CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  8457 articles  ·  updated every 4 hours · grows forever

8457Total
4176Full Text
Jun 12, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39394 | ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 Setting Install::index crlf injection (GHSA-vfhx-5459-qhqh)

A vulnerability classified as problematic has been found in ci4-cms-erp ci4ms 0.28.5.0/0.31.0.0/0.31.2.0 . Affected by this vulnerability is the function Install::index of the component Setting Handle…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5811 | SourceCodester Online Food Ordering System 1.0 POST Parameter /Actions.php save_product price logic error

A vulnerability classified as critical was found in SourceCodester Online Food Ordering System 1.0 . Affected by this issue is the function save_product of the file /Actions.php of the component POST …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5812 | SourceCodester Pharmacy Product Management System 1.0 POST Parameter add-sales.php txtqty logic error

A vulnerability, which was classified as critical , has been found in SourceCodester Pharmacy Product Management System 1.0 . This affects an unknown part of the file add-sales.php of the component PO…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5813 | PHPGurukul Online Course Registration 3.1 /check_availability.php cid sql injection

A vulnerability, which was classified as critical , was found in PHPGurukul Online Course Registration 3.1 . This vulnerability affects unknown code of the file /check_availability.php . Executing a m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5814 | PHPGurukul Online Course Registration 3.1 check_availability.php regno sql injection

A vulnerability has been found in PHPGurukul Online Course Registration 3.1 and classified as critical . This issue affects some unknown processing of the file /admin/check_availability.php . The mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-5815 | D-Link DIR-645 1.01/1.02/1.03 /cgi-bin/hedwig.cgi hedwigcgi_main stack-based overflow

A vulnerability was found in D-Link DIR-645 1.01/1.02/1.03 and classified as critical . Impacted is the function hedwigcgi_main of the file /cgi-bin/hedwig.cgi . The manipulation results in stack-base…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-33753 | trailofbits rfc3161-client up to 1.0.5 Time-Stamp Protocol certificate validation

A vulnerability was found in trailofbits rfc3161-client up to 1.0.5 . It has been classified as critical . The affected element is an unknown function of the component Time-Stamp Protocol Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-33229 | xwiki xwiki-platform up to 17.4.7/17.10.0 Velocity Scripting API authorization

A vulnerability was found in xwiki xwiki-platform, xwiki-platform-legacy-oldcore and xwiki-platform-oldcore up to 17.4.7/17.10.0 . It has been declared as problematic . The impacted element is an unkn…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
Active Attacks Exploit Critical Ivanti EPMM Zero-Day, Corporate Networks At Risk - cyberpress.org

Active Attacks Exploit Critical Ivanti EPMM Zero-Day, Corporate Networks At Risk cyberpress.org

cyberpress.org Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39633 | ThemeGoods Grand Car Rental Plugin up to 3.6.9 on WordPress cross-site request forgery

A vulnerability labeled as problematic has been found in ThemeGoods Grand Car Rental Plugin up to 3.6.9 on WordPress. This issue affects some unknown processing. The manipulation results in cross-site…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39637 | SpabRice Mogi Plugin up to 1.2.3 on WordPress authorization

A vulnerability marked as critical has been reported in SpabRice Mogi Plugin up to 1.2.3 on WordPress. Impacted is an unknown function. This manipulation causes missing authorization. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39638 | Themeum Qubely Plugin up to 1.8.14 on WordPress cross site scripting

A vulnerability described as problematic has been identified in Themeum Qubely Plugin up to 1.8.14 on WordPress. The affected element is an unknown function. Such manipulation leads to cross site scri…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39636 | Livemesh Addons for Elementor Plugin up to 9.0 on WordPress cross site scripting

A vulnerability classified as problematic has been found in Livemesh Addons for Elementor Plugin up to 9.0 on WordPress. The impacted element is an unknown function. Performing a manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39646 | bozdoz Leaflet Map Plugin up to 3.4.4 on WordPress cross site scripting

A vulnerability classified as problematic was found in bozdoz Leaflet Map Plugin up to 3.4.4 on WordPress. This affects an unknown function. Executing a manipulation can lead to cross site scripting. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39634 | ThemeGoods Grand Portfolio Plugin up to 3.3 on WordPress cross-site request forgery

A vulnerability, which was classified as problematic , has been found in ThemeGoods Grand Portfolio Plugin up to 3.3 on WordPress. This impacts an unknown function. The manipulation leads to cross-sit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39692 | tagDiv Composer Plugin up to 5.4.3 on WordPress cross site scripting

A vulnerability, which was classified as problematic , was found in tagDiv Composer Plugin up to 5.4.3 on WordPress. Affected is an unknown function. The manipulation results in cross site scripting. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39715 | AnyTrack Affiliate Link Manager Plugin up to 1.5.5 on WordPress authorization (EUVD-2026-20427)

A vulnerability has been found in AnyTrack Affiliate Link Manager Plugin up to 1.5.5 on WordPress and classified as critical . Affected by this vulnerability is an unknown functionality. This manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39693 | fesomia FSM Custom Featured Image Caption Plugin up to 1.25.1 on WordPress cross site scripting

A vulnerability was found in fesomia FSM Custom Featured Image Caption Plugin up to 1.25.1 on WordPress and classified as problematic . Affected by this issue is some unknown functionality. Such manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39654 | Ashish Ajani WP Simple HTML Sitemap Plugin up to 3.8 on WordPress cross site scripting

A vulnerability was found in Ashish Ajani WP Simple HTML Sitemap Plugin up to 3.8 on WordPress. It has been classified as problematic . This affects an unknown part. Performing a manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39683 | Chief Gnome Garden Gnome Package Plugin up to 2.4.1 on WordPress cross site scripting

A vulnerability was found in Chief Gnome Garden Gnome Package Plugin up to 2.4.1 on WordPress. It has been declared as problematic . This vulnerability affects unknown code. Executing a manipulation c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39667 | Jongmyoung Kim Korea SNS Plugin up to 1.7.0 on WordPress cross site scripting

A vulnerability was found in Jongmyoung Kim Korea SNS Plugin up to 1.7.0 on WordPress. It has been rated as problematic . This issue affects some unknown processing. The manipulation leads to cross si…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39714 | G5Theme G5Plus April Plugin up to 6.8 on WordPress authorization (EUVD-2026-20425)

A vulnerability categorized as critical has been discovered in G5Theme G5Plus April Plugin up to 6.8 on WordPress. Impacted is an unknown function. The manipulation results in missing authorization. T…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39716 | CKThemes Flipmart Plugin up to 2.8 on WordPress authorization (EUVD-2026-20430)

A vulnerability identified as critical has been detected in CKThemes Flipmart Plugin up to 2.8 on WordPress. The affected element is an unknown function. This manipulation causes missing authorization…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 08, 2026
CVE-2026-39666 | telepathy Hello Bar Popup Builder Plugin up to 1.5.1 on WordPress cross site scripting

A vulnerability labeled as problematic has been found in telepathy Hello Bar Popup Builder Plugin up to 1.5.1 on WordPress. The impacted element is an unknown function. Such manipulation leads to cros…

VulDB Read →
← Prev 234 / 353 Next →