CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6338 articles  ·  updated every 4 hours · grows forever

6338Total
4066Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-34896 | Analytify Under Construction, Coming Soon & Maintenance Mode Plugin cross-site request forgery

A vulnerability marked as problematic has been reported in Analytify Under Construction, Coming Soon & Maintenance Mode Plugin up to 2.1.1 on WordPress. Impacted is an unknown function. This manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-34904 | Analytify Simple Social Media Share Buttons Plugin up to 6.2.0 on WordPress cross-site request forgery

A vulnerability described as problematic has been identified in Analytify Simple Social Media Share Buttons Plugin up to 6.2.0 on WordPress. The affected element is an unknown function. Such manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-34903 | OceanWP Ocean Extra Plugin up to 2.5.3 on WordPress authorization

A vulnerability classified as problematic has been found in OceanWP Ocean Extra Plugin up to 2.5.3 on WordPress. The impacted element is an unknown function. Performing a manipulation results in missi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2025-31257 | Oracle Java SE 8u461-b50 JavaFX WebKitGTK memory corruption

A vulnerability classified as critical was found in Oracle Java SE 8u461-b50 . This affects an unknown function of the component JavaFX WebKitGTK . Executing a manipulation can lead to memory corrupti…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35450 | WWBN AVideo up to 26.0 FFmpeg Management Endpoints kill.ffmpeg.json.php missing authentication (GHSA-2vg4-rrx4-qcpq)

A vulnerability classified as critical was found in WWBN AVideo up to 26.0 . This affects an unknown part of the file kill.ffmpeg.json.php of the component FFmpeg Management Endpoints . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35449 | WWBN AVideo up to 26.0 die information disclosure (GHSA-hg8q-8wqr-35xx)

A vulnerability, which was classified as problematic , has been found in WWBN AVideo up to 26.0 . This vulnerability affects the function die . This manipulation causes information disclosure. The ide…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35452 | WWBN AVideo up to 26.0 CloneSite Plugin client.log.php information disclosure (GHSA-99j6-hj87-6fcf)

A vulnerability, which was classified as problematic , was found in WWBN AVideo up to 26.0 . This issue affects some unknown processing of the file plugin/CloneSite/client.log.php of the component Clo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35448 | WWBN AVideo up to 26.0 Endpoint check.php authorization (GHSA-3v7m-qg4x-58h9)

A vulnerability has been found in WWBN AVideo up to 26.0 and classified as problematic . Impacted is an unknown function of the file check.php of the component Endpoint . Performing a manipulation res…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-0740 | SaturdayDrive Ninja Forms Plugin up to 3.3.26 on WordPress handle_upload unrestricted upload (EUVD-2026-19572)

A vulnerability was found in SaturdayDrive Ninja Forms Plugin up to 3.3.26 on WordPress and classified as critical . The affected element is the function NF_FU_AJAX_Controllers_Uploads::handle_upload …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35444 | libsdl-org SDL_image up to 762 XCF Image Parser src/IMG_xcf.c do_layer_surface out-of-bounds (GHSA-gq8w-x74c-h6p7)

A vulnerability was found in libsdl-org SDL_image up to 762 . It has been classified as critical . The impacted element is the function do_layer_surface of the file src/IMG_xcf.c of the component XCF …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35454 | coder code-marketplace up to 2.4.1 VSIX File Parser path traversal (GHSA-8x9r-hvwg-c55h)

A vulnerability was found in coder code-marketplace up to 2.4.1 . It has been declared as critical . This affects an unknown function of the component VSIX File Parser . The manipulation results in pa…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-20431 | MediaTek MT8883 Base Station allocation of resources (MSV-4467 / EUVD-2026-19564)

A vulnerability was found in MediaTek MT6813, MT6815, MT6835, MT6878, MT6897, MT6899, MT6986, MT6991, MT6993, MT8668, MT8676, MT8678, MT8755, MT8775, MT8792, MT8793, MT8863, MT8873 and MT8883 . It has…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-20432 | MediaTek MT8893 Base Station out-of-bounds write (MSV-4461 / EUVD-2026-19566)

A vulnerability categorized as critical has been discovered in MediaTek MT2735, MT2737, MT6779, MT6781, MT6783, MT6785, MT6789, MT6813, MT6815, MT6833, MT6835, MT6853, MT6855, MT6873, MT6875, MT6877, …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-20433 | MediaTek MT8893 Base Station out-of-bounds write (MSV-4460 / EUVD-2026-19568)

A vulnerability identified as critical has been detected in MediaTek MT2735, MT2737, MT6813, MT6833, MT6833P, MT6835, MT6835T, MT6853, MT6853T, MT6855, MT6855T, MT6873, MT6875, MT6875T, MT6877, MT6877…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2025-13044 | IBM Concert up to 2.2.0 Temporary File generation of predictable numbers or identifiers (EUVD-2025-209253)

A vulnerability labeled as problematic has been found in IBM Concert up to 2.2.0 . Affected by this issue is some unknown functionality of the component Temporary File Handler . Executing a manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-20446 | MediaTek MT6813 sec boot out-of-bounds write (MSV-3899 / ALPS09963054)

A vulnerability marked as critical has been reported in MediaTek MT6813 . This affects an unknown part of the component sec boot . The manipulation leads to out-of-bounds write. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-39308 | MervinPraison PraisonAI up to 4.5.112 Recipe Registry path traversal

A vulnerability described as critical has been identified in MervinPraison PraisonAI up to 4.5.112 . This vulnerability affects unknown code of the component Recipe Registry Handler . The manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-39306 | MervinPraison PraisonAI up to 4.5.112 Recipe Registry Pull path traversal

A vulnerability classified as critical has been found in MervinPraison PraisonAI up to 4.5.112 . This issue affects some unknown processing of the component Recipe Registry Pull Handler . This manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
Critical flaw in Citrix NetScaler raises fears of new exploitation wave - Cybersecurity Dive

Critical flaw in Citrix NetScaler raises fears of new exploitation wave Cybersecurity Dive

Cybersecurity Dive Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CISA Alerts Defenders to Actively Exploited Fortinet Zero-Day Vulnerability - gbhackers.com

CISA Alerts Defenders to Actively Exploited Fortinet Zero-Day Vulnerability gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
Fortinet Rushes Emergency Fixes for Exploited Zero-Day - SecurityWeek

Fortinet Rushes Emergency Fixes for Exploited Zero-Day SecurityWeek

SecurityWeek Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
Android Security Update Fixes 129 Vulnerabilities, Including Actively Exploited Zero-Day - cyberpress.org

Android Security Update Fixes 129 Vulnerabilities, Including Actively Exploited Zero-Day cyberpress.org

cyberpress.org Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35213 | hapijs content up to 6.0.0 HTTP Content-Type/Content-Disposition redos

A vulnerability described as problematic has been identified in hapijs content up to 6.0.0 . Impacted is an unknown function of the component HTTP Handler . The manipulation of the argument Content-Ty…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 07, 2026
CVE-2026-35389 | bulwarkmail webmail up to 1.4.10 SMIME Signature Verification certificate validation

A vulnerability classified as critical has been found in bulwarkmail webmail up to 1.4.10 . The affected element is an unknown function of the component SMIME Signature Verification . This manipulatio…

VulDB Read →
← Prev 153 / 265 Next →