CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6482 articles  ·  updated every 4 hours · grows forever

6482Total
4071Full Text
May 26, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5183 | TRENDnet TEW-713RE up to 1.02 /goform/addRouting sub_421494 dest command injection

A vulnerability categorized as critical has been discovered in TRENDnet TEW-713RE up to 1.02 . The affected element is the function sub_421494 of the file /goform/addRouting . Executing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5184 | TRENDnet TEW-713RE up to 1.02 /goform/setSysAdm admuser command injection

A vulnerability identified as critical has been detected in TRENDnet TEW-713RE up to 1.02 . The impacted element is an unknown function of the file /goform/setSysAdm . The manipulation of the argument…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5185 | Nothings stb_image up to 2.30 Multi-frame GIF File stb_image.h stbi__gif_load_next heap-based overflow

A vulnerability labeled as critical has been found in Nothings stb_image up to 2.30 . This affects the function stbi__gif_load_next of the file stb_image.h of the component Multi-frame GIF File Handle…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5186 | Nothings stb up to 2.30 Multi-frame GIF File stb_image.h stbi__load_gif_main double free

A vulnerability marked as critical has been reported in Nothings stb up to 2.30 . This impacts the function stbi__load_gif_main of the file stb_image.h of the component Multi-frame GIF File Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25230 | Eusing Free IP Switcher 3.1 Computer Name out-of-bounds write (Exploit 46382 / EUVD-2018-21719)

A vulnerability classified as critical has been found in Eusing Free IP Switcher 3.1 . This issue affects some unknown processing. Performing a manipulation of the argument Computer Name results in ou…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25231 | HeidiSQL 9.5.0.5196 file path filename control (Exploit 45806 / EUVD-2018-21720)

A vulnerability classified as problematic was found in HeidiSQL 9.5.0.5196 . Impacted is an unknown function. Executing a manipulation of the argument file path can lead to improper control of filenam…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25232 | Softros LAN Messenger 9.2 Parameter Log Files Location Custom Path improper validation of specified index, position, or offset in input (Exploit 45781 / EUVD-2018-21722)

A vulnerability, which was classified as problematic , has been found in Softros LAN Messenger 9.2 . The affected element is an unknown function of the component Parameter Handler . The manipulation o…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25234 | SmartFTP Client 9.0.2615.0 Parameter Host connection return of pointer value outside of expected range (Exploit 45759 / EUVD-2018-21726)

A vulnerability, which was classified as problematic , was found in SmartFTP Client 9.0.2615.0 . The impacted element is an unknown function of the component Parameter Handler . The manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25233 | WebDrive 18.00.5057 Connection Test Username parameters (Exploit 45761 / EUVD-2018-21724)

A vulnerability has been found in WebDrive 18.00.5057 and classified as problematic . This affects an unknown function of the component Connection Test Handler . This manipulation of the argument User…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-4266 | WatchGuard Fireware OS up to 12.11.8/2026.1.2 Access Portal deserialization (wgsa-2026-00007 / EUVD-2026-17079)

A vulnerability was found in WatchGuard Fireware OS up to 12.11.8/2026.1.2 and classified as critical . This impacts an unknown function of the component Access Portal . Such manipulation leads to des…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2019-25655 | hdd Device Monitoring Studio 8.10.00.8925 Tools Menu fabric-address map allows programming of unwarranted overlaps of protected and unprotected ranges (Exploit 46321 / EUVD-2019-20047)

A vulnerability was found in hdd Device Monitoring Studio 8.10.00.8925 . It has been classified as critical . Affected is an unknown function of the component Tools Menu . Performing a manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-4315 | WatchGuard Fireware OS up to 11.12.4+541730/12.5.17/12.11.8/2026.1.2 WebUI cross-site request forgery (wgsa-2026-00006 / EUVD-2026-17081)

A vulnerability was found in WatchGuard Fireware OS up to 11.12.4+541730/12.5.17/12.11.8/2026.1.2 . It has been declared as problematic . Affected by this vulnerability is an unknown functionality of …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25235 | NetworkActiv Web Server 4.0 Pre-Alpha-3.7.2 Set Username Interface out-of-bounds write (Exploit 45302 / EUVD-2018-21727)

A vulnerability was found in NetworkActiv Web Server 4.0 Pre-Alpha-3.7.2 . It has been rated as critical . Affected by this issue is some unknown functionality of the component Set Username Interface …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5147 | YunaiV yudao-cloud up to 2026.01 get-by-website Website sql injection

A vulnerability categorized as critical has been discovered in YunaiV yudao-cloud up to 2026.01 . This affects an unknown part of the file /admin-api/system/tenant/get-by-website . The manipulation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5148 | YunaiV yudao-cloud up to 2026.01 page toMail sql injection

A vulnerability identified as critical has been detected in YunaiV yudao-cloud up to 2026.01 . This vulnerability affects unknown code of the file /admin-api/system/mail-log/page . This manipulation o…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5150 | code-projects Accounting System 1.0 Parameter /viewin_costumer.php cos_id sql injection

A vulnerability labeled as critical has been found in code-projects Accounting System 1.0 . This issue affects some unknown processing of the file /viewin_costumer.php of the component Parameter Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5152 | Tenda CH22 1.0.0.1 /goform/createFileName formCreateFileName fileNameMit stack-based overflow

A vulnerability marked as critical has been reported in Tenda CH22 1.0.0.1 . Impacted is the function formCreateFileName of the file /goform/createFileName . Performing a manipulation of the argument …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5153 | Tenda CH22 1.0.0.1 /goform/WriteFacMac FormWriteFacMac mac command injection

A vulnerability described as critical has been identified in Tenda CH22 1.0.0.1 . The affected element is the function FormWriteFacMac of the file /goform/WriteFacMac . Executing a manipulation of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5154 | Tenda CH22 1.0.0.1/1.If Parameter /goform/setcfm fromSetCfm funcname stack-based overflow

A vulnerability classified as critical has been found in Tenda CH22 1.0.0.1/1.If . The impacted element is the function fromSetCfm of the file /goform/setcfm of the component Parameter Handler . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5155 | Tenda CH22 1.0.0.1 Parameter /goform/AdvSetWan fromAdvSetWan wanmode stack-based overflow

A vulnerability classified as critical was found in Tenda CH22 1.0.0.1 . This affects the function fromAdvSetWan of the file /goform/AdvSetWan of the component Parameter Handler . The manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5156 | Tenda CH22 1.0.0.1 Parameter /goform/QuickIndex formQuickIndex mit_linktype stack-based overflow

A vulnerability, which was classified as critical , has been found in Tenda CH22 1.0.0.1 . This impacts the function formQuickIndex of the file /goform/QuickIndex of the component Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5157 | code-projects Online Food Ordering System 1.0 Order /form/order.php cust_id cross site scripting

A vulnerability, which was classified as problematic , was found in code-projects Online Food Ordering System 1.0 . Affected is an unknown function of the file /form/order.php of the component Order M…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-3321 | ON24 Q&A Chat History answer authorization (EUVD-2026-17084)

A vulnerability has been found in ON24 Q&A Chat and classified as problematic . Affected by this vulnerability is an unknown functionality of the file console-survey/api/v1/answer/ of the component Hi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28526 | BlueKitchen BTstack up to 1.8.0 AVRCP Controller Count out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 and classified as problematic . Affected by this issue is the function LIST_PLAYER_APPLICATION_SETTING_ATTRIBUTES/LIST_PLAYER_APPLICATION_S…

VulDB Read →
← Prev 197 / 271 Next →