CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6399 articles  ·  updated every 4 hours · grows forever

6399Total
4067Full Text
May 24, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-31394 | Linux Kernel up to 6.12.77/6.18.19/6.19.9/7.0-rc4 AP_VLAN Interface ieee80211_chan_bw_change null pointer dereference

A vulnerability was found in Linux Kernel up to 6.12.77/6.18.19/6.19.9/7.0-rc4 and classified as critical . This affects the function ieee80211_chan_bw_change of the component AP_VLAN Interface . The …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-31403 | Linux Kernel up to 7.0-rc4 NFSD /proc/fs/nfs/exports exports_proc_open file descriptor consumption

A vulnerability was found in Linux Kernel up to 7.0-rc4 . It has been classified as critical . This vulnerability affects the function exports_proc_open of the file /proc/fs/nfs/exports of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-27124 | jlowin fastmcp up to 3.1.x confused deputy

A vulnerability was found in jlowin fastmcp up to 3.1.x . It has been declared as problematic . This issue affects some unknown processing. Such manipulation leads to unintended intermediary. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-35216 | Budibase up to 3.33.3 Public Webhook Endpoint os command injection (EUVD-2026-18795)

A vulnerability was found in Budibase up to 3.33.3 . It has been rated as critical . Impacted is an unknown function of the component Public Webhook Endpoint . Performing a manipulation results in os …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-25118 | immich-app immich up to 2.5.x URL Query Parameter /api/shared-links/me get request method with sensitive query strings

A vulnerability categorized as problematic has been discovered in immich-app immich up to 2.5.x . The affected element is an unknown function of the file /api/shared-links/me of the component URL Quer…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2025-68152 | Juju up to 2.9.55/3.6.18 authorization

A vulnerability identified as problematic has been detected in Juju up to 2.9.55/3.6.18 . The impacted element is an unknown function. The manipulation leads to incorrect authorization. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2025-68153 | Juju up to 2.9.55/3.6.18 authorization

A vulnerability labeled as problematic has been found in Juju up to 2.9.55/3.6.18 . This affects an unknown function. The manipulation results in incorrect authorization. This vulnerability is identif…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-25043 | Budibase up to 3.23.24 Forgot Password allocation of resources

A vulnerability marked as problematic has been reported in Budibase up to 3.23.24 . This impacts an unknown function of the component Forgot Password Handler . This manipulation causes allocation of r…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-35218 | Budibase up to 3.32.4 cross site scripting

A vulnerability described as problematic has been identified in Budibase up to 3.32.4 . Affected is an unknown function. Such manipulation leads to cross site scripting. This vulnerability is listed a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-25044 | Budibase up to 3.33.3 os command injection

A vulnerability classified as critical has been found in Budibase up to 3.33.3 . Affected by this vulnerability is an unknown functionality. Performing a manipulation results in os command injection. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-35214 | budibase up to 3.33.3 Plugin File Upload Endpoint /api/plugin/upload createTempFolder path traversal

A vulnerability classified as critical was found in budibase up to 3.33.3 . Affected by this issue is the function createTempFolder of the file /api/plugin/upload of the component Plugin File Upload E…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-31818 | budibase up to 3.33.3 Environment Variable blacklist BLACKLIST_IPS server-side request forgery

A vulnerability, which was classified as critical , has been found in budibase up to 3.33.3 . This affects the function blacklist of the component Environment Variable Handler . The manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-0545 | MLflow up to 3.0 FastAPI Job Endpoint missing authentication (EUVD-2026-18809)

A vulnerability, which was classified as critical , was found in MLflow up to 3.0 . This vulnerability affects unknown code of the component FastAPI Job Endpoint . The manipulation results in missing …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-28373 | Stackfield Desktop App up to 1.10.1 on macOS filePath path traversal (EUVD-2026-18801)

A vulnerability has been found in Stackfield Desktop App up to 1.10.1 on macOS and classified as critical . This issue affects some unknown processing. This manipulation of the argument filePath cause…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-28754 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Distribution Lists Report cross site scripting

A vulnerability classified as problematic was found in Zoho ManageEngine Exchange Reporter Plus up to 5801 . This affects an unknown part of the component Distribution Lists Report . Such manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-28756 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Distribution Groups Report cross site scripting

A vulnerability, which was classified as problematic , has been found in Zoho ManageEngine Exchange Reporter Plus up to 5801 . This vulnerability affects unknown code of the component Distribution Gro…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-4108 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Non-Owner Mailbox Permission Report cross site scripting

A vulnerability, which was classified as problematic , was found in Zoho ManageEngine Exchange Reporter Plus up to 5801 . This issue affects some unknown processing of the component Non-Owner Mailbox …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-28703 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Mails Exchanged Between Users Report cross site scripting

A vulnerability has been found in Zoho ManageEngine Exchange Reporter Plus up to 5801 and classified as problematic . Impacted is an unknown function of the component Mails Exchanged Between Users Rep…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-3879 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Equipment Mailbox Details Report cross site scripting

A vulnerability was found in Zoho ManageEngine Exchange Reporter Plus up to 5801 and classified as problematic . The affected element is an unknown function of the component Equipment Mailbox Details …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-3880 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Public Folder Client Permissions Report cross site scripting

A vulnerability was found in Zoho ManageEngine Exchange Reporter Plus up to 5801 . It has been classified as problematic . The impacted element is an unknown function of the component Public Folder Cl…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-4107 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Folder Message Report cross site scripting

A vulnerability was found in Zoho ManageEngine Exchange Reporter Plus up to 5801 . It has been declared as problematic . This affects an unknown function of the component Folder Message Report . Such …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-27655 | Zoho ManageEngine Exchange Reporter Plus up to 5801 Permissions Based on Mailboxes Report cross site scripting

A vulnerability was found in Zoho ManageEngine Exchange Reporter Plus up to 5801 . It has been rated as problematic . This impacts an unknown function of the component Permissions Based on Mailboxes R…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5484 | BookStackApp BookStack up to 26.03 Chapter Export ExportFormatter.php chapterToMarkdown pages access control

A vulnerability categorized as problematic has been discovered in BookStackApp BookStack up to 26.03 . Affected is the function chapterToMarkdown of the file app/Exports/ExportFormatter.php of the com…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-23422 | Linux Kernel up to 7.0-rc2 dpaa2-switch out-of-bounds

A vulnerability identified as critical has been detected in Linux Kernel up to 7.0-rc2 . Affected by this vulnerability is an unknown functionality of the component dpaa2-switch . The manipulation lea…

VulDB Read →
← Prev 171 / 267 Next →