CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6455 articles  ·  updated every 4 hours · grows forever

6455Total
4070Full Text
May 25, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33073 | Discourse up to 2026.1.2/2026.2.1 information disclosure

A vulnerability was found in Discourse up to 2026.1.2/2026.2.1 and classified as problematic . This impacts an unknown function. Executing a manipulation can lead to information disclosure. The identi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-24029 | PowerDNS DNSdist up to 1.9.11/2.0.2 early_acl_drop Remote Code Execution

A vulnerability described as critical has been identified in PowerDNS DNSdist up to 1.9.11/2.0.2 . This issue affects the function early_acl_drop . Such manipulation leads to Remote Code Execution. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34156 | NocoBase up to 2.0.27 dynamically-managed code resources

A vulnerability classified as critical has been found in NocoBase up to 2.0.27 . Impacted is an unknown function. Performing a manipulation results in dynamically-managed code resources. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-3308 | Artifex MuPDF up to 1.27.0 pdf-image.c pdf_load_image_imp integer overflow

A vulnerability classified as critical was found in Artifex MuPDF up to 1.27.0 . The affected element is the function pdf_load_image_imp of the file pdf-image.c . Executing a manipulation can lead to …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-30310 | Sixth Terminal Command injection

A vulnerability, which was classified as problematic , has been found in Sixth . The impacted element is an unknown function of the component Terminal Command Handler . The manipulation leads to injec…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34155 | rauc up to 1.15.1 unsigned to signed conversion error

A vulnerability, which was classified as very critical , was found in rauc up to 1.15.1 . This affects an unknown function. The manipulation results in unsigned to signed conversion error. This vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5235 | Axiomatic Bento4 up to 1.6.0-641 MP4 File Parser Ap4Dac4Atom.cpp AP4_BitReader::ReadCache heap-based overflow (Issue 1058)

A vulnerability has been found in Axiomatic Bento4 up to 1.6.0-641 and classified as critical . This impacts the function AP4_BitReader::ReadCache of the file Ap4Dac4Atom.cpp of the component MP4 File…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5236 | Axiomatic Bento4 up to 1.6.0-641 DSI v1 Parser Ap4Dac4Atom.cpp AP4_BitReader::SkipBits n_presentations heap-based overflow (Issue 1059)

A vulnerability was found in Axiomatic Bento4 up to 1.6.0-641 and classified as critical . Affected is the function AP4_BitReader::SkipBits of the file Ap4Dac4Atom.cpp of the component DSI v1 Parser .…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5237 | itsourcecode Payroll Management System 1.0 Parameter /manage_user.php ID sql injection

A vulnerability was found in itsourcecode Payroll Management System 1.0 . It has been classified as critical . Affected by this vulnerability is an unknown functionality of the file /manage_user.php o…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5238 | itsourcecode Payroll Management System 1.0 Parameter /view_employee.php ID sql injection

A vulnerability was found in itsourcecode Payroll Management System 1.0 . It has been declared as critical . Affected by this issue is some unknown functionality of the file /view_employee.php of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5240 | code-projects BloodBank Managing System 1.0 /admin_state.php statename cross site scripting

A vulnerability was found in code-projects BloodBank Managing System 1.0 . It has been rated as problematic . This affects an unknown part of the file /admin_state.php . The manipulation of the argume…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34172 | Giskard-AI giskard-oss up to 0.3.3/1.0.2 Name Message ChatWorkflow.chat special elements used in a template engine

A vulnerability categorized as critical has been discovered in Giskard-AI giskard-oss up to 0.3.3/1.0.2 . This vulnerability affects the function ChatWorkflow.chat of the component Name Message Handle…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-30311 | Ridvay Code Shell Command os command injection

A vulnerability identified as critical has been detected in Ridvay Code . This issue affects some unknown processing of the component Shell Command Handler . This manipulation causes os command inject…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-30312 | DSAI-Cline os command injection

A vulnerability labeled as critical has been found in DSAI-Cline . Impacted is an unknown function. Such manipulation leads to os command injection. This vulnerability is uniquely identified as CVE-20…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-30309 | InfCode code injection

A vulnerability marked as critical has been reported in InfCode . The affected element is an unknown function. Performing a manipulation results in code injection. This vulnerability was named CVE-202…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33578 | OpenClaw up to 2026.3.27 authorization

A vulnerability described as critical has been identified in OpenClaw up to 2026.3.27 . The impacted element is an unknown function. Executing a manipulation can lead to incorrect authorization. The i…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33580 | OpenClaw up to 2026.3.27 Webhook Endpoint excessive authentication

A vulnerability classified as problematic has been found in OpenClaw up to 2026.3.27 . This affects an unknown function of the component Webhook Endpoint . The manipulation leads to improper restricti…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34209 | wevm mppx up to 0.4.10 authentication replay

A vulnerability classified as critical was found in wevm mppx up to 0.4.10 . This impacts an unknown function. The manipulation results in authentication bypass by capture-replay. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34210 | wevm mppx up to 0.4.10 comparison

A vulnerability, which was classified as problematic , has been found in wevm mppx up to 0.4.10 . Affected is an unknown function. This manipulation causes incorrect comparison. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33576 | OpenClaw up to 2026.3.27 authorization

A vulnerability, which was classified as critical , was found in OpenClaw up to 2026.3.27 . Affected by this vulnerability is an unknown functionality. Such manipulation leads to incorrect authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33577 | OpenClaw up to 2026.3.27 authorization

A vulnerability has been found in OpenClaw up to 2026.3.27 and classified as critical . Affected by this issue is some unknown functionality. Performing a manipulation results in incorrect authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33762 | go-git up to 5.17.0 array index

A vulnerability was found in go-git up to 5.17.0 and classified as problematic . This affects an unknown part. Executing a manipulation can lead to improper validation of array index. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34202 | ZcashFoundation zebra/zebra-chain prior 4.3.0 Transaction ID special elements used in a template engine

A vulnerability was found in ZcashFoundation zebra and zebra-chain . It has been classified as problematic . This vulnerability affects unknown code of the component Transaction ID Handler . The manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34162 | labring FastGPT up to 4.14.7 Endpoint runTool missing authentication

A vulnerability was found in labring FastGPT up to 4.14.7 . It has been declared as critical . This issue affects some unknown processing of the file /api/core/app/httpTools/runTool of the component E…

VulDB Read →
← Prev 190 / 269 Next →