CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6258 articles  ·  updated every 4 hours · grows forever

6258Total
4063Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-25854 | Apache Tomcat up to 7.0.108/8.5.100/9.0.115/10.1.52/11.0.18 redirect

A vulnerability categorized as problematic has been discovered in Apache Tomcat up to 7.0.108/8.5.100/9.0.115/10.1.52/11.0.18 . Impacted is an unknown function. The manipulation results in open redire…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-29129 | Apache Tomcat up to 9.0.115/10.1.52/11.0.18 Cipher Preference Order information disclosure

A vulnerability identified as problematic has been detected in Apache Tomcat up to 9.0.115/10.1.52/11.0.18 . The affected element is an unknown function of the component Cipher Preference Order . This…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-29145 | Apache Tomcat up to 8.5.99/9.0.115/10.1.52/11.0.18 CLIENT_CERT Authentication improper authentication

A vulnerability labeled as critical has been found in Apache Tomcat up to 8.5.99/9.0.115/10.1.52/11.0.18 . The impacted element is an unknown function of the component CLIENT_CERT Authentication . Suc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-32990 | Apache Tomcat up to 9.0.115/10.1.52/11.0.19 input validation

A vulnerability marked as critical has been reported in Apache Tomcat up to 9.0.115/10.1.52/11.0.19 . This affects an unknown function. Performing a manipulation results in improper input validation. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34946 | bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 control flow (GHSA-q49f-xg75-m9xw)

A vulnerability described as problematic has been identified in bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 . This impacts an unknown function. Executing a manipulation can lead to incorrect …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34987 | bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 out-of-bounds (GHSA-xx5w-cvp6-jv83)

A vulnerability classified as problematic has been found in bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 . Affected is an unknown function. The manipulation leads to out-of-bounds read. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34734 | HDFGroup HDF5 up to 1.14.1-2 Memmove Call H5T__conv_struct use after free

A vulnerability classified as critical was found in HDFGroup HDF5 up to 1.14.1-2 . Affected by this vulnerability is the function H5T__conv_struct of the component Memmove Call Handler . The manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34943 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 WIT Interface uncaught exception (GHSA-m758-wjhj-p3jq)

A vulnerability, which was classified as problematic , has been found in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . Affected by this issue is some unknown functionality of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34944 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 uncaught exception (GHSA-qqfj-4vcm-26hv)

A vulnerability, which was classified as problematic , was found in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . This affects an unknown part. Such manipulation leads to uncaught exce…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34983 | bytecodealliance wasmtime up to 43.0.0 API Call wasmtime::Linker use after free (GHSA-hfr4-7c6c-48w2)

A vulnerability has been found in bytecodealliance wasmtime up to 43.0.0 and classified as critical . This vulnerability affects the function wasmtime::Linker of the component API Call Handler . Perfo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34988 | bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 memory_guard_size memory corruption (GHSA-6wgr-89rj-399p)

A vulnerability was found in bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 and classified as critical . This issue affects the function Config::memory_guard_size . Executing a manipulation can …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-35063 | OpenPLC v3 REST API Endpoint authorization (icsa-25-345-10)

A vulnerability was found in OpenPLC v3 . It has been classified as critical . Impacted is an unknown function of the component REST API Endpoint . The manipulation leads to missing authorization. Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-40077 | henrygd beszel up to 0.18.6 API Endpoint incomplete blacklist

A vulnerability was found in henrygd beszel up to 0.18.6 . It has been declared as critical . The affected element is an unknown function of the component API Endpoint . The manipulation results in in…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-35195 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 out-of-bounds write (GHSA-394w-hwhg-8vgm)

A vulnerability was found in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . It has been rated as critical . The impacted element is an unknown function. This manipulation causes out-of-…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-39912 | v2board/Xboard WithMailLink Endpoint login_with_mail_link_enable insertion of sensitive information into sent data

A vulnerability categorized as critical has been discovered in v2board and Xboard . This affects the function login_with_mail_link_enable of the component WithMailLink Endpoint . Such manipulation lea…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-29923 | EnTech Taiwan PowerStrip up to 3.90.736 IOCTL pstrip64.sys Local Privilege Escalation

A vulnerability identified as critical has been detected in EnTech Taiwan PowerStrip up to 3.90.736 . This impacts an unknown function in the library pstrip64.sys of the component IOCTL Handler . Perf…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-35556 | OpenPLC v3 credentials storage (icsa-25-345-10)

A vulnerability labeled as problematic has been found in OpenPLC v3 . Affected is an unknown function. Executing a manipulation can lead to unprotected storage of credentials. The identification of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34486 | Apache Tomcat up to 9.0.116/10.1.53/11.0.20 missing encryption

A vulnerability marked as problematic has been reported in Apache Tomcat up to 9.0.116/10.1.53/11.0.20 . Affected by this vulnerability is an unknown functionality. The manipulation leads to missing e…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34483 | Apache Tomcat up to 8.5.82/8.5.100/9.0.116/10.1.53/11.0.20 JsonAccessLogValve escape output

A vulnerability described as problematic has been identified in Apache Tomcat up to 8.5.82/8.5.100/9.0.116/10.1.53/11.0.20 . Affected by this issue is some unknown functionality of the component JsonA…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34487 | Apache Tomcat up to 9.0.116/10.1.53/11.0.20 Bearer Token log file

A vulnerability classified as problematic has been found in Apache Tomcat up to 9.0.116/10.1.53/11.0.20 . This affects an unknown part of the component Bearer Token Handler . This manipulation causes …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-34500 | Apache Tomcat up to 9.0.116/10.1.53/11.0.20 CLIENT_CERT Authentication improper authentication

A vulnerability classified as critical was found in Apache Tomcat up to 9.0.116/10.1.53/11.0.20 . This vulnerability affects unknown code of the component CLIENT_CERT Authentication . Such manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-35577 | apollographql apollo-mcp-server up to 1.6.x Model Context Protocol origin validation

A vulnerability, which was classified as problematic , has been found in apollographql apollo-mcp-server up to 1.6.x . This issue affects some unknown processing of the component Model Context Protoco…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-40087 | langchain-ai langchain up to 0.3.82/1.2.27 special elements used in a template engine

A vulnerability, which was classified as problematic , was found in langchain-ai langchain up to 0.3.82/1.2.27 . Impacted is an unknown function. Executing a manipulation can lead to improper neutrali…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 10, 2026
CVE-2026-40088 | MervinPraison PraisonAI up to 4.5.120 execute_command os command injection

A vulnerability has been found in MervinPraison PraisonAI up to 4.5.120 and classified as critical . The affected element is the function execute_command . The manipulation leads to os command injecti…

VulDB Read →
← Prev 134 / 261 Next →