CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6154 articles  ·  updated every 4 hours · grows forever

6154Total
4058Full Text
May 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-30480 | LibreNMS 22.11.0-23-gd091788f2 NFSen nfsen.inc.php nfsen path traversal

A vulnerability has been found in LibreNMS 22.11.0-23-gd091788f2 and classified as critical . This impacts an unknown function of the file nfsen.inc.php of the component NFSen Module . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37589 | SourceCodester Storage Unit Rental Management System 1.0 manage_storage_unit.php sql injection

A vulnerability was found in SourceCodester Storage Unit Rental Management System 1.0 and classified as critical . Affected is an unknown function of the file /storage/admin/maintenance/manage_storage…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37592 | SourceCodester Storage Unit Rental Management System 1.0 manage_pricing.php sql injection

A vulnerability was found in SourceCodester Storage Unit Rental Management System 1.0 . It has been classified as critical . Affected by this vulnerability is an unknown functionality of the file /sto…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37590 | SourceCodester Storage Unit Rental Management System 1.0 manage_rent.php sql injection

A vulnerability was found in SourceCodester Storage Unit Rental Management System 1.0 . It has been declared as critical . Affected by this issue is some unknown functionality of the file /storage/adm…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37593 | SourceCodester Online Employees Work from Home Attendance System 1.0 view_att.php sql injection

A vulnerability was found in SourceCodester Online Employees Work from Home Attendance System 1.0 . It has been rated as critical . This affects an unknown part of the file /wfh_attendance/admin/view_…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37594 | SourceCodester Online Employees Work from Home Attendance System 1.0 view_employee.php sql injection

A vulnerability categorized as critical has been discovered in SourceCodester Online Employees Work from Home Attendance System 1.0 . This vulnerability affects unknown code of the file /wfh_attendanc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37595 | SourceCodester Online Employees Work from Home Attendance System 1.0 manage_employee.php sql injection

A vulnerability identified as critical has been detected in SourceCodester Online Employees Work from Home Attendance System 1.0 . This issue affects some unknown processing of the file /wfh_attendanc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37596 | SourceCodester Online Employees Work from Home Attendance System 1.0 manage_department.php sql injection

A vulnerability labeled as critical has been found in SourceCodester Online Employees Work from Home Attendance System 1.0 . Impacted is an unknown function of the file /wfh_attendance/admin/manage_de…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2025-61260 | OpenAI Codex CLI up to 0.23.0 Model Context Protocol Configuration File codex/config.toml privilege escalation

A vulnerability marked as critical has been reported in OpenAI Codex CLI up to 0.23.0 . The affected element is an unknown function of the file codex/config.toml of the component Model Context Protoco…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4913 | Ivanti Neurons for ITSM up to 2025.3 improper protection of alternate path

A vulnerability described as problematic has been identified in Ivanti Neurons for ITSM up to 2025.3 . The impacted element is an unknown function. Such manipulation leads to improper protection of al…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4914 | Ivanti Neurons for ITSM up to 2025.3 cross site scripting

A vulnerability classified as problematic has been found in Ivanti Neurons for ITSM up to 2025.3 . This affects an unknown function. Performing a manipulation results in cross site scripting. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4369 | Autodesk Fusion up to 2702.1.46 cross site scripting

A vulnerability classified as problematic was found in Autodesk Fusion up to 2702.1.46 . This impacts an unknown function. Executing a manipulation can lead to cross site scripting. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37601 | SourceCodester Patient Appointment Scheduler System 1.0 manage_appointment.php. sql injection

A vulnerability, which was classified as critical , has been found in SourceCodester Patient Appointment Scheduler System 1.0 . Affected is an unknown function of the file /Scheduler/admin/appointment…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37598 | SourceCodester Patient Appointment Scheduler System 1.0 SystemSettings.php?f=update_settings privilege escalation

A vulnerability, which was classified as critical , was found in SourceCodester Patient Appointment Scheduler System 1.0 . Affected by this vulnerability is an unknown functionality of the file /sched…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37597 | SourceCodester Online Employees Work from Home Attendance System 1.0 attendance_list.php sql injection

A vulnerability has been found in SourceCodester Online Employees Work from Home Attendance System 1.0 and classified as critical . Affected by this issue is some unknown functionality of the file /wf…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37600 | SourceCodester Patient Appointment Scheduler System 1.0 view_details.php sql injection

A vulnerability was found in SourceCodester Patient Appointment Scheduler System 1.0 and classified as critical . This affects an unknown part of the file /scheduler/admin/appointments/view_details.ph…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37602 | SourceCodester Patient Appointment Scheduler System 1.0 manage_user.php sql injection

A vulnerability was found in SourceCodester Patient Appointment Scheduler System 1.0 . It has been classified as critical . This vulnerability affects unknown code of the file /scheduler/admin/user/ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4344 | Autodesk Fusion up to 2702.1.46 component name cross site scripting

A vulnerability was found in Autodesk Fusion up to 2702.1.46 . It has been declared as problematic . This issue affects some unknown processing. Executing a manipulation of the argument component name…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4345 | Autodesk Fusion up to 2702.1.46 cross site scripting

A vulnerability was found in Autodesk Fusion up to 2702.1.46 . It has been rated as problematic . Impacted is an unknown function. The manipulation leads to cross site scripting. This vulnerability is…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2025-69893 | Trezor One/T/Safe up to 1.13.0/1.14.0 BIP-39 Mnemonic information exposure

A vulnerability categorized as problematic has been discovered in Trezor One, T and Safe up to 1.13.0/1.14.0 . The affected element is an unknown function of the component BIP-39 Mnemonic Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-37980 | Red Hat Keycloak organization.alias cross site scripting

A vulnerability identified as problematic has been detected in Red Hat Keycloak . The impacted element is an unknown function. This manipulation of the argument organization.alias causes cross site sc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2025-69993 | Leaflet up to 1.9.4 bindPopup cross site scripting

A vulnerability labeled as problematic has been found in Leaflet up to 1.9.4 . This affects the function bindPopup . Such manipulation leads to cross site scripting. This vulnerability is uniquely ide…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
Fortinet customers confront actively exploited zero-day, with a full patch still pending - CyberScoop

Fortinet customers confront actively exploited zero-day, with a full patch still pending CyberScoop

CyberScoop Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4109 | arraytics Eventin Plugin up to 4.1.8 on WordPress get_item_permissions_check authorization

A vulnerability, which was classified as problematic , was found in arraytics Eventin Plugin up to 4.1.8 on WordPress. Impacted is the function get_item_permissions_check . Such manipulation leads to …

VulDB Read →
← Prev 112 / 257 Next →