CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6258 articles  ·  updated every 4 hours · grows forever

6258Total
4063Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5850 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setVpnPassCfg pptpPassThru os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been classified as critical . This affects the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of the component CGI …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5851 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setUPnPCfg enable os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been declared as critical . This impacts the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5852 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setIptvCfg igmpVer os command injection

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024 . It has been rated as critical . Affected is the function setIptvCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler .…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5853 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setIpv6LanCfg addrPrefixLen os command injection

A vulnerability categorized as critical has been discovered in Totolink A7100RU 7.4cu.2313_b20191024 . Affected by this vulnerability is the function setIpv6LanCfg of the file /cgi-bin/cstecgi.cgi of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5854 | Totolink A7100RU 7.4cu.2313_b20191024 CGI /cgi-bin/cstecgi.cgi setWiFiEasyCfg merge os command injection

A vulnerability identified as critical has been detected in Totolink A7100RU 7.4cu.2313_b20191024 . Affected by this issue is the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi of the compon…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
[webapps] Horilla v1.3 - RCE

Horilla v1.3 - RCE

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
[local] Microsoft MMC MSC EvilTwin - Local Admin Creation

Microsoft MMC MSC EvilTwin - Local Admin Creation

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
[local] SQLite 3.50.1 - Heap Overflow

SQLite 3.50.1 - Heap Overflow

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
[webapps] xibocms 3.3.4 - RCE

xibocms 3.3.4 - RCE

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
[local] 7-Zip 24.00 - Directory Traversal

7-Zip 24.00 - Directory Traversal

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
[webapps] FortiWeb 8.0.2 - Remote Code Execution

FortiWeb 8.0.2 - Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-58713 | Red Hat Process Automation 7 Process Automation Manager default permission

A vulnerability was found in Red Hat Process Automation 7 . It has been classified as critical . Affected by this vulnerability is an unknown functionality of the component Process Automation Manager …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-57847 | Red Hat Ansible Automation Platform 2 default permission

A vulnerability was found in Red Hat Ansible Automation Platform 2 . It has been declared as critical . Affected by this issue is some unknown functionality. Executing a manipulation can lead to incor…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-57851 | Red Hat Multicluster Engine for Kubernetes default permission

A vulnerability was found in Red Hat Multicluster Engine for Kubernetes . It has been rated as critical . This affects an unknown part. The manipulation leads to incorrect default permissions. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-57853 | Red Hat Web Terminal default permission

A vulnerability categorized as critical has been discovered in Red Hat Web Terminal . This vulnerability affects unknown code. The manipulation results in incorrect default permissions. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2025-57854 | Red Hat OpenShift Update Service default permission

A vulnerability identified as critical has been detected in Red Hat OpenShift Update Service . This issue affects some unknown processing. This manipulation causes incorrect default permissions. The i…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5802 | idachev mcp-javadc up to 1.2.4 HTTP Interface jarFilePath os command injection

A vulnerability labeled as critical has been found in idachev mcp-javadc up to 1.2.4 . Impacted is an unknown function of the component HTTP Interface . Such manipulation of the argument jarFilePath l…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5803 | bigsk1 openai-realtime-ui up to 188ccde27fdf3d8fab8da81f3893468f53b2797c API Proxy Endpoint server.js Query server-side request forgery

A vulnerability marked as critical has been reported in bigsk1 openai-realtime-ui up to 188ccde27fdf3d8fab8da81f3893468f53b2797c . The affected element is an unknown function of the file server.js of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5805 | code-projects Easy Blog Site up to 1.0 /users/contact_us.php Name sql injection

A vulnerability described as critical has been identified in code-projects Easy Blog Site up to 1.0 . The impacted element is an unknown function of the file /users/contact_us.php . Executing a manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5806 | code-projects Easy Blog Site 1.0 /posts/update.php postTitle cross site scripting

A vulnerability classified as problematic has been found in code-projects Easy Blog Site 1.0 . This affects an unknown function of the file /posts/update.php . The manipulation of the argument postTit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5808 | openstatusHQ openstatus up to 1b678e71a85961ae319cbb214a8eae634059330c Onboarding Endpoint client.tsx callbackURL cross site scripting

A vulnerability classified as problematic was found in openstatusHQ openstatus up to 1b678e71a85961ae319cbb214a8eae634059330c . This impacts an unknown function of the file apps/dashboard/src/app/(das…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5810 | SourceCodester Sales and Inventory System 1.0 GET Parameter /delete.php ID cross site scripting

A vulnerability, which was classified as problematic , has been found in SourceCodester Sales and Inventory System 1.0 . Affected is an unknown function of the file /delete.php of the component GET Pa…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39406 | honojs node-server up to 1.19.12 Request Path path traversal

A vulnerability, which was classified as critical , was found in honojs node-server up to 1.19.12 . Affected by this vulnerability is an unknown functionality of the component Request Path Handler . S…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39410 | honojs hono up to 4.12.11 parse input validation

A vulnerability has been found in honojs hono up to 4.12.11 and classified as problematic . Affected by this issue is the function parse . Performing a manipulation results in improper input validatio…

VulDB Read →
← Prev 141 / 261 Next →