CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  8808 articles  ·  updated every 4 hours · grows forever

8808Total
4182Full Text
Jun 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-34752 | Haraka up to 3.1.3 uncaught exception (GHSA-xph3-r2jf-4vp3)

A vulnerability has been found in Haraka up to 3.1.3 and classified as problematic . This issue affects some unknown processing. Performing a manipulation results in uncaught exception. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-34742 | modelcontextprotocol go-sdk up to 1.3.x insecure default initialization of resource (GHSA-xw59-hvm2-8pj6)

A vulnerability was found in modelcontextprotocol go-sdk up to 1.3.x and classified as critical . Impacted is an unknown function. Executing a manipulation can lead to insecure default initialization …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-34833 | bulwarkmail webmail up to 1.4.9 /api/auth/session cleartext storage (GHSA-47pm-883h-885r)

A vulnerability was found in bulwarkmail webmail up to 1.4.9 . It has been classified as problematic . The affected element is an unknown function of the file /api/auth/session . The manipulation lead…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-34932 | hoppscotch 2023.4.5/2023.12.6/2026.2.0/2026.2.1 cross site scripting (GHSA-wj4r-hr4h-g98v)

A vulnerability was found in hoppscotch 2023.4.5/2023.12.6/2026.2.0/2026.2.1 . It has been declared as problematic . The impacted element is an unknown function. The manipulation results in cross site…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2025-43238 | Apple macOS up to 13.7.6/14.7.6/15.5 App integer overflow

A vulnerability was found in Apple macOS up to 13.7.6/14.7.6/15.5 . It has been rated as problematic . This affects an unknown function of the component App . This manipulation causes integer overflow…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2022-4986 | Belden Hirschmann EagleSDV up to 05.4.0/05.4.1 TLS Connection resource consumption

A vulnerability categorized as problematic has been discovered in Belden Hirschmann EagleSDV up to 05.4.0/05.4.1 . This impacts an unknown function of the component TLS Connection Handler . Such manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-35466 | CERTCC cveClient up to 1.0.23 CVE API Service cveInterface.js cross site scripting

A vulnerability identified as problematic has been detected in CERTCC cveClient up to 1.0.23 . Affected is an unknown function of the file cveInterface.js of the component CVE API Service Handler . Pe…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-34730 | copier-org copier up to 9.14.0 YAML File Parser _external_data path traversal (GHSA-hgjq-p8cr-gg4h)

A vulnerability labeled as critical has been found in copier-org copier up to 9.14.0 . Affected by this vulnerability is the function _external_data of the component YAML File Parser . Executing a man…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-35467 | CERTCC cveClient up to 1.1.14 Stored API encrypt-storage.js insufficiently protected credentials

A vulnerability marked as problematic has been reported in CERTCC cveClient up to 1.1.14 . Affected by this issue is some unknown functionality of the file encrypt-storage.js of the component Stored A…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2025-43257 | Apple macOS up to 15.5 App symlink

A vulnerability described as critical has been identified in Apple macOS up to 15.5 . This affects an unknown part of the component App . The manipulation results in symlink following. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5452 | UCC CampusConnect App up to 14.3.5 on Android campusconnect.ucc BuildConfig.java hard-coded key

A vulnerability classified as problematic has been found in UCC CampusConnect App up to 14.3.5 on Android. This vulnerability affects unknown code of the file campusconnect/BuildConfig.java of the com…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5453 | Rico só vantagem pra investir App up to 4.58.32.12421 on Android br.com.rico.mobile SegmentSettingsModule.java SEGMENT_WRITE_KEY hard-coded key

A vulnerability classified as problematic was found in Rico só vantagem pra investir App up to 4.58.32.12421 on Android. This issue affects some unknown processing of the file br/com/rico/mobile/di/Se…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5454 | GRID Organiser App up to 1.0.5 on Android co.gridapp.organiser file res/raw/app.json SegmentWriteKey hard-coded key

