CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6185 articles  ·  updated every 4 hours · grows forever

6185Total
4059Full Text
May 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-40394 | Varnish Cache up to 9.0.0 control flow

A vulnerability, which was classified as problematic , was found in Varnish Cache up to 9.0.0 . The affected element is an unknown function. Such manipulation leads to incorrect control flow. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-40396 | varnish-software Varnish Cache up to 9.0.0 timeout_linger control flow

A vulnerability has been found in varnish-software Varnish Cache up to 9.0.0 and classified as problematic . The impacted element is the function timeout_linger . Performing a manipulation results in …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-40395 | Varnish Enterprise up to 6.0.16r11 Header Field headerplus.write_req0 allocation of resources

A vulnerability was found in Varnish Enterprise up to 6.0.16r11 and classified as problematic . This affects the function headerplus.write_req0 of the component Header Field Handler . Executing a mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6162 | PHPGurukul Company Visitor Management System 2.0 bwdates-reports-details.php fromdate cross site scripting

A vulnerability was found in PHPGurukul Company Visitor Management System 2.0 . It has been classified as problematic . This impacts an unknown function of the file /bwdates-reports-details.php . The …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-35337 | Apache Storm Client up to 2.8.5 Kerberos TGT Credential ObjectInputStream.readObject deserialization

A vulnerability was found in Apache Storm Client up to 2.8.5 . It has been declared as critical . Affected is the function ObjectInputStream.readObject of the component Kerberos TGT Credential Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-35565 | Apache Storm UI up to 2.8.5 Topology Metadata parseNode/parseEdge cross site scripting

A vulnerability was found in Apache Storm UI up to 2.8.5 . It has been rated as problematic . Affected by this vulnerability is the function parseNode/parseEdge of the component Topology Metadata Hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6163 | code-projects Lost and Found Thing Management 1.0 /catageory.php cat sql injection

A vulnerability categorized as critical has been discovered in code-projects Lost and Found Thing Management 1.0 . Affected by this issue is some unknown functionality of the file /catageory.php . Suc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6164 | code-projects Lost and Found Thing Management 1.0 /addcat.php cata sql injection

A vulnerability identified as critical has been detected in code-projects Lost and Found Thing Management 1.0 . This affects an unknown part of the file /addcat.php . Performing a manipulation of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6165 | code-projects Vehicle Showroom Management System 1.0 /util/Login_check.php ID sql injection

A vulnerability labeled as critical has been found in code-projects Vehicle Showroom Management System 1.0 . This vulnerability affects unknown code of the file /util/Login_check.php . Executing a man…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6166 | code-projects Vehicle Showroom Management System 1.0 UpdateVehicleFunction.php VEHICLE_ID sql injection

A vulnerability marked as critical has been reported in code-projects Vehicle Showroom Management System 1.0 . This issue affects some unknown processing of the file /util/UpdateVehicleFunction.php . …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6167 | code-projects Faculty Management System 1.0 /subject-print.php ID sql injection

A vulnerability described as critical has been identified in code-projects Faculty Management System 1.0 . Impacted is an unknown function of the file /subject-print.php . The manipulation of the argu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 13, 2026
CVE-2026-6168 | TOTOLINK A7000R up to 9.1.0u.6115 /cgi-bin/cstecgi.cgi setWiFiEasyGuestCfg ssid5g stack-based overflow

A vulnerability classified as critical has been found in TOTOLINK A7000R up to 9.1.0u.6115 . The affected element is the function setWiFiEasyGuestCfg of the file /cgi-bin/cstecgi.cgi . This manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6148 | code-projects Vehicle Showroom Management System 1.0 MonthTotalReportUpdateFunction.php BRANCH_ID sql injection

A vulnerability classified as critical has been found in code-projects Vehicle Showroom Management System 1.0 . Affected by this vulnerability is an unknown functionality of the file /util/MonthTotalR…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6149 | code-projects Vehicle Showroom Management System 1.0 BookVehicleFunction.php BRANCH_ID sql injection

A vulnerability classified as critical was found in code-projects Vehicle Showroom Management System 1.0 . Affected by this issue is some unknown functionality of the file /util/BookVehicleFunction.ph…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6150 | code-projects Simple Laundry System 1.0 /checkupdatestatus.php serviceId cross site scripting

A vulnerability, which was classified as problematic , has been found in code-projects Simple Laundry System 1.0 . This affects an unknown part of the file /checkupdatestatus.php . The manipulation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6151 | code-projects Vehicle Showroom Management System 1.0 PaymentStatusFunction.php CUSTOMER_ID sql injection

A vulnerability, which was classified as critical , was found in code-projects Vehicle Showroom Management System 1.0 . This vulnerability affects unknown code of the file /util/PaymentStatusFunction.…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6152 | code-projects Vehicle Showroom Management System 1.0 StaffAddingFunction.php STAFF_ID sql injection

A vulnerability has been found in code-projects Vehicle Showroom Management System 1.0 and classified as critical . This issue affects some unknown processing of the file /util/StaffAddingFunction.php…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6153 | code-projects Vehicle Showroom Management System 1.0 StaffDetailsFunction.php STAFF_ID sql injection

A vulnerability was found in code-projects Vehicle Showroom Management System 1.0 and classified as critical . Impacted is an unknown function of the file /util/StaffDetailsFunction.php . Such manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6154 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setWizardCfg wizard os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been classified as critical . The affected element is the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6155 | Totolink A7100RU 7.4cu.2313 CGI /cgi-bin/cstecgi.cgi setWanCfg pppoeServiceName os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313 . It has been declared as critical . The impacted element is the function setWanCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6156 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setIpQosRules Comment os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been rated as critical . This affects the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component CGI Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6157 | Totolink A800R 4.1.2cu.5137_B20200730 /lib/cste_modules/app.so setAppEasyWizardConfig apcliSsid buffer overflow

A vulnerability categorized as critical has been discovered in Totolink A800R 4.1.2cu.5137_B20200730 . This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so . The ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6158 | Totolink N300RH 6.1c.1353_B20190305 upgrade.so setUpgradeUboot FileName os command injection

A vulnerability identified as critical has been detected in Totolink N300RH 6.1c.1353_B20190305 . Affected is the function setUpgradeUboot of the file upgrade.so . This manipulation of the argument Fi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6159 | code-projects Simple ChatBox up to 1.0 Endpoint /chatbox/insert.php msg cross site scripting

A vulnerability labeled as problematic has been found in code-projects Simple ChatBox up to 1.0 . Affected by this vulnerability is an unknown functionality of the file /chatbox/insert.php of the comp…

VulDB Read →
← Prev 121 / 258 Next →