CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5667 articles  ·  updated every 4 hours · grows forever

5667Total
4035Full Text
May 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-1677 | zephyrproject-rtos Zephyr up to 4.3 ClientHello downgrade (GHSA-23r2-m5wx-4rvq / EUVD-2026-29033)

A vulnerability identified as problematic has been detected in zephyrproject-rtos Zephyr up to 4.3 . Affected is an unknown function of the component ClientHello Handler . This manipulation causes alg…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-43500 | Linux Kernel up to 6.18.28/7.0.5/7.1-rc2 rxrpc rxrpc_input_call_event infinite loop (Nessus ID 313681)

A vulnerability labeled as critical has been found in Linux Kernel up to 6.18.28/7.0.5/7.1-rc2 . Affected by this vulnerability is the function rxrpc_input_call_event of the component rxrpc . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-5084 | ASPEER WebDyne::Session up to 2.075 on Perl rand generation of predictable numbers or identifiers

A vulnerability marked as problematic has been reported in ASPEER WebDyne::Session up to 2.075 on Perl. Affected by this issue is the function rand . Performing a manipulation results in generation of…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8288 | Open5GS up to 2.7.7 SMF src/smf/gsm-handler.c n1SmMsg denial of service (Issue 4452)

A vulnerability described as problematic has been identified in Open5GS up to 2.7.7 . This affects the function gsm_handle_pdu_session_modification_qos_flow_descriptions of the file src/smf/gsm-handle…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8289 | Open5GS up to 2.7.7 SMF /src/smf/nsmf-handler.c smf_nsmf_handle_update_data_in_vsmf qosFlowProfile denial of service (Issue 4453)

A vulnerability classified as problematic has been found in Open5GS up to 2.7.7 . This vulnerability affects the function smf_nsmf_handle_update_data_in_vsmf of the file /src/smf/nsmf-handler.c of the…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8290 | Open5GS up to 2.7.7 SMF /src/smf/nsmf-handler.c smf_nsmf_handle_update_data_in_vsmf denial of service (Issue 4454)

A vulnerability classified as problematic was found in Open5GS up to 2.7.7 . This issue affects the function smf_nsmf_handle_update_data_in_vsmf of the file /src/smf/nsmf-handler.c of the component SM…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8291 | Open5GS up to 2.7.7 NRF lib/sbi/nnrf-handler.c ogs_nnrf_nfm_handle_nf_profile denial of service (Issue 4456)

A vulnerability, which was classified as problematic , has been found in Open5GS up to 2.7.7 . Impacted is the function ogs_nnrf_nfm_handle_nf_profile of the file lib/sbi/nnrf-handler.c of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8292 | Open5GS up to 2.7.7 NRF /lib/sbi/conv.c yuarel_parse hnrf-uri denial of service (Issue 4457)

A vulnerability, which was classified as problematic , was found in Open5GS up to 2.7.7 . The affected element is the function yuarel_parse in the library /lib/sbi/conv.c of the component NRF . Such m…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8305 | OpenClaw up to 2026.1.24 bluebubbles Webhook monitor.ts handleBlueBubblesWebhookRequest improper authentication (Issue 13786)

A vulnerability has been found in OpenClaw up to 2026.1.24 and classified as critical . The impacted element is the function handleBlueBubblesWebhookRequest of the file extensions/bluebubbles/src/moni…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-6909 | ATutor 2.2.4 URL /install/upgrade.php cross site scripting (EUVD-2026-29048)

A vulnerability was found in ATutor 2.2.4 and classified as problematic . This affects an unknown function of the file /install/upgrade.php of the component URL Handler . Executing a manipulation can …

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-6956 | ATutor 2.2.4 URL cross site scripting (EUVD-2026-29049)

A vulnerability was found in ATutor 2.2.4 . It has been classified as problematic . This impacts an unknown function of the component URL Handler . The manipulation leads to cross site scripting. This…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2025-8325 | WSO2 API Control Plane Gateway API permissions (EUVD-2025-209759)

A vulnerability was found in WSO2 API Control Plane, Universal Gateway, Traffic Manager, API Manager, Carbon API Management Implementation and Carbon API Manager Rest API Utility . It has been declare…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2024-0391 | WSO2 Identity Server prior 7.0.0.131 response discrepancy

A vulnerability was found in WSO2 Identity Server, Open Banking IAM, Identity Server as Key Manager, Email OTP Authenticator and Carbon Authenticator Library for EmailOTP . It has been rated as proble…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2025-10470 | WSO2 Identity Server resource consumption (EUVD-2025-209760)

A vulnerability categorized as problematic has been discovered in WSO2 Identity Server and Carbon MagicLink Authenticator Module . Affected by this issue is some unknown functionality. Such manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2025-9973 | WSO2 Identity Server Organization Context missing initialization (EUVD-2025-209762)

A vulnerability identified as problematic has been detected in WSO2 Identity Server and Conditional Authentication User and Roles Related Functions . This affects an unknown part of the component Orga…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2025-43992 | Dell ECS/ObjectScale authentication bypass by assumed-immutable data (dsa-2026-047)

A vulnerability labeled as problematic has been found in Dell ECS and ObjectScale . This vulnerability affects unknown code. Executing a manipulation can lead to authentication bypass by assumed-immut…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-32658 | Dell Automation Platform 1.x authorization (dsa-2026-193)

A vulnerability marked as very critical has been reported in Dell Automation Platform 1.x . This issue affects some unknown processing. The manipulation leads to missing authorization. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-35157 | Dell ECS/ObjectScale csv injection (dsa-2026-047 / EUVD-2026-29045)

A vulnerability described as problematic has been identified in Dell ECS and ObjectScale . Impacted is an unknown function. The manipulation results in csv injection. This vulnerability was named CVE-…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2025-10908 | WSO2 Identity Server Magic Link/Pass Key authorization (EUVD-2025-209756)

A vulnerability classified as problematic has been found in WSO2 Identity Server and Carbon MagicLink Authenticator Module . The affected element is an unknown function of the component Magic Link/Pas…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2025-8154 | WSO2 API Manager Webhook API injection (EUVD-2025-209758)

A vulnerability classified as critical was found in WSO2 API Manager, Universal Gateway, Traffic Manager, API Control Plane, Carbon API Gateway and Carbon API Management Implementation . The impacted …

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-26946 | Dell ECS/ObjectScale privileges management (dsa-2026-047)

A vulnerability, which was classified as critical , has been found in Dell ECS and ObjectScale . This affects an unknown function. Performing a manipulation results in improper privilege management. T…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-40636 | Dell ECS/ObjectScale hard-coded credentials (dsa-2026-047 / EUVD-2026-29046)

A vulnerability, which was classified as critical , was found in Dell ECS and ObjectScale . This impacts an unknown function. Executing a manipulation can lead to hard-coded credentials. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-41951 | GROWI up to 7.5.0 path traversal (EUVD-2026-29047)

A vulnerability has been found in GROWI up to 7.5.0 and classified as critical . Affected is an unknown function. The manipulation leads to path traversal. This vulnerability is listed as CVE-2026-419…

VulDB Read →
⬡ Vulnerabilities & CVEs May 11, 2026
CVE-2026-8318 | VectifyAI PageIndex up to f50e52975313c6716c02b20a119577a1929decba PDF Table of Contents pageindex/page_index.py toc_transformer infinite loop (Issue 174)

A vulnerability was found in VectifyAI PageIndex up to f50e52975313c6716c02b20a119577a1929decba and classified as problematic . Affected by this vulnerability is the function toc_transformer of the fi…

VulDB Read →
← Prev 27 / 237 Next →