RC.2 . It has been declared as critical . This vulnerability affects the function test_mailer of the file global.inc.php of the component AJAX Endpoi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-35196 | Chamilo LMS up to 2.0.0-RC.2 gradebook.ajax.php api_get_course_id _cid os command injection

A vulnerability was found in Chamilo LMS up to 2.0.0-RC.2 . It has been rated as critical . This issue affects the function api_get_course_id of the file main/inc/ajax/gradebook.ajax.php . The manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-33714 | Chamilo LMS up to 1.x AJAX Endpoint statistics.ajax.php Security::remove_XSS date_start/date_end sql injection (GHSA-w8c4-c7r8-qgw2)

A vulnerability categorized as critical has been discovered in Chamilo LMS up to 1.x . Impacted is the function Security::remove_XSS of the file public/main/inc/ajax/statistics.ajax.php of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-40683 | OpenStack Keystone up to 25.0.0/26.1.0/27.0.0/28.0.0 Configuration Options _ldap_res_to_model type confusion

A vulnerability identified as problematic has been detected in OpenStack Keystone up to 25.0.0/26.1.0/27.0.0/28.0.0 . The affected element is the function _ldap_res_to_model of the component Configura…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-34160 | Chamilo LMS up to 2.0-RC.2 Exchange Notification Service pens.php package-url missing authentication (GHSA-g2xj-4cch-j276)

A vulnerability labeled as critical has been found in Chamilo LMS up to 2.0-RC.2 . The impacted element is an unknown function of the file public/plugin/Pens/pens.php of the component Exchange Notific…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2025-15565 | cartasi Nexi XPay Plugin up to 8.3.0 on WordPress redirect authorization

A vulnerability marked as critical has been reported in cartasi Nexi XPay Plugin up to 8.3.0 on WordPress. This affects the function redirect . Performing a manipulation results in missing authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-24893 | openITCOCKPIT up to 5.5.1 input validation (GHSA-789q-pw85-j2q2)

A vulnerability described as very critical has been identified in openITCOCKPIT up to 5.5.1 . This impacts an unknown function. Executing a manipulation can lead to improper input validation. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-25125 | October CMS up to 3.7.13/4.1.9 Environment Variable parse_ini_string information disclosure (GHSA-g6v3-wv4j-x9hg)

A vulnerability classified as problematic has been found in October CMS up to 3.7.13/4.1.9 . Affected is the function parse_ini_string of the component Environment Variable Handler . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-39907 | Unisys WebPerfect Image Suite 3.0.3960.22604/3.0.3960.22810 WCF SOAP Endpoint LFName file inclusion

A vulnerability classified as critical was found in Unisys WebPerfect Image Suite 3.0.3960.22604/3.0.3960.22810 . Affected by this vulnerability is an unknown functionality of the component WCF SOAP E…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-34618 | Adobe Illustrator up to 29.8.5/30.2 File out-of-bounds write (apsb26-42)

A vulnerability, which was classified as critical , has been found in Adobe Illustrator up to 29.8.5/30.2 . Affected by this issue is some unknown functionality of the component File Handler . This ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-27310 | Adobe Bridge up to 15.1.4/16.0.2 File heap-based overflow (apsb26-39)

A vulnerability, which was classified as critical , was found in Adobe Bridge up to 15.1.4/16.0.2 . This affects an unknown part of the component File Handler . Such manipulation leads to heap-based b…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-27311 | Adobe Bridge up to 15.1.4/16.0.2 File heap-based overflow (apsb26-39)

A vulnerability has been found in Adobe Bridge up to 15.1.4/16.0.2 and classified as critical . This vulnerability affects unknown code of the component File Handler . Performing a manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-27312 | Adobe Bridge up to 15.1.4/16.0.2 File heap-based overflow (apsb26-39)

A vulnerability was found in Adobe Bridge up to 15.1.4/16.0.2 and classified as critical . This issue affects some unknown processing of the component File Handler . Executing a manipulation can lead …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-34630 | Adobe Bridge up to 15.1.4/16.0.2 File heap-based overflow (apsb26-39)

A vulnerability was found in Adobe Bridge up to 15.1.4/16.0.2 . It has been classified as critical . Impacted is an unknown function of the component File Handler . The manipulation leads to heap-base…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-34370 | Chamilo LMS up to 2.0.0-RC.2 Notebook updateNote/delete_note notebook_id improper authorization

A vulnerability was found in Chamilo LMS up to 2.0.0-RC.2 . It has been declared as critical . The affected element is the function updateNote/delete_note of the component Notebook Module . The manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-27313 | Adobe Bridge up to 15.1.4/16.0.2 File heap-based overflow (apsb26-39)

A vulnerability was found in Adobe Bridge up to 15.1.4/16.0.2 . It has been rated as critical . The impacted element is an unknown function of the component File Handler . This manipulation causes hea…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 15, 2026
CVE-2026-34602 | Chamilo LMS up to 2.0.0-RC.2 /api/course_rel_users authorization

A vulnerability categorized as critical has been discovered in Chamilo LMS up to 2.0.0-RC.2 . This affects an unknown function of the file /api/course_rel_users . Such manipulation leads to authorizat…

VulDB Read →
← Prev 109 / 257 Next →