CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  8839 articles  ·  updated every 4 hours · grows forever

8839Total
4183Full Text
Jun 17, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 03, 2026
Google Warns of New Chrome Zero-Day Under Active Exploitation – Users Urged to Update Immediately - gbhackers.com

Google Warns of New Chrome Zero-Day Under Active Exploitation – Users Urged to Update Immediately gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34763 | Rack up to 2.2.22/3.1.20/3.2.5 Regular Expression Rack::Directory permissive regular expression (GHSA-7mqq-6cf9-v2qp)

A vulnerability classified as problematic was found in Rack up to 2.2.22/3.1.20/3.2.5 . Impacted is the function Rack::Directory of the component Regular Expression Handler . The manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34826 | Rack up to 2.2.22/3.1.20/3.2.5 Rack::Utils resource consumption (GHSA-x8cg-fq8g-mxfx)

A vulnerability, which was classified as problematic , has been found in Rack up to 2.2.22/3.1.20/3.2.5 . The affected element is the function Rack::Utils . This manipulation causes resource consumpti…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34829 | Rack up to 2.2.22/3.1.20/3.2.5 Rack::Multipart CONTENT_LENGTH resource consumption (GHSA-8vqr-qjwx-82mw)

A vulnerability, which was classified as problematic , was found in Rack up to 2.2.22/3.1.20/3.2.5 . The impacted element is the function Rack::Multipart . Such manipulation of the argument CONTENT_LE…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34831 | Rack up to 2.2.22/3.1.20/3.2.5 Response Header Rack::Files Content-Length length parameter (GHSA-q2ww-5357-x388)

A vulnerability has been found in Rack up to 2.2.22/3.1.20/3.2.5 and classified as problematic . This affects the function Rack::Files of the component Response Header Handler . Performing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-26961 | Rack up to 2.2.22/3.1.20/3.2.5 Content-Type Header Rack::Multipart interpretation conflict (GHSA-vgpv-f759-9wx3)

A vulnerability was found in Rack up to 2.2.22/3.1.20/3.2.5 and classified as problematic . This impacts the function Rack::Multipart of the component Content-Type Header Handler . Executing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34786 | Rack up to 2.2.22/3.1.20/3.2.5 Rack::Static incorrect behavior order: validate before canonicalize (GHSA-q4qf-9j86-f5mh)

A vulnerability was found in Rack up to 2.2.22/3.1.20/3.2.5 . It has been classified as problematic . Affected is the function Rack::Static . The manipulation leads to incorrect behavior order: valida…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34830 | Rack up to 2.2.22/3.1.20/3.2.5 Regular Expression Rack::Sendfile X-Accel-Mapping permissive regular expression (GHSA-qv7j-4883-hwh7)

A vulnerability was found in Rack up to 2.2.22/3.1.20/3.2.5 . It has been declared as problematic . Affected by this vulnerability is the function Rack::Sendfile of the component Regular Expression Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34877 | mbed TLS up to 2.19.0/3.6.5/4.0.0 memory corruption

A vulnerability was found in mbed TLS up to 2.19.0/3.6.5/4.0.0 . It has been rated as critical . Affected by this issue is some unknown functionality. This manipulation causes memory corruption. The i…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-35414 | OpenSSH up to 10.2 Certificate authorized_keys control flow

A vulnerability categorized as problematic has been discovered in OpenSSH up to 10.2 . This affects the function authorized_keys of the component Certificate Handler . Such manipulation leads to incor…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-32762 | Rack up to 3.1.20/3.2.5 Web Server Interface Rack::Utils interpretation conflict

A vulnerability identified as problematic has been detected in Rack up to 3.1.20/3.2.5 . This vulnerability affects the function Rack::Utils of the component Web Server Interface . Performing a manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34827 | Rack up to 3.1.20/3.2.5 Rack::Multipart algorithmic complexity

A vulnerability labeled as problematic has been found in Rack up to 3.1.20/3.2.5 . This issue affects the function Rack::Multipart . Executing a manipulation can lead to inefficient algorithmic comple…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34835 | Rack up to 3.1.20/3.2.5 Regular Expression Rack::Request improper validation of syntactic correctness of input

A vulnerability marked as problematic has been reported in Rack up to 3.1.20/3.2.5 . Impacted is the function Rack::Request of the component Regular Expression Handler . The manipulation leads to impr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-35387 | OpenSSH up to 10.2 control flow

A vulnerability described as problematic has been identified in OpenSSH up to 10.2 . The affected element is an unknown function. The manipulation results in incorrect control flow. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-35386 | OpenSSH up to 10.2 Command Line ssh_config incorrect behavior order

A vulnerability classified as problematic has been found in OpenSSH up to 10.2 . The impacted element is the function ssh_config of the component Command Line Handler . This manipulation causes incorr…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-26962 | Rack up to 3.2.5 HTTP Response Header Rack::Multipart crlf injection

A vulnerability classified as problematic was found in Rack up to 3.2.5 . This affects the function Rack::Multipart of the component HTTP Response Header Handler . Such manipulation leads to crlf inje…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34119 | TP-Link Tapo C520WS 2.6 HTTP Parser heap-based overflow

A vulnerability, which was classified as critical , has been found in TP-Link Tapo C520WS 2.6 . This impacts an unknown function of the component HTTP Parser . Performing a manipulation results in hea…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34118 | TP-Link Tapo C520WS 2.6 heap-based overflow (EUVD-2026-18426)

A vulnerability, which was classified as critical , was found in TP-Link Tapo C520WS 2.6 . Affected is an unknown function. Executing a manipulation can lead to heap-based buffer overflow. This vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34124 | TP-Link Tapo C520WS 2.6 HTTP buffer overflow

A vulnerability has been found in TP-Link Tapo C520WS 2.6 and classified as critical . Affected by this vulnerability is an unknown functionality of the component HTTP Handler . The manipulation leads…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-35388 | OpenSSH up to 10.2 Proxy-mode Multiplexing Session unprotected alternate channel

A vulnerability was found in OpenSSH up to 10.2 and classified as problematic . Affected by this issue is some unknown functionality of the component Proxy-mode Multiplexing Session Handler . The mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34121 | TP-Link Tapo C520WS 2.6 HTTP improper authentication (EUVD-2026-18432)

A vulnerability was found in TP-Link Tapo C520WS 2.6 . It has been classified as critical . This affects an unknown part of the component HTTP Handler . This manipulation causes improper authenticatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34577 | gitroomhq postiz-app up to 2.21.2 Endpoint /public/stream server-side request forgery

A vulnerability was found in gitroomhq postiz-app up to 2.21.2 . It has been declared as critical . This vulnerability affects unknown code of the file /public/stream of the component Endpoint . Such …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34122 | TP-Link Tapo C520WS 2.6 Configuration Parameter stack-based overflow (EUVD-2026-18434)

A vulnerability was found in TP-Link Tapo C520WS 2.6 . It has been rated as critical . This issue affects some unknown processing of the component Configuration Parameter Handler . Performing a manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34524 | SillyTavern up to 1.16.x Chat Endpoint secrets.json avatar_url path traversal

A vulnerability categorized as critical has been discovered in SillyTavern up to 1.16.x . Impacted is an unknown function of the file secrets.json of the component Chat Endpoint . Executing a manipula…

VulDB Read →
← Prev 277 / 369 Next →