A vulnerability, which was classified as problematic , has been found in GRID Organiser App up to 1.0.5 on Android. Impacted is an unknown function of the file file res/raw/app.json of the component c…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5455 | Dialogue App up to 4.3.2 on Android ca.diagram.dialogue config.json SEGMENT_WRITE_KEY hard-coded key

A vulnerability, which was classified as problematic , was found in Dialogue App up to 4.3.2 on Android. The affected element is an unknown function of the file file res/raw/config.json of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5456 | Align Technology My Invisalign App 3.12.4 on Android com.aligntech.myinvisalign.emea BuildConfig.java CDAACCESS_TOKEN hard-coded key

A vulnerability has been found in Align Technology My Invisalign App 3.12.4 on Android and classified as problematic . The impacted element is an unknown function of the file com/aligntech/myinvisalig…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5457 | PropertyGuru AgentNet Singapore App up to 23.7.10 on Android com.allproperty.android.agentnet BuildConfig.java SEGMENT_ANDROID_WRITE_KEY/SEGMENT_TOS_WRITE_KEY hard-coded key

A vulnerability was found in PropertyGuru AgentNet Singapore App up to 23.7.10 on Android and classified as problematic . This affects an unknown function of the file com/allproperty/android/agentnet/…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
CVE-2026-5458 | Noelse Individuals & Pro App up to 2.1.7 on Android com.afone.noelse BuildConfig.java SEGMENT_WRITE_KEY hard-coded key

A vulnerability was found in Noelse Individuals & Pro App up to 2.1.7 on Android. It has been classified as problematic . This impacts an unknown function of the file com/reactnative/antelop/BuildConf…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 03, 2026
Google Warns of New Chrome Zero-Day Under Active Exploitation – Users Urged to Update Immediately - gbhackers.com

Google Warns of New Chrome Zero-Day Under Active Exploitation – Users Urged to Update Immediately gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34763 | Rack up to 2.2.22/3.1.20/3.2.5 Regular Expression Rack::Directory permissive regular expression (GHSA-7mqq-6cf9-v2qp)

A vulnerability classified as problematic was found in Rack up to 2.2.22/3.1.20/3.2.5 . Impacted is the function Rack::Directory of the component Regular Expression Handler . The manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34826 | Rack up to 2.2.22/3.1.20/3.2.5 Rack::Utils resource consumption (GHSA-x8cg-fq8g-mxfx)

A vulnerability, which was classified as problematic , has been found in Rack up to 2.2.22/3.1.20/3.2.5 . The affected element is the function Rack::Utils . This manipulation causes resource consumpti…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34829 | Rack up to 2.2.22/3.1.20/3.2.5 Rack::Multipart CONTENT_LENGTH resource consumption (GHSA-8vqr-qjwx-82mw)

A vulnerability, which was classified as problematic , was found in Rack up to 2.2.22/3.1.20/3.2.5 . The impacted element is the function Rack::Multipart . Such manipulation of the argument CONTENT_LE…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34831 | Rack up to 2.2.22/3.1.20/3.2.5 Response Header Rack::Files Content-Length length parameter (GHSA-q2ww-5357-x388)

A vulnerability has been found in Rack up to 2.2.22/3.1.20/3.2.5 and classified as problematic . This affects the function Rack::Files of the component Response Header Handler . Performing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-26961 | Rack up to 2.2.22/3.1.20/3.2.5 Content-Type Header Rack::Multipart interpretation conflict (GHSA-vgpv-f759-9wx3)

A vulnerability was found in Rack up to 2.2.22/3.1.20/3.2.5 and classified as problematic . This impacts the function Rack::Multipart of the component Content-Type Header Handler . Executing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34786 | Rack up to 2.2.22/3.1.20/3.2.5 Rack::Static incorrect behavior order: validate before canonicalize (GHSA-q4qf-9j86-f5mh)

A vulnerability was found in Rack up to 2.2.22/3.1.20/3.2.5 . It has been classified as problematic . Affected is the function Rack::Static . The manipulation leads to incorrect behavior order: valida…

VulDB Read →
← Prev 275 / 367 Next →