CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6338 articles  ·  updated every 4 hours · grows forever

6338Total
4066Full Text
May 23, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25253 | Compuphase Termite 3.4 User Interface Language out-of-bounds write (Exploit 45453 / EUVD-2018-21758)

A vulnerability marked as critical has been reported in Compuphase Termite 3.4 . The impacted element is an unknown function of the component User Interface . The manipulation of the argument Language…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25248 | Downloads Plugin 2.0.3 on MyBB Parameter Title cross site scripting (Exploit 44400 / EUVD-2018-21748)

A vulnerability described as problematic has been identified in Downloads Plugin 2.0.3 on MyBB. This affects an unknown function of the component Parameter Handler . The manipulation of the argument T…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25252 | Serv-U FTP Voyager 16.2.0 Site Site Profile IP out-of-bounds write (Exploit 45527 / EUVD-2018-21756)

A vulnerability classified as critical has been found in Serv-U FTP Voyager 16.2.0 . This impacts an unknown function of the component Site Handler . This manipulation of the argument Site Profile IP …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25251 | Snes9K 0.0.9z Netplay Options Menu Socket Port Number out-of-bounds write (Exploit 45598 / EUVD-2018-21754)

A vulnerability classified as critical was found in Snes9K 0.0.9z . Affected is an unknown function of the component Netplay Options Menu . Such manipulation of the argument Socket Port Number leads t…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25255 | 10-Strike LANState 8.8 LSM Map File Parser ObjCaption out-of-bounds write (Exploit 45086 / EUVD-2018-21762)

A vulnerability, which was classified as critical , has been found in 10-Strike LANState 8.8 . Affected by this vulnerability is an unknown functionality of the component LSM Map File Parser . Perform…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25249 | My Arcade Plugin 1.3 on MyBB Comment cross site scripting (Exploit 44186 / EUVD-2018-21751)

A vulnerability, which was classified as problematic , was found in My Arcade Plugin 1.3 on MyBB. Affected by this issue is some unknown functionality. Executing a manipulation of the argument Comment…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5583 | PHPGurukul Online Shopping Portal Project 2.1 Parameter /my-profile.php fullname sql injection

A vulnerability has been found in PHPGurukul Online Shopping Portal Project 2.1 and classified as critical . This affects an unknown part of the file /my-profile.php of the component Parameter Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-0626 | getwpfunnels WPFunnels Plugin up to 3.7.9 on WordPress Shortcode wpf_optin_form button_icon cross site scripting

A vulnerability classified as problematic was found in getwpfunnels WPFunnels Plugin up to 3.7.9 on WordPress. This impacts the function wpf_optin_form of the component Shortcode Handler . The manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-2936 | wp-buy Visitor Traffic Real Time Statistics Plugin up to 8.4 on WordPress Title Section page_title cross site scripting

A vulnerability, which was classified as problematic , has been found in wp-buy Visitor Traffic Real Time Statistics Plugin up to 8.4 on WordPress. Affected is an unknown function of the component Tit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5553 | itsourcecode Online Cellphone System 1.0 Parameter /cp/available.php Name sql injection

A vulnerability, which was classified as critical , was found in itsourcecode Online Cellphone System 1.0 . Affected by this vulnerability is an unknown functionality of the file /cp/available.php of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5554 | code-projects Concert Ticket Reservation System 1.0 Parameter process_search.php searching sql injection

A vulnerability has been found in code-projects Concert Ticket Reservation System 1.0 and classified as critical . Affected by this issue is some unknown functionality of the file /ConcertTicketReserv…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5555 | code-projects Concert Ticket Reservation System 1.0 Parameter login.php Email sql injection

A vulnerability was found in code-projects Concert Ticket Reservation System 1.0 and classified as critical . This affects an unknown part of the file /ConcertTicketReservationSystem-master/login.php …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5556 | badlogic pi-mono up to 0.58.4 loader.ts discoverAndLoadExtensions code injection

A vulnerability was found in badlogic pi-mono up to 0.58.4 . It has been classified as critical . This vulnerability affects the function discoverAndLoadExtensions of the file packages/coding-agent/sr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5557 | badlogic pi-mono up to 0.58.4 pi-mom Slack Bot slack.ts authentication bypass

A vulnerability was found in badlogic pi-mono up to 0.58.4 . It has been declared as critical . This issue affects some unknown processing of the file packages/mom/src/slack.ts of the component pi-mom…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5558 | PHPGurukul PHPGurukul Online Shopping Portal Project up to 2.1 Parameter /pending-orders.php ID sql injection

A vulnerability was found in PHPGurukul PHPGurukul Online Shopping Portal Project up to 2.1 . It has been rated as critical . Impacted is an unknown function of the file /pending-orders.php of the com…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5559 | AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha AST Validation sandbox.py _is_safe_ast special elements used in a template engine

A vulnerability categorized as critical has been discovered in AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha . The affected element is the function _is_safe_ast of the file sandbox.py of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5560 | PHPGurukul Online Shopping Portal Project 2.1 Parameter /payment-method.php paymethod sql injection

A vulnerability identified as critical has been detected in PHPGurukul Online Shopping Portal Project 2.1 . The impacted element is an unknown function of the file /payment-method.php of the component…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5561 | Campcodes Complete POS Management and Inventory System up to 4.0.6 Environment Variable SettingsController.php injection

A vulnerability labeled as critical has been found in Campcodes Complete POS Management and Inventory System up to 4.0.6 . This affects an unknown function of the file app/Http/Controllers/SettingsCon…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5562 | provectus kafka-ui up to 0.7.2 Endpoint testexecutions validateAccess code injection

A vulnerability marked as critical has been reported in provectus kafka-ui up to 0.7.2 . This impacts the function validateAccess of the file /api/smartfilters/testexecutions of the component Endpoint…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5563 | AutohomeCorp frostmourne up to 1.0 Alarm Preview previewData httpTest sql injection

A vulnerability described as critical has been identified in AutohomeCorp frostmourne up to 1.0 . Affected is the function httpTest of the file /api/monitor-api/alarm/previewData of the component Alar…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5564 | code-projects Simple Laundry System 1.0 Parameter /searchguest.php searchServiceId sql injection

A vulnerability classified as critical has been found in code-projects Simple Laundry System 1.0 . Affected by this vulnerability is an unknown functionality of the file /searchguest.php of the compon…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5565 | code-projects Simple Laundry System 1.0 Parameter /delmemberinfo.php userid sql injection

A vulnerability classified as critical was found in code-projects Simple Laundry System 1.0 . Affected by this issue is some unknown functionality of the file /delmemberinfo.php of the component Param…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5566 | UTT HiPER 1250GW up to 3.2.7-210907-180535 /goform/formNatStaticMap strcpy NatBind buffer overflow

A vulnerability, which was classified as critical , has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535 . This affects the function strcpy of the file /goform/formNatStaticMap . Performing a …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5567 | Tenda M3 1.0.0.10 Destination /goform/setAdvPolicyData policyType buffer overflow

A vulnerability, which was classified as critical , was found in Tenda M3 1.0.0.10 . This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Dest…

VulDB Read →
← Prev 163 / 265 Next →