CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  6533 articles  ·  updated every 4 hours · grows forever

6533Total
4073Full Text
May 26, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2025-12886 | Laborator Oxygen Plugin up to 6.0.8 on WordPress laborator_calc_route server-side request forgery

A vulnerability categorized as critical has been discovered in Laborator Oxygen Plugin up to 6.0.8 on WordPress. Affected by this vulnerability is the function laborator_calc_route . Such manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-1679 | zephyrproject-rtos Zephyr up to 4.3 Eswifi Socket Offload Driver buffer overflow (GHSA-qx3g-5g22-fq5w)

A vulnerability identified as critical has been detected in zephyrproject-rtos Zephyr up to 4.3 . Affected by this issue is some unknown functionality of the component Eswifi Socket Offload Driver . P…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-1307 | kstover Ninja Forms Plugin up to 3.14.1 on WordPress blocks/bootstrap.php admin_enqueue_scripts information disclosure

A vulnerability labeled as problematic has been found in kstover Ninja Forms Plugin up to 3.14.1 on WordPress. This affects the function admin_enqueue_scripts of the file blocks/bootstrap.php . Execut…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-23399 | Linux Kernel up to 6.12.77/6.18.19/6.19.9/7.0-rc4 nf_tables memory leak

A vulnerability marked as critical has been reported in Linux Kernel up to 6.12.77/6.18.19/6.19.9/7.0-rc4 . This vulnerability affects unknown code of the component nf_tables . The manipulation leads …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
Critical ServiceNow AI Platform Vulnerability Enables Remote Code Execution - CyberSecurityNews

Critical ServiceNow AI Platform Vulnerability Enables Remote Code Execution CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2025-15445 | Restaurant Cafeteria Plugin up to 0.4.6 on WordPress Setting authorization

A vulnerability was found in Restaurant Cafeteria Plugin up to 0.4.6 on WordPress. It has been declared as critical . This impacts an unknown function of the component Setting Handler . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-4987 | brainstormforce SureForms Plugin up to 2.5.2 on WordPress Setting create_payment_intent form_id improper authentication

A vulnerability was found in brainstormforce SureForms Plugin up to 2.5.2 on WordPress. It has been rated as critical . Affected is the function create_payment_intent of the component Setting Handler …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2025-12886 | Laborator Oxygen Plugin up to 6.0.8 on WordPress laborator_calc_route server-side request forgery

A vulnerability categorized as critical has been discovered in Laborator Oxygen Plugin up to 6.0.8 on WordPress. Affected by this vulnerability is the function laborator_calc_route . Such manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-1679 | zephyrproject-rtos Zephyr up to 4.3 Eswifi Socket Offload Driver buffer overflow (GHSA-qx3g-5g22-fq5w)

A vulnerability identified as critical has been detected in zephyrproject-rtos Zephyr up to 4.3 . Affected by this issue is some unknown functionality of the component Eswifi Socket Offload Driver . P…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday - thehackernews.com

APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday thehackernews.com

thehackernews.com Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
Critical Android Update—Google And CISA Confirm 0-Day Device Attacks - forbes.com

Critical Android Update—Google And CISA Confirm 0-Day Device Attacks forbes.com

forbes.com Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33887 | Statamic CMS up to 5.73.15/6.7.1 Edit Permission authorization (GHSA-4hp7-3wxg-cv9q)

A vulnerability was found in Statamic CMS up to 5.73.15/6.7.1 and classified as critical . Affected by this issue is some unknown functionality of the component Edit Permission Handler . The manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33907 | ellanetworks core up to 1.6.x null pointer dereference (GHSA-55q8-2gwx-29pc)

A vulnerability was found in ellanetworks core up to 1.6.x . It has been classified as problematic . This affects an unknown part. This manipulation causes null pointer dereference. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-34226 | capricorn86 happy-dom up to 20.8.8 insertion of sensitive information into sent data (GHSA-w4gp-fjgq-3q4g)

A vulnerability was found in capricorn86 happy-dom up to 20.8.8 . It has been declared as problematic . This vulnerability affects unknown code. Such manipulation leads to insertion of sensitive infor…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33874 | Gematik app-Authenticator up to 4.15.x on macOS File os command injection (GHSA-mjgm-7hwc-qqcr)

A vulnerability was found in Gematik app-Authenticator up to 4.15.x on macOS. It has been rated as critical . This issue affects some unknown processing of the component File Handler . Performing a ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33939 | Handlebars up to 4.7.8 Template Call compile unusual condition (GHSA-9cx6-37pm-9jff)

A vulnerability categorized as problematic has been discovered in Handlebars up to 4.7.8 . Impacted is the function compile of the component Template Call Handler . Executing a manipulation can lead t…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33903 | ellanetworks core up to 1.6.x NGAP Location Report null pointer dereference (GHSA-f2f3-9cx3-wcmf)

A vulnerability identified as problematic has been detected in ellanetworks core up to 1.6.x . The affected element is an unknown function of the component NGAP Location Report Handler . The manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33904 | ellanetworks core up to 1.6.x N2 Interface deadlock (GHSA-9h59-p45g-445h)

A vulnerability labeled as problematic has been found in ellanetworks core up to 1.6.x . The impacted element is an unknown function of the component N2 Interface . The manipulation results in deadloc…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33955 | streetwriters Notesnook Web/Notesnook Desktop up to 3.3.10 cross site scripting (GHSA-45g3-cv93-q59v)

A vulnerability marked as problematic has been reported in streetwriters Notesnook Web and Notesnook Desktop up to 3.3.10 . This affects an unknown function. This manipulation causes cross site script…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-31945 | danny-avila LibreChat up to 0.8.2/0.8.2-rc2/0.8.3-rc1 DNS Resolution server-side request forgery (GHSA-rgjq-4q58-m3q8)

A vulnerability described as critical has been identified in danny-avila LibreChat up to 0.8.2/0.8.2-rc2/0.8.3-rc1 . This impacts an unknown function of the component DNS Resolution Handler . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2025-15381 | MLflow access control

A vulnerability classified as critical has been found in MLflow . Affected is an unknown function. Performing a manipulation results in improper access controls. This vulnerability is known as CVE-202…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33882 | Statamic CMS up to 5.73.15/6.7.1 Markdown Preview Endpoint improper authentication (GHSA-cvh3-23vq-w7h4)

A vulnerability classified as critical was found in Statamic CMS up to 5.73.15/6.7.1 . Affected by this vulnerability is an unknown functionality of the component Markdown Preview Endpoint . Executing…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33884 | Statamic CMS up to 5.73.15/6.7.1 authorization (GHSA-8vwx-ccf6-5wg2)

A vulnerability, which was classified as problematic , has been found in Statamic CMS up to 5.73.15/6.7.1 . Affected by this issue is some unknown functionality. The manipulation leads to incorrect au…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 28, 2026
CVE-2026-33883 | Statamic CMS up to 5.73.15/6.7.1 user:reset_password_form cross site scripting (GHSA-3jg4-p23x-p4qx)

A vulnerability, which was classified as problematic , was found in Statamic CMS up to 5.73.15/6.7.1 . This affects an unknown part. The manipulation of the argument user:reset_password_form results i…

VulDB Read →
← Prev 206 / 273 Next →