CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6195 articles  ·  updated every 4 hours · grows forever

6195Total
4060Full Text
May 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6150 | code-projects Simple Laundry System 1.0 /checkupdatestatus.php serviceId cross site scripting

A vulnerability, which was classified as problematic , has been found in code-projects Simple Laundry System 1.0 . This affects an unknown part of the file /checkupdatestatus.php . The manipulation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6151 | code-projects Vehicle Showroom Management System 1.0 PaymentStatusFunction.php CUSTOMER_ID sql injection

A vulnerability, which was classified as critical , was found in code-projects Vehicle Showroom Management System 1.0 . This vulnerability affects unknown code of the file /util/PaymentStatusFunction.…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6152 | code-projects Vehicle Showroom Management System 1.0 StaffAddingFunction.php STAFF_ID sql injection

A vulnerability has been found in code-projects Vehicle Showroom Management System 1.0 and classified as critical . This issue affects some unknown processing of the file /util/StaffAddingFunction.php…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6153 | code-projects Vehicle Showroom Management System 1.0 StaffDetailsFunction.php STAFF_ID sql injection

A vulnerability was found in code-projects Vehicle Showroom Management System 1.0 and classified as critical . Impacted is an unknown function of the file /util/StaffDetailsFunction.php . Such manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6154 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setWizardCfg wizard os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been classified as critical . The affected element is the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6155 | Totolink A7100RU 7.4cu.2313 CGI /cgi-bin/cstecgi.cgi setWanCfg pppoeServiceName os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313 . It has been declared as critical . The impacted element is the function setWanCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6156 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setIpQosRules Comment os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been rated as critical . This affects the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component CGI Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6157 | Totolink A800R 4.1.2cu.5137_B20200730 /lib/cste_modules/app.so setAppEasyWizardConfig apcliSsid buffer overflow

A vulnerability categorized as critical has been discovered in Totolink A800R 4.1.2cu.5137_B20200730 . This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so . The ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6158 | Totolink N300RH 6.1c.1353_B20190305 upgrade.so setUpgradeUboot FileName os command injection

A vulnerability identified as critical has been detected in Totolink N300RH 6.1c.1353_B20190305 . Affected is the function setUpgradeUboot of the file upgrade.so . This manipulation of the argument Fi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6159 | code-projects Simple ChatBox up to 1.0 Endpoint /chatbox/insert.php msg cross site scripting

A vulnerability labeled as problematic has been found in code-projects Simple ChatBox up to 1.0 . Affected by this vulnerability is an unknown functionality of the file /chatbox/insert.php of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6160 | code-projects Simple ChatBox 1.0 Endpoint chatbox.sql SimpleChatbox_PHP file information disclosure

A vulnerability marked as problematic has been reported in code-projects Simple ChatBox 1.0 . Affected by this issue is the function SimpleChatbox_PHP of the file chatbox.sql of the component Endpoint…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-6161 | code-projects Simple ChatBox up to 1.0 Endpoint /chatbox/insert.php msg sql injection

A vulnerability described as critical has been identified in code-projects Simple ChatBox up to 1.0 . This affects an unknown part of the file /chatbox/insert.php of the component Endpoint . Executing…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-40393 | mesa3d Mesa up to 25.3.5/26.0.0 WebGPU out-of-bounds write

A vulnerability classified as critical has been found in mesa3d Mesa up to 25.3.5/26.0.0 . This vulnerability affects unknown code of the component WebGPU . The manipulation leads to out-of-bounds wri…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-40386 | libexif up to 0.6.25 MakerNote Decoding integer underflow

A vulnerability classified as critical was found in libexif up to 0.6.25 . This issue affects some unknown processing of the component MakerNote Decoding . The manipulation results in integer underflo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2026-40385 | libexif up to 0.6.25 Nikon MakerNote integer overflow

A vulnerability, which was classified as critical , has been found in libexif up to 0.6.25 . Impacted is an unknown function of the component Nikon MakerNote Handler . This manipulation causes integer…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25707 | eBrigade ERP 4.5 pdf.php ID sql injection (Exploit 46117 / EDB-46117)

A vulnerability was found in eBrigade ERP 4.5 . It has been rated as critical . This affects an unknown part of the file pdf.php . This manipulation of the argument ID causes sql injection. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25710 | Dolibarr ERP-CRM 8.0.4 POST Parameter dict.php rowid sql injection (Exploit 46095 / EDB-46095)

A vulnerability categorized as critical has been discovered in Dolibarr ERP-CRM 8.0.4 . This vulnerability affects unknown code of the file dict.php of the component POST Parameter Handler . Such mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25697 | VictorAlagwu CMSsite 1.0 GET Request category.php cat_id sql injection (Exploit 46259 / EDB-46259)

A vulnerability identified as critical has been detected in VictorAlagwu CMSsite 1.0 . This issue affects some unknown processing of the file category.php of the component GET Request Handler . Perfor…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25703 | ImpressCMS 1.3.11 POST Request admin.php bid sql injection (Exploit 46239 / EDB-46239)

A vulnerability labeled as critical has been found in ImpressCMS 1.3.11 . Impacted is an unknown function of the file admin.php of the component POST Request Handler . Executing a manipulation of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25693 | ResourceSpace up to 8.6 collection_edit.php keywords cross-site request forgery (Exploit 46274 / EDB-46274)

A vulnerability marked as problematic has been reported in ResourceSpace up to 8.6 . The affected element is an unknown function of the file collection_edit.php . The manipulation of the argument keyw…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2018-25257 | Adianti Framework 5.5.0 Profile Edit Endpoint SystemProfileForm Name sql injection (Exploit 46217 / EDB-46217)

A vulnerability described as critical has been identified in Adianti Framework 5.5.0 . The impacted element is the function SystemProfileForm of the component Profile Edit Endpoint . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25713 | MyT Project Management 1.5.1 POST /charge/admin Charge[group_total] sql injection (Exploit 46084 / EDB-46084)

A vulnerability classified as critical has been found in MyT Project Management 1.5.1 . This affects an unknown function of the file /charge/admin of the component POST Handler . This manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25699 | Newsbull Haber Script 1.0.0 Search Parameter Endpoint sql injection (Exploit 46266 / EDB-46266)

A vulnerability classified as critical was found in Newsbull Haber Script 1.0.0 . This impacts an unknown function of the component Search Parameter Endpoint . Such manipulation leads to sql injection…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 12, 2026
CVE-2019-25706 | Across DR-810 ROM-0 File file information disclosure (Exploit 46132 / EDB-46132)

A vulnerability, which was classified as problematic , has been found in Across DR-810 ROM-0 . Affected is an unknown function of the component File Handler . Performing a manipulation results in file…

VulDB Read →
← Prev 122 / 259 Next →