CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6154 articles  ·  updated every 4 hours · grows forever

6154Total
4058Full Text
May 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2025-40745 | Siemens Software Center Analytics Service Endpoint certificate validation (ssa-981622)

A vulnerability has been found in Siemens Software Center, Simcenter 3D, Simcenter Femap, Simcenter STAR-CCM+, Solid Edge SE2025, Solid Edge SE2026 and Tecnomatix Plant Simulation and classified as cr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-24032 | Siemens SINEC NMS up to 4.0 SP2 UMC signature verification (ssa-801704)

A vulnerability was found in Siemens SINEC NMS up to 4.0 SP2 and classified as critical . The impacted element is an unknown function of the component UMC . Executing a manipulation can lead to improp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-25654 | Siemens SINEC NMS up to 4.0 SP2 Password Reset authorization (ssa-605717)

A vulnerability was found in Siemens SINEC NMS up to 4.0 SP2 . It has been classified as critical . This affects an unknown function of the component Password Reset Handler . The manipulation leads to…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27668 | Siemens RUGGEDCOM CROSSBOW Secure Access Manager Primary up to 5.7 Device Group privileges assignment (ssa-741509)

A vulnerability was found in Siemens RUGGEDCOM CROSSBOW Secure Access Manager Primary up to 5.7 . It has been declared as very critical . This impacts an unknown function of the component Device Group…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-33892 | Siemens Industrial Edge Management Pro V1 up to 2.7.x authentication bypass (ssa-609469)

A vulnerability was found in Siemens Industrial Edge Management Pro V1, Industrial Edge Management Pro V2 and Industrial Edge Management Virtual up to 2.7.x . It has been rated as critical . Affected …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2025-13822 | MCPHub up to 0.10.x Endpoint authorization

A vulnerability categorized as critical has been discovered in MCPHub up to 0.10.x . Affected by this vulnerability is an unknown functionality of the component Endpoint . Such manipulation leads to a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-2332 | Eclipse Jetty up to 9.4.59/10.0.27/11.0.27/12.0.32/12.1.6 Double Quote request smuggling

A vulnerability identified as problematic has been detected in Eclipse Jetty up to 9.4.59/10.0.27/11.0.27/12.0.32/12.1.6 . Affected by this issue is some unknown functionality of the component Double …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-24069 | Kiuwan SAST prior 2.8.2509.4 User Account authorization

A vulnerability labeled as critical has been found in Kiuwan SAST . This affects an unknown part of the component User Account Handler . Executing a manipulation can lead to incorrect authorization. T…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-24318 | SAP BusinessObjects Business Intelligence Platform 2025/2027/ENTERPRISE 430 persistent cookies containing sensitive information

A vulnerability classified as problematic was found in SAP BusinessObjects Business Intelligence Platform 2025/2027/ENTERPRISE 430 . This affects an unknown function. Such manipulation leads to use of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27676 | SAP S4HANA OData Service 4CORE 109 Manage Technical Object Structures authorization

A vulnerability, which was classified as problematic , has been found in SAP S4HANA OData Service 4CORE 109 . This impacts an unknown function of the component Manage Technical Object Structures . Per…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27677 | SAP S4HANA OData Service 4CORE 109 Manage Reference Equipment authorization

A vulnerability, which was classified as problematic , was found in SAP S4HANA OData Service 4CORE 109 . Affected is an unknown function of the component Manage Reference Equipment . Executing a manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27679 | SAP S4HANA Frontend OData Service UI4H 109 Manage Reference Structures authorization

A vulnerability has been found in SAP S4HANA Frontend OData Service UI4H 109 and classified as problematic . Affected by this vulnerability is an unknown functionality of the component Manage Referenc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27678 | SAP S4HANA Backend OData Service 4CORE 109 Manage Reference Structures authorization

A vulnerability was found in SAP S4HANA Backend OData Service 4CORE 109 and classified as problematic . Affected by this issue is some unknown functionality of the component Manage Reference Structure…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-34225 | open-webui Open WebUI up to 0.7.2 server-side request forgery (GHSA-jgx9-jr5x-mvpv)

A vulnerability was found in open-webui Open WebUI up to 0.7.2 . It has been classified as critical . This affects an unknown part. This manipulation causes server-side request forgery. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-40315 | MervinPraison PraisonAI up to 4.5.132 Configuration config.py table_prefix sql injection (GHSA-x783-xp3g-mqhp)

A vulnerability was found in MervinPraison PraisonAI up to 4.5.132 . It has been declared as critical . This vulnerability affects unknown code of the file config.py of the component Configuration Han…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4479 | wpcodefactory WholeSale Products Dynamic Pricing Management WooCommerce Plugin Setting cross site scripting

A vulnerability was found in wpcodefactory WholeSale Products Dynamic Pricing Management WooCommerce Plugin up to 1.2 on WordPress. It has been rated as problematic . This issue affects some unknown p…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27681 | SAP Business Planning and Consolidation and Business Warehouse sql injection

A vulnerability categorized as critical has been discovered in SAP Business Planning and Consolidation and Business Warehouse up to SAP_BW 750 . Impacted is an unknown function. Executing a manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-27683 | SAP BusinessObjects Business Intelligence Platform 2025/2027/ENTERPRISE 430 cross site scripting

A vulnerability identified as problematic has been detected in SAP BusinessObjects Business Intelligence Platform 2025/2027/ENTERPRISE 430 . The affected element is an unknown function. The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-26460 | vTiger CRM 8.4.0 Dashboard DashBoardTab tabid cross site scripting

A vulnerability labeled as problematic has been found in vTiger CRM 8.4.0 . The impacted element is the function DashBoardTab of the component Dashboard Module . The manipulation of the argument tabid…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-6203 | wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress wp_redirect redirect_to_on_logout

A vulnerability marked as problematic has been reported in wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress. This affects the function wp_redirect of the component User Registr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-1607 | Surbma Plugin up to 2.1 on WordPress Shortcode surbma-bookingcom cross site scripting

A vulnerability described as problematic has been identified in Surbma Plugin up to 2.1 on WordPress. This impacts the function surbma-bookingcom of the component Shortcode Handler . Such manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-40313 | MervinPraison PraisonAI up to 4.5.139 GITHUB_TOKEN inclusion of functionality from untrusted control sphere (GHSA-3959-6v5q-45q2)

A vulnerability classified as critical has been found in MervinPraison PraisonAI up to 4.5.139 . Affected is an unknown function. Performing a manipulation of the argument GITHUB_TOKEN results in incl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-34069 | nimiq core-rs-albatross up to 1.2.x get_macro_blocks assertion (GHSA-48m6-486p-9j8p)

A vulnerability classified as problematic was found in nimiq core-rs-albatross up to 1.2.x . Affected by this vulnerability is the function get_macro_blocks . Executing a manipulation can lead to reac…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 14, 2026
CVE-2026-4059 | devitemsllc ShopLentor Plugin up to 3.3.5 on WordPress Shortcode woolentor_quickview_button cross site scripting

A vulnerability, which was classified as problematic , has been found in devitemsllc ShopLentor Plugin up to 3.3.5 on WordPress. Affected by this issue is the function woolentor_quickview_button of th…

VulDB Read →
← Prev 113 / 257 Next →