CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6338 articles  ·  updated every 4 hours · grows forever

6338Total
4066Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-20889 | LibRaw d20315b File x3f_thumb_loader integer overflow (TALOS-2026-2358)

A vulnerability marked as critical has been reported in LibRaw d20315b . Affected by this vulnerability is the function x3f_thumb_loader of the component File Handler . The manipulation leads to integ…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-21413 | LibRaw 0b56545/d20315b File lossless_jpeg_load_raw array index (TALOS-2026-2331)

A vulnerability described as critical has been identified in LibRaw 0b56545/d20315b . Affected by this issue is the function lossless_jpeg_load_raw of the component File Handler . The manipulation res…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-24450 | LibRaw 8dc68e2 File uncompressed_fp_dng_load_raw integer overflow (TALOS-2026-2363)

A vulnerability classified as problematic has been found in LibRaw 8dc68e2 . This affects the function uncompressed_fp_dng_load_raw of the component File Handler . This manipulation causes integer ove…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-24660 | LibRaw d20315b File x3f_load_huffman integer overflow (TALOS-2026-2359)

A vulnerability classified as problematic was found in LibRaw d20315b . This vulnerability affects the function x3f_load_huffman of the component File Handler . Such manipulation leads to integer over…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-5374 | runZero Platform prior 4.0.260202.0 Organization authorization

A vulnerability, which was classified as problematic , has been found in runZero Platform . This issue affects some unknown processing of the component Organization Handler . Performing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-5372 | runZero Platform prior 4.0.260123.1 sql injection

A vulnerability, which was classified as critical , was found in runZero Platform . Impacted is an unknown function. Executing a manipulation can lead to sql injection. This vulnerability is handled a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-5373 | runZero Platform 4.0.260123.1 Organization privileges management

A vulnerability has been found in runZero Platform 4.0.260123.1 and classified as critical . The affected element is an unknown function of the component Organization Handler . The manipulation leads …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-5375 | runZero Platform 4.0.260123.1/4.0.260202.0 API Response sensitive information disclosure

A vulnerability was found in runZero Platform 4.0.260123.1/4.0.260202.0 and classified as problematic . The impacted element is an unknown function of the component API Response Handler . The manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-27314 | Apache Cassandra up to 5.0.6 ADD IDENTITY authorization

A vulnerability was found in Apache Cassandra up to 5.0.6 . It has been classified as critical . This affects an unknown function of the component ADD IDENTITY Handler . This manipulation causes autho…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-27315 | Apache Cassandra up to 4.0.19 cqlsh History information disclosure

A vulnerability was found in Apache Cassandra up to 4.0.19 . It has been declared as problematic . This impacts an unknown function of the component cqlsh History Handler . Such manipulation leads to …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-32588 | Apache Cassandra up to 4.0.19/4.1.10/5.0.6 ALTER ROLE Password denial of service

A vulnerability was found in Apache Cassandra up to 4.0.19/4.1.10/5.0.6 . It has been rated as problematic . Affected is an unknown function of the component ALTER ROLE Password Handler . Performing a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
Critical flaw in FortiClient EMS under exploitation - Cybersecurity Dive

Critical flaw in FortiClient EMS under exploitation Cybersecurity Dive

Cybersecurity Dive Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
Fortinet Issues Emergency Patch for FortiClient Zero-Day - Dark Reading

Fortinet Issues Emergency Patch for FortiClient Zero-Day Dark Reading

Dark Reading Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2025-65115 | Hitachi JP1 IT Desktop Management 2 on Windows file inclusion (sec-2026-118)

A vulnerability classified as very critical was found in Hitachi JP1 IT Desktop Management 2, Job Management Partner 1 IT Desktop Management, NETM DM Manager, DM Client, Software Distribution Manager …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-4079 | Guaven Labs SQL Chart Builder Plugin up to 2.3.7 on WordPress sql injection

A vulnerability, which was classified as critical , has been found in Guaven Labs SQL Chart Builder Plugin up to 2.3.7 on WordPress. The affected element is an unknown function. Performing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-5465 | ameliabooking Booking for Appointments and Events Calendar Plugin wp_set_password/wp_update_user authorization

A vulnerability, which was classified as critical , was found in ameliabooking Booking for Appointments and Events Calendar Plugin up to 2.1.3 on WordPress. The impacted element is the function wp_set…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-1839 | huggingface transformers up to 5.0.0rc2 trainer.py _load_rng_state deserialization

A vulnerability has been found in huggingface transformers up to 5.0.0rc2 and classified as problematic . This affects the function _load_rng_state of the file src/transformers/trainer.py . The manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2025-65116 | Hitachi JP1 IT Desktop Management 2 on Windows release of reference (sec-2026-118)

A vulnerability was found in Hitachi JP1 IT Desktop Management 2, Job Management Partner 1, IT Desktop Management, NETM DM Manager, DM Client, Software Distribution Manager and Software Distribution C…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-1114 | parisneo lollms up to 2.1.x JSON Web Token access control

A vulnerability was found in parisneo lollms up to 2.1.x . It has been classified as critical . Affected is an unknown function of the component JSON Web Token Handler . This manipulation causes impro…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2025-15611 | Popup Box Plugin up to 5.4.x on WordPress add_or_edit_popupbox cross-site request forgery

A vulnerability was found in Popup Box Plugin up to 5.4.x on WordPress. It has been declared as problematic . Affected by this vulnerability is the function add_or_edit_popupbox . Such manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-1900 | Spencer Haws Link Whisper Free Plugin up to 0.9.0 on WordPress REST Endpoint authorization

A vulnerability was found in Spencer Haws Link Whisper Free Plugin up to 0.9.0 on WordPress. It has been rated as critical . Affected by this issue is some unknown functionality of the component REST …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-28810 | Erlang OTP up to 28.4.2 inet_res/inet_db generation of predictable numbers or identifiers

A vulnerability categorized as problematic has been discovered in Erlang OTP up to 28.4.2 . This affects an unknown part of the component inet_res/inet_db . Executing a manipulation can lead to genera…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-3177 | smub Charitable Plugin up to 1.8.9.7 on WordPress Webhook payment_intent.succeeded data authenticity

A vulnerability identified as problematic has been detected in smub Charitable Plugin up to 1.8.9.7 on WordPress. This vulnerability affects the function payment_intent.succeeded of the component Webh…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-34899 | Eniture LTL Freight Quotes Plugin up to 5.2.1 on WordPress authorization

A vulnerability labeled as critical has been found in Eniture LTL Freight Quotes Plugin up to 5.2.1 on WordPress. This issue affects some unknown processing. The manipulation results in missing author…

VulDB Read →
← Prev 152 / 265 Next →