CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5629 articles  ·  updated every 4 hours · grows forever

5629Total
4034Full Text
May 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-44204 | Shelf-nu shelf.nu up to 1.20.0 Query Parameter /assets information disclosure (GHSA-69xv-wmgg-3qp3)

A vulnerability was found in Shelf-nu shelf.nu up to 1.20.0 . It has been classified as problematic . This affects an unknown function of the file /assets of the component Query Parameter Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-42045 | LobeHub up to 2.1.47 IPC Interface index.tsx cross site scripting (GHSA-xq4x-622m-q8fq)

A vulnerability was found in LobeHub up to 2.1.47 . It has been declared as problematic . This impacts an unknown function of the file src/features/Portal/Artifacts/Body/Renderer/index.tsx of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-42141 | xibosignage xibo-cms up to 4.4.0 server-side request forgery (GHSA-fwq8-c4gw-pxmh)

A vulnerability was found in xibosignage xibo-cms up to 4.4.0 . It has been rated as critical . Affected is an unknown function. This manipulation causes server-side request forgery. This vulnerabilit…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-45391 | Cribl Edge up to 4.17.0 privilege escalation

A vulnerability was found in Cribl Edge up to 4.17.0 . It has been classified as problematic . This vulnerability affects unknown code. This manipulation causes privilege escalation. This vulnerabilit…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-45392 | Cribl Stream up to 4.17.0 privilege escalation

A vulnerability was found in Cribl Stream up to 4.17.0 . It has been declared as problematic . This issue affects some unknown processing. Such manipulation leads to privilege escalation. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-45393 | Cribl Edge up to 4.17.0 privilege escalation

A vulnerability was found in Cribl Edge up to 4.17.0 . It has been rated as problematic . Impacted is an unknown function. Performing a manipulation results in privilege escalation. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-33603 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 resource injection (adv-2026-0002)

A vulnerability categorized as problematic has been discovered in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . The affected element is an unknown function. Executing a manipulation can lead to impr…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-40020 | Open-Xchange OX Dovecot Pro up to 2.3.0 access control (adv-2026-0002)

A vulnerability identified as critical has been detected in Open-Xchange OX Dovecot Pro up to 2.3.0 . The impacted element is an unknown function. The manipulation leads to improper access controls. T…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-42006 | Open-Xchange OX Dovecot Pro up to 2.4.3/3.0.5/3.1.4 resource consumption (adv-2026-0002)

A vulnerability labeled as problematic has been found in Open-Xchange OX Dovecot Pro up to 2.4.3/3.0.5/3.1.4 . This affects an unknown function. The manipulation results in resource consumption. This …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43930 | parse-community parse-server up to 8.6.75/9.9.0-alpha.1 One-Time Password race condition (GHSA-jpq4-7fmq-q5fj)

A vulnerability marked as problematic has been reported in parse-community parse-server up to 8.6.75/9.9.0-alpha.1 . This impacts an unknown function of the component One-Time Password Handler . This …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-45091 | davidalmeidac sealed-env up to 0.1.0-alpha.3 information disclosure (GHSA-x3r2-fj3r-g5mv)

A vulnerability described as problematic has been identified in davidalmeidac sealed-env up to 0.1.0-alpha.3 . Affected is an unknown function. Such manipulation leads to information disclosure. This …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-27851 | Open-Xchange OX Dovecot Pro up to 2.4.3/3.1.4 parameter pollution (adv-2026-0002)

A vulnerability classified as problematic has been found in Open-Xchange OX Dovecot Pro up to 2.4.3/3.1.4 . Affected by this vulnerability is an unknown functionality. Performing a manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43916 | identd-ng pam_authnft prior 0.2.0-alpha Message src/peer_lookup.c peer_lookup_tcp out-of-bounds (GHSA-5jj5-hm34-78vh)

A vulnerability classified as problematic was found in identd-ng pam_authnft . Affected by this issue is the function peer_lookup_tcp of the file src/peer_lookup.c of the component Message Handler . E…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-40016 | Open-Xchange OX Dovecot Pro up to 2.3.0 ManageSieve Service resource consumption (adv-2026-0002)

A vulnerability, which was classified as problematic , has been found in Open-Xchange OX Dovecot Pro up to 2.3.0 . This affects an unknown part of the component ManageSieve Service . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-35071 | Dell PowerScale InsightIQ up to up to 6.2.0 os command injection (dsa-2026-208)

A vulnerability, which was classified as critical , was found in Dell PowerScale InsightIQ up to up to 6.2.0 . This vulnerability affects unknown code. The manipulation results in os command injection…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-40638 | Dell PowerScale InsightIQ up to 6.2.0 unnecessary privileges (dsa-2026-208)

A vulnerability has been found in Dell PowerScale InsightIQ up to 6.2.0 and classified as critical . This issue affects some unknown processing. This manipulation causes execution with unnecessary pri…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-32687 | elixir-ecto postgrex up to 0.22.1 notifications.ex handle_connect channel sql injection

A vulnerability was found in elixir-ecto postgrex up to 0.22.1 and classified as critical . Impacted is the function handle_connect in the library lib/postgrex/notifications.ex . Such manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-6866 | Schneider Electric EcoStruxure Panel Server insecure default initialization of resource (SEVD-2026-132-04)

A vulnerability was found in Schneider Electric EcoStruxure Panel Server . It has been classified as problematic . The affected element is an unknown function. Performing a manipulation results in ins…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43938 | YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 DbLogger.cs FormatStackTrace UserAgent cross site scripting

A vulnerability was found in YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 . It has been declared as problematic . The impacted element is the function FormatStackTrace of the file YAFNET.Core/Logger/…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43937 | YAFNET YetAnotherForum.NET up to 4.0.4 /Info/4 sql injection

A vulnerability was found in YAFNET YetAnotherForum.NET up to 4.0.4 . It has been rated as critical . This affects an unknown function of the file /Info/4 . The manipulation leads to sql injection. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43939 | YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 cross site scripting

A vulnerability categorized as problematic has been discovered in YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 . This impacts an unknown function. The manipulation results in cross site scripting. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43983 | pocket-id Pocket ID up to 2.5.x Refresh Token createTokenFromRefreshToken improper authorization

A vulnerability identified as critical has been detected in pocket-id Pocket ID up to 2.5.x . Affected is the function createTokenFromRefreshToken of the component Refresh Token Handler . This manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-5061 | HashiCorp Tooling up to 0.41.x link following

A vulnerability labeled as critical has been found in HashiCorp Tooling up to 0.41.x . Affected by this vulnerability is an unknown functionality. Such manipulation leads to link following. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-7431 | Ivanti Secure Access Client up to 22.8R5 permission assignment

A vulnerability marked as problematic has been reported in Ivanti Secure Access Client up to 22.8R5 . Affected by this issue is some unknown functionality. Performing a manipulation results in incorre…

VulDB Read →
← Prev 19 / 235 Next →