CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6401 articles  ·  updated every 4 hours · grows forever

6401Total
4068Full Text
May 25, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34562 | ci4-cms-erp ci4ms 0.28.5.0 Setting cross site scripting (GHSA-v897-c6vq-6cr3)

A vulnerability was found in ci4-cms-erp ci4ms 0.28.5.0 . It has been classified as problematic . This affects an unknown part of the component Setting Handler . Performing a manipulation results in c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34560 | ci4-cms-erp ci4ms 0.28.5.0 Logs Interface cross site scripting (GHSA-r4v5-rwr2-q7r4)

A vulnerability was found in ci4-cms-erp ci4ms 0.28.5.0 . It has been declared as problematic . This vulnerability affects unknown code of the component Logs Interface . Executing a manipulation can l…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34530 | filebrowser File Browser up to 2.62.1 Branding cross site scripting (GHSA-xfqj-3vmx-63wv)

A vulnerability was found in filebrowser File Browser up to 2.62.1 . It has been rated as problematic . This issue affects some unknown processing of the component Branding Handler . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34563 | ci4-cms-erp ci4ms 0.28.5.0 cross site scripting (GHSA-85m8-g393-jcxf)

A vulnerability categorized as problematic has been discovered in ci4-cms-erp ci4ms 0.28.5.0 . Impacted is an unknown function. The manipulation results in cross site scripting. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34564 | ci4-cms-erp ci4ms up to 0.31.0.0 Pages Section cross site scripting (GHSA-g4pp-fhgf-8653)

A vulnerability identified as problematic has been detected in ci4-cms-erp ci4ms up to 0.31.0.0 . The affected element is an unknown function of the component Pages Section . This manipulation causes …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34566 | ci4-cms-erp ci4ms 0.28.5.0 cross site scripting (GHSA-458r-h248-29c5)

A vulnerability labeled as problematic has been found in ci4-cms-erp ci4ms 0.28.5.0 . The impacted element is an unknown function. Such manipulation leads to cross site scripting. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34567 | ci4-cms-erp ci4ms 0.28.5.0 Categories Section cross site scripting (GHSA-r33w-c82v-x5v7)

A vulnerability marked as problematic has been reported in ci4-cms-erp ci4ms 0.28.5.0 . This affects an unknown function of the component Categories Section . Performing a manipulation results in cros…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34568 | ci4-cms-erp ci4ms 0.28.5.0 cross site scripting (GHSA-x7wh-g25g-53vg)

A vulnerability described as problematic has been identified in ci4-cms-erp ci4ms 0.28.5.0 . This impacts an unknown function. Executing a manipulation can lead to cross site scripting. The identifica…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34565 | ci4-cms-erp ci4ms up to 0.31.0.0 Posts Section cross site scripting (GHSA-xgh5-w62m-8mpr)

A vulnerability classified as problematic has been found in ci4-cms-erp ci4ms up to 0.31.0.0 . Affected is an unknown function of the component Posts Section . The manipulation leads to cross site scr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34569 | ci4-cms-erp ci4ms 0.28.5.0 category title cross site scripting (GHSA-fhrf-q333-82fm)

A vulnerability classified as problematic was found in ci4-cms-erp ci4ms 0.28.5.0 . Affected by this vulnerability is an unknown functionality. The manipulation of the argument category title results …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34559 | ci4-cms-erp ci4ms 0.28.5.0 tag name cross site scripting (GHSA-4333-387x-w245)

A vulnerability, which was classified as problematic , has been found in ci4-cms-erp ci4ms 0.28.5.0 . Affected by this issue is some unknown functionality. This manipulation of the argument tag name c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34571 | ci4-cms-erp ci4ms 0.28.5.0 Administrative Interface cross site scripting (GHSA-fc4p-p49v-r948)

A vulnerability, which was classified as problematic , was found in ci4-cms-erp ci4ms 0.28.5.0 . This affects an unknown part of the component Administrative Interface . Such manipulation leads to cro…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34956 | Open vSwitch up to 3.3.8/3.4.5/3.5.3/3.6.2/3.7.0 FTP alg memory corruption

A vulnerability has been found in Open vSwitch up to 3.3.8/3.4.5/3.5.3/3.6.2/3.7.0 and classified as critical . This vulnerability affects unknown code of the component FTP alg Handler . Performing a …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34526 | SillyTavern 1.13.4/1.16.0 localhost/IPv6 /api/search/visit server-side request forgery

A vulnerability was found in SillyTavern 1.13.4/1.16.0 and classified as critical . This issue affects some unknown processing of the file /api/search/visit of the component localhost/IPv6 . Executing…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
New Chrome Zero-Day Vulnerability Under Active Exploitation – Patch Now - cyberpress.org

New Chrome Zero-Day Vulnerability Under Active Exploitation – Patch Now cyberpress.org

cyberpress.org Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link - The Hacker News

OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-20090 | Cisco Enterprise NFV Infrastructure Software Web-based Management Interface cross site scripting (cisco-sa-cimc-xss-A2tkgVAB)

A vulnerability labeled as problematic has been found in Cisco Enterprise NFV Infrastructure Software, Unified Computing System and Unified Computing System E-Series Software . Affected by this vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-2265 | Replicator 1.0.5 deserialization

A vulnerability marked as critical has been reported in Replicator 1.0.5 . Affected by this issue is some unknown functionality. Performing a manipulation results in deserialization. This vulnerabilit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-33990 | docker model-runner up to 1.1.24 server-side request forgery

A vulnerability described as critical has been identified in docker model-runner up to 1.1.24 . This affects an unknown part. Executing a manipulation can lead to server-side request forgery. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-30273 | Sinaptik AI pandas-ai 3.0.0 pandasai.agent.base._execute_sql_query sql injection

A vulnerability classified as critical has been found in Sinaptik AI pandas-ai 3.0.0 . This vulnerability affects the function pandasai.agent.base._execute_sql_query . The manipulation leads to sql in…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-33978 | streetwriters notesnook up to 3.3.16 cross site scripting

A vulnerability classified as problematic was found in streetwriters notesnook up to 3.3.16 . This issue affects some unknown processing. The manipulation results in cross site scripting. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-30643 | DedeCMS 5.7.118 Module setup tag unrestricted upload

A vulnerability, which was classified as critical , has been found in DedeCMS 5.7.118 . Impacted is an unknown function of the component Module Handler . This manipulation of the argument setup tag ca…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-5360 | Free5GC 4.2.0 aper type confusion (Issue 831)

A vulnerability, which was classified as problematic , was found in Free5GC 4.2.0 . The affected element is an unknown function of the component aper . Such manipulation leads to type confusion. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 01, 2026
CVE-2026-34236 | auth0 auth0-PHP up to 8.18.x entropy (GHSA-w3wc-44p4-m4j7)

A vulnerability has been found in auth0 auth0-PHP up to 8.18.x and classified as problematic . The impacted element is an unknown function. Performing a manipulation results in insufficient entropy. T…

VulDB Read →
← Prev 180 / 267 Next →