CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6258 articles  ·  updated every 4 hours · grows forever

6258Total
4063Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-34392 | aces Loris up to 27.0.2/28.0.0 file access

A vulnerability identified as problematic has been detected in aces Loris up to 27.0.2/28.0.0 . The affected element is an unknown function. The manipulation leads to files or directories accessible. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-0811 | vsourz1td Advanced Contact form 7 DB Plugin up to 2.0.9 on WordPress Setting vsz_cf7_save_setting_callback cross-site request forgery

A vulnerability labeled as problematic has been found in vsourz1td Advanced Contact form 7 DB Plugin up to 2.0.9 on WordPress. The impacted element is the function vsz_cf7_save_setting_callback of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-27806 | fleetdm fleet up to 4.81.0 Device Management os command injection

A vulnerability marked as critical has been reported in fleetdm fleet up to 4.81.0 . This affects an unknown function of the component Device Management Handler . This manipulation causes os command i…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-34719 | Zammad up to 6.5.3/7.0.0 server-side request forgery

A vulnerability described as critical has been identified in Zammad up to 6.5.3/7.0.0 . This impacts an unknown function. Such manipulation leads to server-side request forgery. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50662 | D-Link DI-8003 16.07.26A1 /url_group.asp Name buffer overflow

A vulnerability classified as critical has been found in D-Link DI-8003 16.07.26A1 . Affected is an unknown function of the file /url_group.asp . Performing a manipulation of the argument Name results…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50663 | D-Link DI-8003 16.07.26A1 /usb_paswd.asp Name buffer overflow

A vulnerability classified as critical was found in D-Link DI-8003 16.07.26A1 . Affected by this vulnerability is an unknown functionality of the file /usb_paswd.asp . Executing a manipulation of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50667 | D-Link DI-8003 16.07.26A1 /wan_line_detection.asp iface buffer overflow

A vulnerability, which was classified as critical , has been found in D-Link DI-8003 16.07.26A1 . Affected by this issue is some unknown functionality of the file /wan_line_detection.asp . The manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50668 | D-Link DI-8003 16.07.26A1 /web_list_opt.asp s buffer overflow

A vulnerability, which was classified as critical , was found in D-Link DI-8003 16.07.26A1 . This affects an unknown part of the file /web_list_opt.asp . The manipulation of the argument s results in …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50669 | D-Link DI-8003/DI-8003G 16.07.26A1/19.12.10A1 /wan_ping.asp wan_ping buffer overflow

A vulnerability has been found in D-Link DI-8003 and DI-8003G 16.07.26A1/19.12.10A1 and classified as critical . This vulnerability affects unknown code of the file /wan_ping.asp . This manipulation o…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50672 | D-Link DI-8003 16.07.26A1 Parameter /yyxz_dlink.asp buffer overflow

A vulnerability was found in D-Link DI-8003 16.07.26A1 and classified as critical . This issue affects some unknown processing of the file /yyxz_dlink.asp of the component Parameter Handler . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-50673 | D-Link DI-8003 16.07.26A1 /webgl.asp http_lanport buffer overflow

A vulnerability was found in D-Link DI-8003 16.07.26A1 . It has been classified as critical . Impacted is an unknown function of the file /webgl.asp . Performing a manipulation of the argument http_la…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-35446 | aces Loris up to 27.0.2/28.0.0 file access

A vulnerability was found in aces Loris up to 27.0.2/28.0.0 . It has been declared as problematic . The affected element is an unknown function. Executing a manipulation can lead to files or directori…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-34782 | Zammad up to 7.0.0 REST Endpoint :id authorization

A vulnerability was found in Zammad up to 7.0.0 . It has been rated as problematic . The impacted element is an unknown function of the file /api/v1/ai_assistance/text_tools/:id of the component REST …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-34837 | Zammad up to 7.0.0 REST Endpoint :id authorization

A vulnerability categorized as problematic has been discovered in Zammad up to 7.0.0 . This affects an unknown function of the file /api/v1/ai_assistance/text_tools/:id of the component REST Endpoint …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-35165 | aces Loris up to 27.0.2/28.0.0 Backend Endpoint authorization

A vulnerability identified as critical has been detected in aces Loris up to 27.0.2/28.0.0 . This impacts an unknown function of the component Backend Endpoint . This manipulation causes authorization…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-35400 | aces Loris up to 27.0.2/28.0.0 Publication link following

A vulnerability labeled as critical has been found in aces Loris up to 27.0.2/28.0.0 . Affected is an unknown function of the component Publication Module . Such manipulation leads to link following. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-34985 | aces Loris up to 27.0.2/28.0.0 Media authorization

A vulnerability marked as critical has been reported in aces Loris up to 27.0.2/28.0.0 . Affected by this vulnerability is an unknown functionality of the component Media Module . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-20709 | Intel Pentium Processor Silver default key (intel-sa-00609)

A vulnerability described as problematic has been identified in Intel Pentium Processor Silver, Celeron Processor J and Celeron Processor N . Affected by this issue is some unknown functionality. Exec…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-35169 | aces Loris up to 27.0.2/28.0.0 help_editor cross site scripting

A vulnerability classified as problematic has been found in aces Loris up to 27.0.2/28.0.0 . This affects an unknown part of the component help_editor . The manipulation leads to cross site scripting.…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-35403 | aces Loris up to 27.0.2/28.0.0 Header survey_accounts Content-Type cross site scripting

A vulnerability classified as problematic was found in aces Loris up to 27.0.2/28.0.0 . This vulnerability affects the function survey_accounts of the component Header Handler . The manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-35455 | immich-app immich up to 2.6.x cross site scripting

A vulnerability, which was classified as problematic , has been found in immich-app immich up to 2.6.x . This issue affects some unknown processing. This manipulation causes cross site scripting. This…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5847 | code-projects Movie Ticketing System 1.0 SQL Database Backup File /db/moviedb.sql information disclosure

A vulnerability, which was classified as problematic , was found in code-projects Movie Ticketing System 1.0 . Impacted is an unknown function of the file /db/moviedb.sql of the component SQL Database…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5848 | jeecgboot JimuReport up to 2.3.0 Data Source testConnection DriverManager.getConnection dbUrl code injection (Issue 4587)

A vulnerability has been found in jeecgboot JimuReport up to 2.3.0 and classified as critical . The affected element is the function DriverManager.getConnection of the file /drag/onlDragDataSource/tes…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5849 | Tenda i12 1.0.0.11(3862) HTTP path traversal

A vulnerability was found in Tenda i12 1.0.0.11(3862) and classified as critical . The impacted element is an unknown function of the component HTTP Handler . Executing a manipulation can lead to path…

VulDB Read →
← Prev 140 / 261 Next →