CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6368 articles  ·  updated every 4 hours · grows forever

6368Total
4066Full Text
May 24, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25247 | Like Plugin 3.0.0 on MyBB Post cross site scripting (Exploit 45179 / EUVD-2018-21746)

A vulnerability was found in Like Plugin 3.0.0 on MyBB. It has been classified as problematic . Affected by this issue is some unknown functionality of the component Post Handler . The manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2016-20051 | Snews CMS 1.7 username/password cross-site request forgery (Exploit 40705 / EDB-40705)

A vulnerability was found in Snews CMS 1.7 . It has been declared as problematic . This affects an unknown part. The manipulation of the argument username/password results in cross-site request forger…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2016-20057 | Netgate Registry Cleaner 16.0.205 NGRegClnSrv Service unquoted search path (Exploit 40539 / EDB-40539)

A vulnerability was found in Netgate Registry Cleaner 16.0.205 . It has been rated as problematic . This vulnerability affects unknown code of the component NGRegClnSrv Service . This manipulation cau…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2016-20059 | IObit Malware Fighter 4.3.1 LiveUpdateSvc Service unquoted search path (Exploit 40525 / EDB-40525)

A vulnerability categorized as problematic has been discovered in IObit Malware Fighter 4.3.1 . This issue affects some unknown processing of the component LiveUpdateSvc Service . Such manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25254 | NICO-FTP 3.0.1.19 FTP Service out-of-bounds write (Exploit 45442 / EUVD-2018-21760)

A vulnerability identified as critical has been detected in NICO-FTP 3.0.1.19 . Impacted is an unknown function of the component FTP Service . Performing a manipulation results in out-of-bounds write.…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25250 | Last User's Threads in Profile Plugin 1.2 on MyBB subject cross site scripting (Exploit 44339 / EUVD-2018-21752)

A vulnerability labeled as problematic has been found in Last User's Threads in Profile Plugin 1.2 on MyBB. The affected element is an unknown function. Executing a manipulation of the argument subjec…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25253 | Compuphase Termite 3.4 User Interface Language out-of-bounds write (Exploit 45453 / EUVD-2018-21758)

A vulnerability marked as critical has been reported in Compuphase Termite 3.4 . The impacted element is an unknown function of the component User Interface . The manipulation of the argument Language…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25248 | Downloads Plugin 2.0.3 on MyBB Parameter Title cross site scripting (Exploit 44400 / EUVD-2018-21748)

A vulnerability described as problematic has been identified in Downloads Plugin 2.0.3 on MyBB. This affects an unknown function of the component Parameter Handler . The manipulation of the argument T…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25252 | Serv-U FTP Voyager 16.2.0 Site Site Profile IP out-of-bounds write (Exploit 45527 / EUVD-2018-21756)

A vulnerability classified as critical has been found in Serv-U FTP Voyager 16.2.0 . This impacts an unknown function of the component Site Handler . This manipulation of the argument Site Profile IP …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25251 | Snes9K 0.0.9z Netplay Options Menu Socket Port Number out-of-bounds write (Exploit 45598 / EUVD-2018-21754)

A vulnerability classified as critical was found in Snes9K 0.0.9z . Affected is an unknown function of the component Netplay Options Menu . Such manipulation of the argument Socket Port Number leads t…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25255 | 10-Strike LANState 8.8 LSM Map File Parser ObjCaption out-of-bounds write (Exploit 45086 / EUVD-2018-21762)

A vulnerability, which was classified as critical , has been found in 10-Strike LANState 8.8 . Affected by this vulnerability is an unknown functionality of the component LSM Map File Parser . Perform…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2018-25249 | My Arcade Plugin 1.3 on MyBB Comment cross site scripting (Exploit 44186 / EUVD-2018-21751)

A vulnerability, which was classified as problematic , was found in My Arcade Plugin 1.3 on MyBB. Affected by this issue is some unknown functionality. Executing a manipulation of the argument Comment…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5583 | PHPGurukul Online Shopping Portal Project 2.1 Parameter /my-profile.php fullname sql injection

A vulnerability has been found in PHPGurukul Online Shopping Portal Project 2.1 and classified as critical . This affects an unknown part of the file /my-profile.php of the component Parameter Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-0626 | getwpfunnels WPFunnels Plugin up to 3.7.9 on WordPress Shortcode wpf_optin_form button_icon cross site scripting

A vulnerability classified as problematic was found in getwpfunnels WPFunnels Plugin up to 3.7.9 on WordPress. This impacts the function wpf_optin_form of the component Shortcode Handler . The manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-2936 | wp-buy Visitor Traffic Real Time Statistics Plugin up to 8.4 on WordPress Title Section page_title cross site scripting

A vulnerability, which was classified as problematic , has been found in wp-buy Visitor Traffic Real Time Statistics Plugin up to 8.4 on WordPress. Affected is an unknown function of the component Tit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5553 | itsourcecode Online Cellphone System 1.0 Parameter /cp/available.php Name sql injection

A vulnerability, which was classified as critical , was found in itsourcecode Online Cellphone System 1.0 . Affected by this vulnerability is an unknown functionality of the file /cp/available.php of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5554 | code-projects Concert Ticket Reservation System 1.0 Parameter process_search.php searching sql injection

A vulnerability has been found in code-projects Concert Ticket Reservation System 1.0 and classified as critical . Affected by this issue is some unknown functionality of the file /ConcertTicketReserv…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5555 | code-projects Concert Ticket Reservation System 1.0 Parameter login.php Email sql injection

A vulnerability was found in code-projects Concert Ticket Reservation System 1.0 and classified as critical . This affects an unknown part of the file /ConcertTicketReservationSystem-master/login.php …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5556 | badlogic pi-mono up to 0.58.4 loader.ts discoverAndLoadExtensions code injection

A vulnerability was found in badlogic pi-mono up to 0.58.4 . It has been classified as critical . This vulnerability affects the function discoverAndLoadExtensions of the file packages/coding-agent/sr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5557 | badlogic pi-mono up to 0.58.4 pi-mom Slack Bot slack.ts authentication bypass

A vulnerability was found in badlogic pi-mono up to 0.58.4 . It has been declared as critical . This issue affects some unknown processing of the file packages/mom/src/slack.ts of the component pi-mom…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5558 | PHPGurukul PHPGurukul Online Shopping Portal Project up to 2.1 Parameter /pending-orders.php ID sql injection

A vulnerability was found in PHPGurukul PHPGurukul Online Shopping Portal Project up to 2.1 . It has been rated as critical . Impacted is an unknown function of the file /pending-orders.php of the com…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5559 | AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha AST Validation sandbox.py _is_safe_ast special elements used in a template engine

A vulnerability categorized as critical has been discovered in AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha . The affected element is the function _is_safe_ast of the file sandbox.py of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5560 | PHPGurukul Online Shopping Portal Project 2.1 Parameter /payment-method.php paymethod sql injection

A vulnerability identified as critical has been detected in PHPGurukul Online Shopping Portal Project 2.1 . The impacted element is an unknown function of the file /payment-method.php of the component…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5561 | Campcodes Complete POS Management and Inventory System up to 4.0.6 Environment Variable SettingsController.php injection

A vulnerability labeled as critical has been found in Campcodes Complete POS Management and Inventory System up to 4.0.6 . This affects an unknown function of the file app/Http/Controllers/SettingsCon…

VulDB Read →
← Prev 164 / 266 Next →