CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6258 articles  ·  updated every 4 hours · grows forever

6258Total
4063Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-35041 | nearform fast-jwt up to 6.2.0 JWT redos

A vulnerability described as problematic has been identified in nearform fast-jwt up to 6.2.0 . This affects an unknown part of the component JWT Handler . Executing a manipulation can lead to ineffic…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5437 | Orthanc DICOM Server up to 1.12.10 out-of-bounds

A vulnerability classified as problematic has been found in Orthanc DICOM Server up to 1.12.10 . This vulnerability affects unknown code. The manipulation leads to out-of-bounds read. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2025-62718 | Axios up to 1.14.x NO_PROXY Normalization confused deputy (GHSA-3p68-rc4w-qgx5)

A vulnerability classified as critical was found in Axios up to 1.14.x . This issue affects some unknown processing of the component NO_PROXY Normalization Handler . The manipulation results in uninte…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-35204 | helm up to 4.1.3 path traversal

A vulnerability, which was classified as critical , has been found in helm up to 4.1.3 . Impacted is an unknown function. This manipulation causes path traversal. This vulnerability is handled as CVE-…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-35205 | Helm up to 4.1.3 Signature Verification failing open

A vulnerability, which was classified as critical , was found in Helm up to 4.1.3 . The affected element is an unknown function of the component Signature Verification . Such manipulation leads to not…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2025-70810 | Phpbb phbb3 3.3.15 Login/Authentication cross-site request forgery

A vulnerability has been found in Phpbb phbb3 3.3.15 and classified as problematic . The impacted element is an unknown function of the component Login/Authentication . Performing a manipulation resul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2025-70811 | Phpbb phbb3 3.3.15 Admin Control Panel Icon Management cross-site request forgery (GHSA-56pv-xg3w-6822)

A vulnerability was found in Phpbb phbb3 3.3.15 and classified as problematic . This affects an unknown function of the component Admin Control Panel Icon Management . Executing a manipulation can lea…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-4113 | SonicWall SMA1000 SSL VPN response discrepancy (SNWLID-2026-0003)

A vulnerability was found in SonicWall SMA1000 . It has been classified as problematic . This impacts an unknown function of the component SSL VPN . The manipulation leads to observable response discr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-4114 | SonicWall SMA1000 AMC TOTP Authentication unicode encoding (SNWLID-2026-0003)

A vulnerability was found in SonicWall SMA1000 . It has been declared as critical . Affected is an unknown function of the component AMC TOTP Authentication . The manipulation results in improper hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-4116 | SonicWall SMA1000 Tunnel TOTP Authentication unicode encoding (SNWLID-2026-0003)

A vulnerability was found in SonicWall SMA1000 . It has been rated as critical . Affected by this vulnerability is an unknown functionality of the component Tunnel TOTP Authentication . This manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2025-50228 | Jizhicms 2.5.4 User Evaluation/Message/Comment server-side request forgery (ID 104)

A vulnerability categorized as critical has been discovered in Jizhicms 2.5.4 . Affected by this issue is some unknown functionality of the component User Evaluation/Message/Comment . Such manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5440 | Orthanc DICOM Server up to 1.12.10 HTTP Content-Length allocation of resources

A vulnerability identified as problematic has been detected in Orthanc DICOM Server up to 1.12.10 . This affects an unknown part of the component HTTP Handler . Performing a manipulation of the argume…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5444 | Orthanc DICOM Server up to 1.12.10 PAM Image Parser integer overflow

A vulnerability labeled as critical has been found in Orthanc DICOM Server up to 1.12.10 . This vulnerability affects unknown code of the component PAM Image Parser . Executing a manipulation can lead…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5439 | Orthanc DICOM Server up to 1.12.10 ZIP Archive size allocation of resources

A vulnerability marked as problematic has been reported in Orthanc DICOM Server up to 1.12.10 . This issue affects some unknown processing of the component ZIP Archive Handler . The manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5441 | Orthanc DICOM Server up to 1.12.10 Image Parser DicomImageDecoder.cpp DecodePsmctRle1 out-of-bounds

A vulnerability described as problematic has been identified in Orthanc DICOM Server up to 1.12.10 . Impacted is the function DecodePsmctRle1 of the file DicomImageDecoder.cpp of the component Image P…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5442 | Orthanc DICOM Server up to 1.12.10 DICOM Image Parser integer overflow

A vulnerability classified as critical has been found in Orthanc DICOM Server up to 1.12.10 . The affected element is an unknown function of the component DICOM Image Parser . This manipulation causes…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5443 | Orthanc DICOM Server up to 1.12.10 DICOM Image Parser integer overflow

A vulnerability classified as critical was found in Orthanc DICOM Server up to 1.12.10 . The impacted element is an unknown function of the component DICOM Image Parser . Such manipulation leads to in…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5445 | Orthanc DICOM Server up to 1.12.10 Image Parser DicomImageDecoder.cpp DecodeLookupTable out-of-bounds

A vulnerability, which was classified as problematic , has been found in Orthanc DICOM Server up to 1.12.10 . This affects the function DecodeLookupTable of the file DicomImageDecoder.cpp of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-33005 | Apache OpenMeetings up to 8.x FileWebService insufficient permissions or privileges

A vulnerability, which was classified as problematic , was found in Apache OpenMeetings up to 8.x . This impacts an unknown function of the component FileWebService . Executing a manipulation can lead…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-33266 | Apache OpenMeetings up to 8.x a one-way hash with a predictable salt

A vulnerability has been found in Apache OpenMeetings up to 8.x and classified as problematic . Affected is an unknown function. The manipulation leads to use of a one-way hash with a predictable salt…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34020 | Apache OpenMeetings up to 8.x REST Login Endpoint username/password information disclosure

A vulnerability was found in Apache OpenMeetings up to 8.x and classified as problematic . Affected by this vulnerability is an unknown functionality of the component REST Login Endpoint . The manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34757 | libpng up to 1.6.56 Chunk Setter API png_set_hIST use after free

A vulnerability labeled as critical has been found in libpng up to 1.6.56 . The impacted element is the function png_set_hIST of the component Chunk Setter API . Executing a manipulation can lead to u…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34538 | Apache Airflow up to 3.1.8 DagRun Wait Endpoint exposure of resource

A vulnerability marked as critical has been reported in Apache Airflow up to 3.1.8 . This affects an unknown function of the component DagRun Wait Endpoint . The manipulation leads to exposure of reso…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34177 | Canonical LXD up to 5.0.6/5.21.4/6.7.x permissions.go isVMLowLevelOptionForbidden incomplete blacklist

A vulnerability described as critical has been identified in Canonical LXD up to 5.0.6/5.21.4/6.7.x . This impacts the function isVMLowLevelOptionForbidden of the file lxd/project/limits/permissions.g…

VulDB Read →
← Prev 137 / 261 Next →