CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  8691 articles  ·  updated every 4 hours · grows forever

8691Total
4179Full Text
Jun 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5534 | itsourcecode Online Enrollment System 1.0 Parameter index.php?view=edit&id=10 USERID sql injection

A vulnerability categorized as critical has been discovered in itsourcecode Online Enrollment System 1.0 . This affects an unknown function of the file /sms/user/index.php?view=edit&id=10 of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5535 | FedML-AI FedML up to 0.8.9 MQTT Message FileUtils.java dataSet path traversal

A vulnerability identified as critical has been detected in FedML-AI FedML up to 0.8.9 . This impacts an unknown function of the file FileUtils.java of the component MQTT Message Handler . Performing …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5536 | FedML-AI FedML up to 0.8.9 gRPC server grpc_server.py sendMessage deserialization

A vulnerability labeled as critical has been found in FedML-AI FedML up to 0.8.9 . Affected is the function sendMessage of the file grpc_server.py of the component gRPC server . Executing a manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5537 | halex CourseSEL up to 1.1.0 HTTP GET Parameter IndexController.class.php check_sel seid sql injection

A vulnerability marked as critical has been reported in halex CourseSEL up to 1.1.0 . Affected by this vulnerability is the function check_sel of the file Apps/Index/Controller/IndexController.class.p…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5538 | QingdaoU OnlineJudge up to 1.6.1 judge_server_heartbeat Endpoint JudgeServer.service_url server-side request forgery

A vulnerability described as critical has been identified in QingdaoU OnlineJudge up to 1.6.1 . Affected by this issue is the function service_url of the file JudgeServer.service_url of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5539 | code-projects Simple Laundry System 1.0 Parameter /modifymember.php firstName cross site scripting

A vulnerability classified as problematic has been found in code-projects Simple Laundry System 1.0 . This affects an unknown part of the file /modifymember.php of the component Parameter Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5540 | code-projects Simple Laundry System 1.0 Parameter /modifymember.php firstName sql injection

A vulnerability classified as critical was found in code-projects Simple Laundry System 1.0 . This vulnerability affects unknown code of the file /modifymember.php of the component Parameter Handler .…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5541 | code-projects Simple Laundry System 1.0 Parameter /modmemberinfo.php userid cross site scripting

A vulnerability, which was classified as problematic , has been found in code-projects Simple Laundry System 1.0 . This issue affects some unknown processing of the file /modmemberinfo.php of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5542 | code-projects Simple Laundry System 1.0 Parameter /modstaffinfo.php userid cross site scripting

A vulnerability, which was classified as problematic , was found in code-projects Simple Laundry System 1.0 . Impacted is an unknown function of the file /modstaffinfo.php of the component Parameter H…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5543 | PHPGurukul User Registration & Login and User Management System yesterday-reg-users.php sql injection

A vulnerability has been found in PHPGurukul User Registration & Login and User Management System 3.3 and classified as critical . The affected element is an unknown function of the file /admin/yester…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-5544 | UTT HiPER 1250GW up to 3.2.7-210907-180535 formRemoteControl Profile stack-based overflow

A vulnerability was found in UTT HiPER 1250GW up to 3.2.7-210907-180535 and classified as critical . The impacted element is an unknown function of the file /goform/formRemoteControl . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network Platforms - The Hacker News

Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network Platforms The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2017-20237 | Belden Hirschmann Industrial HiVision up to 06.0.06/06.0.6/07.0.02/07.0.2 Master Service improper authentication

A vulnerability was found in Belden Hirschmann Industrial HiVision up to 06.0.06/06.0.6/07.0.02/07.0.2 and classified as critical . Impacted is an unknown function of the component Master Service . Su…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-25742 | Zulip up to 11.5 File Content authorization

A vulnerability was found in Zulip up to 11.5 . It has been classified as problematic . The affected element is an unknown function of the component File Content Handler . Performing a manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-35559 | Amazon Athena ODBC Driver prior 2.1.0.0 Query Processing out-of-bounds write

A vulnerability was found in Amazon Athena ODBC Driver . It has been declared as critical . The impacted element is an unknown function of the component Query Processing . Executing a manipulation can…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-35560 | Amazon Athena ODBC Driver prior 2.1.0.0 certificate validation

A vulnerability was found in Amazon Athena ODBC Driver . It has been rated as critical . This affects an unknown function. The manipulation leads to improper certificate validation. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-22661 | prompts.chat path traversal

A vulnerability categorized as critical has been discovered in prompts.chat . This impacts an unknown function. The manipulation results in path traversal. This vulnerability was named CVE-2026-22661 …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-35561 | Amazon Athena ODBC Driver prior 2.1.0.0 Browser-based Authentication authorization

A vulnerability identified as problematic has been detected in Amazon Athena ODBC Driver . Affected is an unknown function of the component Browser-based Authentication . This manipulation causes miss…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-26058 | Zulip up to 11.5 /manage.py path traversal

A vulnerability labeled as critical has been found in Zulip up to 11.5 . Affected by this vulnerability is an unknown functionality of the file /manage.py . Such manipulation leads to path traversal. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-22663 | prompts.chat API Endpoint authorization

A vulnerability marked as problematic has been reported in prompts.chat . Affected by this issue is some unknown functionality of the component API Endpoint . Performing a manipulation results in miss…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-35558 | Amazon Athena ODBC Driver prior 2.1.0.0 Authentication command injection

A vulnerability described as critical has been identified in Amazon Athena ODBC Driver . This affects an unknown part of the component Authentication . Executing a manipulation can lead to command inj…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-22665 | prompts.chat Username case sensitivity

A vulnerability classified as critical has been found in prompts.chat . This vulnerability affects unknown code of the component Username Handler . The manipulation leads to improper handling of case …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2026-22664 | prompts.chat Authorization Header token server-side request forgery

A vulnerability classified as critical was found in prompts.chat . This issue affects some unknown processing of the component Authorization Header Handler . The manipulation of the argument token res…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 04, 2026
CVE-2025-10681 | Gardyn Mobile Application/Cloud API User Permission hard-coded credentials (icsa-26-055-03)

A vulnerability, which was classified as critical , has been found in Gardyn Mobile Application and Cloud API . Impacted is an unknown function of the component User Permission Handler . This manipula…

VulDB Read →
← Prev 264 / 363 Next →