CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  8555 articles  ·  updated every 4 hours · grows forever

8555Total
4176Full Text
Jun 13, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35052 | man-group dtale up to 3.21.x cross site scripting (GHSA-436g-fhfc-9g5w)

A vulnerability was found in man-group dtale up to 3.21.x . It has been rated as problematic . This affects an unknown part. This manipulation causes cross site scripting. This vulnerability is handle…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35045 | TandoorRecipes recipes up to 2.6.3 batch_update authorization (GHSA-v8x3-w674-55p5)

A vulnerability categorized as critical has been discovered in TandoorRecipes recipes up to 2.6.3 . This vulnerability affects unknown code of the file /api/recipe/batch_update/ . Such manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35209 | unjs defu up to 6.1.4 prototype pollution (GHSA-737v-mqg7-c878)

A vulnerability identified as problematic has been detected in unjs defu up to 6.1.4 . This issue affects the function defu . Performing a manipulation results in improperly controlled modification of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-57835 | Modem Mobile Processor/Wearable Processor/Modem Exynos up to 9110 RRC initialization

A vulnerability labeled as critical has been found in Modem Mobile Processor, Wearable Processor and Modem Exynos up to 9110 . Impacted is an unknown function of the component RRC . Executing a manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-59440 | Samsung Mobile Processor/Wearable Processor/Modem Exynos up to 9110 USIM denial of service

A vulnerability marked as problematic has been reported in Samsung Mobile Processor, Wearable Processor and Modem Exynos up to 9110 . The affected element is an unknown function of the component USIM …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35167 | kedro-org kedro up to 1.2.x kedro/io/core.py _get_versioned_path path traversal (GHSA-6326-w46w-ppjw)

A vulnerability described as critical has been identified in kedro-org kedro up to 1.2.x . The impacted element is the function _get_versioned_path of the file kedro/io/core.py . The manipulation resu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-54324 | Samsung Mobile Processor/Wearable Processor/Modem Exynos up to 9110 NAS denial of service

A vulnerability classified as problematic has been found in Samsung Mobile Processor, Wearable Processor and Modem Exynos up to 9110 . This affects an unknown function of the component NAS . This mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-58349 | Modem Mobile Processor/Wearable Processor/Modem Exynos up to 9110 L2 denial of service

A vulnerability classified as problematic was found in Modem Mobile Processor, Wearable Processor and Modem Exynos up to 9110 . This impacts an unknown function of the component L2 . Such manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35047 | Ajax30 BraveCMS up to 2.0.5 CKEditor Endpoint unrestricted upload (GHSA-9rcc-w59j-965v)

A vulnerability, which was classified as critical , has been found in Ajax30 BraveCMS up to 2.0.5 . Affected is an unknown function of the component CKEditor Endpoint . Performing a manipulation resul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35046 | TandoorRecipes recipes up to 2.6.3 bleach.clean cross site scripting (GHSA-9hhh-g2fc-r8x2)

A vulnerability, which was classified as problematic , was found in TandoorRecipes recipes up to 2.6.3 . Affected by this vulnerability is the function bleach.clean . Executing a manipulation can lead…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-0049 | Google Android 14/15/16/16-qpr2 LocalImageResolver.java onHeaderDecoded resource consumption

A vulnerability has been found in Google Android 14/15/16/16-qpr2 and classified as problematic . Affected by this issue is the function onHeaderDecoded of the file LocalImageResolver.java . The manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35166 | gohugoio hugo up to 0.159.1 Link cross site scripting (GHSA-mcv8-8m8x-48pg)

A vulnerability was found in gohugoio hugo up to 0.159.1 and classified as problematic . This affects an unknown part of the component Link Handler . The manipulation results in cross site scripting. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35175 | Ajenti up to 2.2.14 auth_users authorization (GHSA-73jv-44c3-j5p2)

A vulnerability was found in Ajenti up to 2.2.14 . It has been classified as critical . This vulnerability affects the function auth_users . This manipulation causes missing authorization. This vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-30613 | AZIOT 1.1.9 UART Interface information disclosure

A vulnerability was found in AZIOT 1.1.9 . It has been declared as problematic . This issue affects some unknown processing of the component UART Interface . Such manipulation leads to information dis…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35173 | xenocrat chyrp-lite prior 2026.01 authorization (GHSA-8c3h-rh2j-fxr9)

A vulnerability was found in xenocrat chyrp-lite . It has been rated as problematic . Impacted is an unknown function. Performing a manipulation results in authorization bypass. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-35177 | vim up to 9.2.0279 zip.vim Plugin path traversal (GHSA-jc86-w7vm-8p24)

A vulnerability categorized as critical has been discovered in vim up to 9.2.0279 . The affected element is an unknown function of the component zip.vim Plugin . Executing a manipulation can lead to p…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-61166 | SigningHub User 10.0 URL redirect

A vulnerability identified as problematic has been detected in SigningHub User 10.0 . The impacted element is an unknown function of the component URL Handler . The manipulation leads to open redirect…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-48651 | Google Android privilege escalation

A vulnerability labeled as problematic has been found in Google Android . This affects an unknown function. The manipulation results in privilege escalation. This vulnerability was named CVE-2025-4865…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-33817 | etcd bbolt Branch Page out-of-bounds (ID 4923)

A vulnerability marked as problematic has been reported in etcd bbolt . This impacts an unknown function of the component Branch Page Handler . This manipulation causes out-of-bounds read. The identif…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] WordPress Madara - Local File Inclusion

WordPress Madara - Local File Inclusion

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] RiteCMS 3.1.0 - Authenticated Remote Code Execution

RiteCMS 3.1.0 - Authenticated Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] WBCE CMS 1.6.4 - Remote Code Execution

WBCE CMS 1.6.4 - Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] Zhiyuan OA - arbitrary file upload leading

Zhiyuan OA - arbitrary file upload leading

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] Grafana 11.6.0 - SSRF

Grafana 11.6.0 - SSRF

Exploit DB Read →
← Prev 248 / 357 Next →