CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10315 articles  ·  updated every 4 hours · grows forever

10315Total
4237Full Text
Jul 01, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-48706 | envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 buffer overflow (GHSA-7q3f-gwg7-j8g4)

A vulnerability classified as critical has been found in envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 . Affected by this issue is some unknown functionality. Performing a manipulation results i…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-47204 | envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 Connect Protocol null pointer dereference (GHSA-3jxh-8p6x-7pf6)

A vulnerability classified as problematic was found in envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 . This affects an unknown part of the component Connect Protocol . Executing a manipulation c…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-47207 | envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 ProcessingResponse use after free (GHSA-68cv-hq5f-g6xv)

A vulnerability, which was classified as critical , has been found in envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 . This vulnerability affects unknown code of the component ProcessingResponse …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-47221 | envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 PATCH Request null pointer dereference (GHSA-rcff-gw58-pjpr)

A vulnerability, which was classified as problematic , was found in envoyproxy envoy up to 1.35.12/1.36.8/1.37.4/1.38.2 . This issue affects some unknown processing of the component PATCH Request Hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-47778 | envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 Helper Utility c_str null byte or nul character (GHSA-f8x4-rw5x-f3r7)

A vulnerability has been found in envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 and classified as problematic . Impacted is the function c_str of the component Helper Utility . This manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-48042 | envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 JSON Object excessively deep nesting (GHSA-f24p-rxw2-g6pv)

A vulnerability was found in envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 and classified as problematic . The affected element is an unknown function of the component JSON Object Handler . Such…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-48044 | envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 data amplification (GHSA-m3p9-47wh-88wg)

A vulnerability was found in envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 . It has been classified as problematic . The impacted element is an unknown function. Performing a manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-48743 | envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 request smuggling (GHSA-8phg-2h2q-jgxf)

A vulnerability was found in envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 . It has been declared as problematic . This affects an unknown function. Executing a manipulation can lead to http req…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-13372 | Devolutions Remote Desktop Manager up to 2026.2.10 Powershell Script name resolution (DEVO-2026-0021)

A vulnerability was found in Devolutions Remote Desktop Manager up to 2026.2.10 . It has been rated as critical . This impacts an unknown function of the component Powershell Script Handler . The mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-47220 | envoyproxy envoy up to 1.37.4/1.38.2 Host Header null pointer dereference

A vulnerability categorized as problematic has been discovered in envoyproxy envoy up to 1.37.4/1.38.2 . Affected is an unknown function of the component Host Header Handler . The manipulation results…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-48497 | envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 incorrect operator (GHSA-j6g2-wf95-q66q)

A vulnerability identified as problematic has been detected in envoyproxy envoy up to 1.35.10/1.36.6/1.37.2/1.38.0 . Affected by this vulnerability is an unknown functionality. This manipulation cause…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-47205 | envoyproxy envoy up to 1.36.8/1.37.4/1.38.2 Protected WebSocket Endpoint doDeferredStreamDestroy use after free

A vulnerability labeled as critical has been found in envoyproxy envoy up to 1.36.8/1.37.4/1.38.2 . Affected by this issue is the function ConnectionManagerImpl::doDeferredStreamDestroy of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-54753 | nrwl nx up to 22.7.1/23.0.0-beta.1 HELP Command routine (GHSA-g2r8-wvmj-jf5w)

A vulnerability marked as problematic has been reported in nrwl nx up to 22.7.1/23.0.0-beta.1 . This affects an unknown part of the component HELP Command Handler . Performing a manipulation results i…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and More - The Hacker News

⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and More The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-57918 | sahlberg libnfs up to 6.0.2 NFS lib/socket.c integer underflow (EUVD-2026-39647)

A vulnerability was found in sahlberg libnfs up to 6.0.2 . It has been rated as problematic . Affected by this vulnerability is an unknown functionality in the library lib/socket.c of the component NF…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-6658 | jupyter up to 7.17.0 cross site scripting

A vulnerability labeled as problematic has been found in jupyter up to 7.17.0 . This vulnerability affects unknown code. Executing a manipulation can lead to cross site scripting. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-57912 | Johnson & Johnson Campus Recruiting prior 2025-10-31 client-side enforcement of server-side security

A vulnerability marked as problematic has been reported in Johnson & Johnson Campus Recruiting . This issue affects some unknown processing. The manipulation leads to client-side enforcement of server…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-57913 | Johnson & Johnson Audit Tracking Management System prior 2026-04-21 client-side enforcement of server-side security

A vulnerability described as problematic has been identified in Johnson & Johnson Audit Tracking Management System . Impacted is an unknown function. The manipulation results in client-side enforcemen…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-57914 | Apache Kerby up to 2.1.1 ASN1 Structure Parser resource consumption (EUVD-2026-39648)

A vulnerability classified as problematic has been found in Apache Kerby up to 2.1.1 . The affected element is an unknown function of the component ASN1 Structure Parser . This manipulation causes res…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-57915 | Apache Kerby up to 2.1.1 Kerberos improper authentication

A vulnerability classified as critical was found in Apache Kerby up to 2.1.1 . The impacted element is an unknown function of the component Kerberos . Such manipulation leads to improper authenticatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-57940 | danpros HTMLy 3.1.1 URL system/admin/admin.php get_feed feed_url server-side request forgery

A vulnerability, which was classified as critical , has been found in danpros HTMLy 3.1.1 . This affects the function get_feed of the file system/admin/admin.php of the component URL Handler . Perform…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-40711 | Dell Container Storage Modules up to 2.16.0 os command injection (dsa-2026-259)

A vulnerability, which was classified as critical , was found in Dell Container Storage Modules up to 2.16.0 . This impacts an unknown function. Executing a manipulation can lead to os command injecti…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-13426 | Mattermost Go Module up to 0.1.21 public path traversal

A vulnerability has been found in Mattermost Go Module up to 0.1.21 and classified as critical . Affected is an unknown function of the file /mattermost/mattermost/server/public . The manipulation lea…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 26, 2026
CVE-2026-53914 | JetBrains Kotlin up to 2.4.19 deserialization

A vulnerability was found in JetBrains Kotlin up to 2.4.19 and classified as problematic . Affected by this vulnerability is an unknown functionality. The manipulation results in deserialization. This…

VulDB Read →
← Prev 18 / 430 Next →