CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6455 articles  ·  updated every 4 hours · grows forever

6455Total
4070Full Text
May 25, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33579 | OpenClaw up to 2026.3.27 authorization

A vulnerability was found in OpenClaw up to 2026.3.27 . It has been rated as critical . Impacted is an unknown function. This manipulation causes incorrect authorization. This vulnerability appears as…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34163 | labring FastGPT up to 4.14.7 getTools isInternalAddress server-side request forgery

A vulnerability categorized as critical has been discovered in labring FastGPT up to 4.14.7 . The affected element is the function isInternalAddress of the file /api/core/app/mcpTools/getTools . Such …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33581 | OpenClaw up to 2026.3.23 alias path traversal

A vulnerability identified as critical has been detected in OpenClaw up to 2026.3.23 . The impacted element is an unknown function. Performing a manipulation of the argument alias results in path trav…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34200 | Nhost up to 1.40.x missing authentication

A vulnerability labeled as critical has been found in Nhost up to 1.40.x . This affects an unknown function. Executing a manipulation can lead to missing authentication. This vulnerability is handled …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34165 | go-git up to 5.17.0 integer underflow

A vulnerability marked as problematic has been reported in go-git up to 5.17.0 . This impacts an unknown function. The manipulation leads to integer underflow. This vulnerability is uniquely identifie…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-20915 | Checkmk up to 2.5.0b1 cross site scripting

A vulnerability described as problematic has been identified in Checkmk up to 2.5.0b1 . Affected is an unknown function. The manipulation results in cross site scripting. This vulnerability was named …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33276 | Checkmk up to 2.5.0b1 Unified Search cross site scripting

A vulnerability classified as problematic has been found in Checkmk up to 2.5.0b1 . Affected by this vulnerability is an unknown functionality of the component Unified Search . This manipulation cause…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
FortiGate Firewalls Exploited in Wave of Attacks to Breach Networks and Steal Credentials - CyberSecurityNews

FortiGate Firewalls Exploited in Wave of Attacks to Breach Networks and Steal Credentials CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5203 | CMS Made Simple up to 2.2.22 UserGuide Module XML Import class.UserGuideImporterExporter.php _copyFilesToFolder path traversal

A vulnerability was found in CMS Made Simple up to 2.2.22 and classified as critical . This impacts the function _copyFilesToFolder in the library modules/UserGuide/lib/class.UserGuideImporterExporter…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5204 | Tenda CH22 1.0.0.1 Parameter /goform/webtypelibrary formWebTypeLibrary webSiteId stack-based overflow

A vulnerability was found in Tenda CH22 1.0.0.1 . It has been classified as critical . Affected is the function formWebTypeLibrary of the file /goform/webtypelibrary of the component Parameter Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5205 | chatwoot up to 4.11.2 Webhook API lib/webhooks/trigger.rb Webhooks::Trigger url server-side request forgery

A vulnerability was found in chatwoot up to 4.11.2 . It has been declared as critical . Affected by this vulnerability is the function Webhooks::Trigger in the library lib/webhooks/trigger.rb of the c…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5201 | gdk-pixbuf JPEG Image Loader heap-based overflow

A vulnerability was found in gdk-pixbuf . It has been rated as critical . Affected by this issue is some unknown functionality of the component JPEG Image Loader . Performing a manipulation results in…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-10551 | Dassault Systèmes ENOVIA Collaborative Industry Innovator Document Management cross site scripting

A vulnerability categorized as problematic has been discovered in Dassault Systèmes ENOVIA Collaborative Industry Innovator . This affects an unknown part of the component Document Management . Execut…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5206 | code-projects Simple Gym Management System 1.0 Payment sql injection

A vulnerability identified as critical has been detected in code-projects Simple Gym Management System 1.0 . This vulnerability affects unknown code of the component Payment Handler . The manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-41355 | Anon Proxy Server 0.104 URL /anon.php port/proxyPort cross site scripting

A vulnerability labeled as problematic has been found in Anon Proxy Server 0.104 . This issue affects some unknown processing of the file /anon.php of the component URL Handler . The manipulation of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-41356 | Anon Proxy Server 0.104 URL /diagconnect.php host cross site scripting

A vulnerability marked as problematic has been reported in Anon Proxy Server 0.104 . Impacted is an unknown function of the file /diagconnect.php of the component URL Handler . This manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-41357 | Anon Proxy Server 0.104 URL /diagdns.php host cross site scripting

A vulnerability described as problematic has been identified in Anon Proxy Server 0.104 . The affected element is an unknown function of the file /diagdns.php of the component URL Handler . Such manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-3106 | Teampass up to 3.1.5.15 Login Form redacted/index.php Username cross site scripting

A vulnerability classified as problematic has been found in Teampass up to 3.1.5.15 . The impacted element is an unknown function of the file redacted/index.php of the component Login Form . Performin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-3107 | Teampass up to 3.1.5.15 index.php?page=items cross site scripting

A vulnerability classified as problematic was found in Teampass up to 3.1.5.15 . This affects an unknown function of the file redacted/index.php?page=items . Executing a manipulation can lead to cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-10559 | Dassault Systèmes DELMIA Factory Resource Manager path traversal

A vulnerability, which was classified as critical , has been found in Dassault Systèmes DELMIA Factory Resource Manager . This impacts an unknown function. The manipulation leads to path traversal. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-10553 | Dassault Systèmes DELMIA Factory Resource Manager cross site scripting

A vulnerability, which was classified as problematic , was found in Dassault Systèmes DELMIA Factory Resource Manager . Affected is an unknown function. The manipulation results in cross site scriptin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-4317 | Umami Software application 3.0.2 Request Parameter prisma.rawQuery/prisma.queryRawUnsafe sql injection

A vulnerability has been found in Umami Software application 3.0.2 and classified as critical . Affected by this vulnerability is an unknown functionality of the component Request Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5209 | SourceCodester Leave Application System 1.0 User Management cross site scripting

A vulnerability was found in SourceCodester Leave Application System 1.0 and classified as problematic . Affected by this issue is some unknown functionality of the component User Management Handler .…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5210 | SourceCodester Leave Application System 1.0 page file inclusion

A vulnerability was found in SourceCodester Leave Application System 1.0 . It has been classified as critical . This affects an unknown part. Performing a manipulation of the argument page results in …

VulDB Read →
← Prev 191 / 269 Next →