CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10250 articles  ·  updated every 4 hours · grows forever

10250Total
4232Full Text
Jun 30, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13501 | antlr ANTLR4 up to 4.13.2 gofmt GoTarget.java GoTarget command injection

A vulnerability identified as critical has been detected in antlr ANTLR4 up to 4.13.2 . Affected by this vulnerability is the function GoTarget of the file tool/src/org/antlr/v4/codegen/target/GoTarge…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13503 | antlr ANTLR4 up to 4.13.2 tokenVocab Grammar Option TokenVocabParser.java getImportedVocabFile path traversal

A vulnerability labeled as critical has been found in antlr ANTLR4 up to 4.13.2 . Affected by this issue is the function getImportedVocabFile of the file tool/src/org/antlr/v4/parse/TokenVocabParser.j…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13502 | antlr ANTLR4 up to 4.13.2 Maven Plugin GrammarDependencies.java ObjectInputStream.readObject toctou

A vulnerability marked as problematic has been reported in antlr ANTLR4 up to 4.13.2 . This affects the function ObjectInputStream.readObject of the file antlr4-maven-plugin/src/main/java/org/antlr/mo…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13504 | code-projects Project Management System 1.0 Mail Compose Page /mail.php cross site scripting

A vulnerability described as problematic has been identified in code-projects Project Management System 1.0 . This vulnerability affects unknown code of the file /mail.php of the component Mail Compos…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13482 | skypilot-org skypilot up to 0.12.0 User ID sky/users/server.py username.encode weak hash (Issue 9194)

A vulnerability was found in skypilot-org skypilot up to 0.12.0 . It has been declared as problematic . Impacted is the function username.encode of the file sky/users/server.py of the component User I…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13483 | arc53 DocsGPT up to 0.18.0 Credential Storage encryption.py encrypt_credentials data authenticity (Issue 2503)

A vulnerability was found in arc53 DocsGPT up to 0.18.0 . It has been rated as problematic . The affected element is the function encrypt_credentials of the file application/security/encryption.py of …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-11987 | dokaninc Dokan Plugin up to 5.0.4 on WordPress ID authorization

A vulnerability, which was classified as problematic , has been found in dokaninc Dokan Plugin up to 5.0.4 on WordPress. This affects an unknown function. The manipulation of the argument ID leads to …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-3462 | reepaydenmark Frisbii Pay Plugin up to 1.8.9 on WordPress authorization

A vulnerability, which was classified as critical , was found in reepaydenmark Frisbii Pay Plugin up to 1.8.9 on WordPress. This impacts an unknown function. The manipulation results in missing author…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-12471 | templatescoderthemes Spexo Plugin up to 2.0.11 on WordPress authorization

A vulnerability has been found in templatescoderthemes Spexo Plugin up to 2.0.11 on WordPress and classified as critical . Affected is an unknown function. This manipulation causes missing authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-11364 | dornaweb Product Specifications for Woocommerce Plugin up to 0.8.9 on WordPress AJAX Action __invoke authorization

A vulnerability was found in dornaweb Product Specifications for Woocommerce Plugin up to 0.8.9 on WordPress and classified as critical . Affected by this vulnerability is the function __invoke of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-9242 | metagauss RegistrationMagic Plugin up to 6.0.8.6 on WordPress User Registration custom data authenticity

A vulnerability was found in metagauss RegistrationMagic Plugin up to 6.0.8.6 on WordPress. It has been classified as critical . Affected by this issue is some unknown functionality of the component U…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-11773 | Masteriyo LMS Plugin up to 2.2.1 on WordPress authorization

A vulnerability was found in Masteriyo LMS Plugin up to 2.2.1 on WordPress. It has been declared as critical . This affects an unknown part. Executing a manipulation can lead to missing authorization.…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-9233 | expresstech Quiz and Survey Master Plugin up to 11.1.4 on WordPress Database Table authorization

A vulnerability was found in expresstech Quiz and Survey Master Plugin up to 11.1.4 on WordPress. It has been rated as critical . This vulnerability affects unknown code of the component Database Tabl…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-12432 | themeisle Stripe Payment Forms by WP Full Pay Plugin up to 8.4.3 on WordPress Stripe.js wpfs_update_failed_payment_status db authorization

A vulnerability categorized as critical has been discovered in themeisle Stripe Payment Forms by WP Full Pay Plugin up to 8.4.3 on WordPress. This issue affects the function wpfs_update_failed_payment…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-11783 | dokaninc Dokan Plugin up to 5.0.4 on WordPress html cross site scripting

A vulnerability identified as problematic has been detected in dokaninc Dokan Plugin up to 5.0.4 on WordPress. Impacted is the function html . This manipulation causes cross site scripting. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-13295 | gpriday Page Builder by SiteOrigin Plugin up to 2.34.3 on WordPress panels_data cross site scripting

A vulnerability labeled as problematic has been found in gpriday Page Builder by SiteOrigin Plugin up to 2.34.3 on WordPress. The affected element is an unknown function. Such manipulation of the argu…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-45259 | FreeBSD Capability Mode privileges assignment

A vulnerability marked as problematic has been reported in FreeBSD . The impacted element is an unknown function of the component Capability Mode . Performing a manipulation results in incorrect privi…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-11597 | surbma Surbma Plugin up to 2.0.1 on WordPress Shortcode surbma_infusionsoft_shortcode_shortcode ID cross site scripting

A vulnerability described as problematic has been identified in surbma Surbma Plugin up to 2.0.1 on WordPress. This affects the function surbma_infusionsoft_shortcode_shortcode of the component Shortc…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-12399 | jegstudio Gutenverse Plugin up to 3.8.0 on WordPress Setting cross site scripting

A vulnerability classified as problematic has been found in jegstudio Gutenverse Plugin up to 3.8.0 on WordPress. This impacts an unknown function of the component Setting Handler . The manipulation l…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-49412 | FreeBSD use after free

A vulnerability classified as critical was found in FreeBSD . Affected is an unknown function. The manipulation results in use after free. This vulnerability is reported as CVE-2026-49412 . The attack…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-45258 | FreeBSD Kernel Memory /dev/dsp dsp_mmap_single out-of-bounds

A vulnerability, which was classified as critical , has been found in FreeBSD . Affected by this vulnerability is the function dsp_mmap_single of the file /dev/dsp of the component Kernel Memory Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-49413 | FreeBSD Shared Library privileges assignment

A vulnerability, which was classified as problematic , was found in FreeBSD . Affected by this issue is some unknown functionality of the component Shared Library Handler . Such manipulation leads to …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-49417 | FreeBSD Kernel Memory /dev/dsp use after free

A vulnerability has been found in FreeBSD and classified as critical . This affects an unknown part of the file /dev/dsp of the component Kernel Memory Handler . Performing a manipulation results in u…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 27, 2026
CVE-2026-49416 | FreeBSD integer overflow

A vulnerability was found in FreeBSD and classified as critical . This vulnerability affects unknown code. Executing a manipulation can lead to integer overflow. This vulnerability is handled as CVE-2…

VulDB Read →
← Prev 11 / 428 Next →