CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  8586 articles  ·  updated every 4 hours · grows forever

8586Total
4177Full Text
Jun 13, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2025-48651 | Google Android privilege escalation

A vulnerability labeled as problematic has been found in Google Android . This affects an unknown function. The manipulation results in privilege escalation. This vulnerability was named CVE-2025-4865…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-33817 | etcd bbolt Branch Page out-of-bounds (ID 4923)

A vulnerability marked as problematic has been reported in etcd bbolt . This impacts an unknown function of the component Branch Page Handler . This manipulation causes out-of-bounds read. The identif…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] WordPress Madara - Local File Inclusion

WordPress Madara - Local File Inclusion

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] RiteCMS 3.1.0 - Authenticated Remote Code Execution

RiteCMS 3.1.0 - Authenticated Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] WBCE CMS 1.6.4 - Remote Code Execution

WBCE CMS 1.6.4 - Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] Zhiyuan OA - arbitrary file upload leading

Zhiyuan OA - arbitrary file upload leading

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] Grafana 11.6.0 - SSRF

Grafana 11.6.0 - SSRF

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] ASP.net 8.0.10 - Bypass

ASP.net 8.0.10 - Bypass

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[local] Desktop Window Manager Core Library 10.0.10240.0 - Privilege Escalation

Desktop Window Manager Core Library 10.0.10240.0 - Privilege Escalation

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[local] Windows Kernel - Elevation of Privilege

Windows Kernel - Elevation of Privilege

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[webapps] Fortinet FortiWeb v8.0.1 - Auth Bypass

Fortinet FortiWeb v8.0.1 - Auth Bypass

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
[local] is-localhost-ip 2.0.0 - SSRF

is-localhost-ip 2.0.0 - SSRF

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-3524 | Mattermost Legal Hold Plugin up to 1.1.4 API authorization

A vulnerability has been found in Mattermost Legal Hold Plugin up to 1.1.4 and classified as critical . Affected is an unknown function of the component API Handler . This manipulation causes missing …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-5705 | code-projects Online Hotel Booking 1.0 Booking Endpoint /booknow.php roomname cross site scripting

A vulnerability was found in code-projects Online Hotel Booking 1.0 and classified as problematic . Affected by this vulnerability is an unknown functionality of the file /booknow.php of the component…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
MSHTML Framework 0-Day Exploited by APT28 Hackers Before Feb 2026’s Patch Tuesday Update - CyberSecurityNews

MSHTML Framework 0-Day Exploited by APT28 Hackers Before Feb 2026’s Patch Tuesday Update CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-5668 | Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f add%20notice.php $_SERVER['PHP_SELF'] cross site scripting (Issue 239)

A vulnerability, which was classified as problematic , has been found in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f . This affects an unknown part of the file /…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-5669 | Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f Parameter /login.php Password sql injection (Issue 240)

A vulnerability, which was classified as critical , was found in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f . This vulnerability affects unknown code of the fil…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-5670 | Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f upload.php move_uploaded_file File unrestricted upload

A vulnerability has been found in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f and classified as critical . This issue affects the function move_uploaded_file of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-5671 | Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f Class Schedule Deletion Endpoint delete_batch.php batch cross site scripting (Issue 242)

A vulnerability was found in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f and classified as problematic . Impacted is an unknown function of the file /admin/class…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-31409 | Linux Kernel up to 7.0-rc4 ksmbd ksmbd_session_lookup_all state issue (EUVD-2026-19195)

A vulnerability was found in Linux Kernel up to 7.0-rc4 . It has been classified as critical . The affected element is the function ksmbd_session_lookup_all of the component ksmbd . The manipulation l…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-31405 | Linux Kernel up to 7.0-rc2 handle_one_ule_extension out-of-bounds (EUVD-2026-19199)

A vulnerability was found in Linux Kernel up to 7.0-rc2 . It has been declared as critical . The impacted element is the function handle_one_ule_extension . The manipulation of the argument ule_mandat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-31410 | Linux Kernel up to 6.12.77/6.18.19/6.19.9/7.0-rc4 ksmbd vfs_statfs privilege escalation (EUVD-2026-19194)

A vulnerability was found in Linux Kernel up to 6.12.77/6.18.19/6.19.9/7.0-rc4 . It has been rated as critical . This affects the function vfs_statfs of the component ksmbd . This manipulation causes …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-31408 | Linux Kernel up to 6.6.130/6.12.79/6.18.20/6.19.10/7.0-rc5 Bluetooth sco_recv_frame use after free (EUVD-2026-19196)

A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.6.130/6.12.79/6.18.20/6.19.10/7.0-rc5 . This impacts the function sco_recv_frame of the component Bluetooth . Such m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 06, 2026
CVE-2026-31406 | Linux Kernel up to 6.12.79/6.18.20/6.19.10/7.0-rc5 xfrm_nat_keepalive_net_fini state issue (EUVD-2026-19198)

A vulnerability identified as critical has been detected in Linux Kernel up to 6.12.79/6.18.20/6.19.10/7.0-rc5 . Affected is the function xfrm_nat_keepalive_net_fini . Performing a manipulation result…

VulDB Read →
← Prev 250 / 358 Next →