CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10213 articles  ·  updated every 4 hours · grows forever

10213Total
4232Full Text
Jun 30, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57957 | Papermark up to 0.22.0 TUS-based Viewer Upload Endpoint cross-domain policy (Issue 2178)

A vulnerability was found in Papermark up to 0.22.0 . It has been classified as problematic . This affects an unknown part of the component TUS-based Viewer Upload Endpoint . Performing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57959 | HiEventsDev Hi.Events up to 1.9.0 toctou (Issue 1223)

A vulnerability was found in HiEventsDev Hi.Events up to 1.9.0 . It has been declared as problematic . This vulnerability affects unknown code. Executing a manipulation can lead to time-of-check time-…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57949 | Yunai ruoyi-vue-pro up to 2026.05 CRM Module get authorization (Issue 1159)

A vulnerability was found in Yunai ruoyi-vue-pro up to 2026.05 . It has been rated as problematic . This issue affects some unknown processing of the file /admin-api/crm/follow-up-record/get of the co…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57951 | its-a-feature Mythic prior 3.4.0.60 authorization (ID 563)

A vulnerability categorized as problematic has been discovered in its-a-feature Mythic . Impacted is an unknown function. The manipulation results in incorrect authorization. This vulnerability is ide…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57954 | yahoo elide up to 7.1.17 Expressions authorization (Issue 3415)

A vulnerability identified as problematic has been detected in yahoo elide up to 7.1.17 . The affected element is an unknown function of the component Expressions Handler . This manipulation causes mi…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57946 | iv-org Invidious up to 25.x RSS Feed Playlist Endpoint authorization (ID 5775)

A vulnerability labeled as problematic has been found in iv-org Invidious up to 25.x . The impacted element is an unknown function of the component RSS Feed Playlist Endpoint . Such manipulation leads…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57945 | PhotoPrism prior 260601-a7d098548 PUT Users API Endpoint authorization (ID 5619 / 260601-a7d098548)

A vulnerability marked as problematic has been reported in PhotoPrism . This affects an unknown function of the component PUT Users API Endpoint . Performing a manipulation results in authorization by…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57956 | signoz up to 0.130.1 Organization authorization (Issue 11830)

A vulnerability described as problematic has been identified in signoz up to 0.130.1 . This impacts an unknown function of the component Organization Handler . Executing a manipulation can lead to aut…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57960 | HiEventsDev Hi.Events up to 1.9.0 check-in-lists private personal information (Issue 1224)

A vulnerability classified as problematic has been found in HiEventsDev Hi.Events up to 1.9.0 . Affected is an unknown function of the file /api/public/check-in-lists . The manipulation leads to expos…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57958 | inovector mixpost up to 2.6.0 cross site scripting (Issue 204)

A vulnerability classified as problematic was found in inovector mixpost up to 2.6.0 . Affected by this vulnerability is an unknown functionality. The manipulation results in cross site scripting. Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57947 | pinpoint-apm pinpoint up to 3.1.0 Webhook Registration Endpoint server-side request forgery (Issue 13857)

A vulnerability, which was classified as critical , has been found in pinpoint-apm pinpoint up to 3.1.0 . Affected by this issue is some unknown functionality of the component Webhook Registration End…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57955 | signoz up to 0.130.1 url sql injection (Issue 11747)

A vulnerability, which was classified as critical , was found in signoz up to 0.130.1 . This affects the function url . Such manipulation leads to sql injection. This vulnerability is traded as CVE-20…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57948 | pinpoint-apm pinpoint up to 3.1.0 Session Cookie cookie httponly flag (Issue 13858)

A vulnerability has been found in pinpoint-apm pinpoint up to 3.1.0 and classified as problematic . This vulnerability affects unknown code of the component Session Cookie Handler . Performing a manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13595 | Red Hat libblkid use after free (WID-SEC-2026-2121)

A vulnerability was found in Red Hat and classified as critical . This affects an unknown function of the component libblkid . Executing a manipulation can lead to use after free. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-9267 | Eclipse tinydtls Certificate check_server_certificate out-of-bounds (EUVD-2026-40054)

A vulnerability was found in Eclipse tinydtls . It has been classified as problematic . This impacts the function check_server_certificate of the component Certificate Handler . The manipulation leads…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13601 | Yelp protection mechanism (EUVD-2026-40066)

A vulnerability was found in Yelp . It has been declared as problematic . Affected is an unknown function. The manipulation results in protection mechanism failure. This vulnerability is cataloged as …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57676 | Matteo Manna Simple User Avatar Plugin up to 4.9 on WordPress authorization

A vulnerability was found in Matteo Manna Simple User Avatar Plugin up to 4.9 on WordPress. It has been rated as problematic . Affected by this vulnerability is an unknown functionality. This manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57966 | spice-vdagent path traversal

A vulnerability categorized as critical has been discovered in spice-vdagent . Affected by this issue is some unknown functionality. Such manipulation leads to path traversal. This vulnerability is do…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-25707 | SUSE libzypp up to 17.38.9 path traversal (EUVD-2026-40062)

A vulnerability identified as critical has been detected in SUSE libzypp up to 17.38.9 . This affects an unknown part. Performing a manipulation results in relative path traversal. This vulnerability …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57346 | Epiphyt Embed Privacy Plugin up to 1.12.3 on WordPress path traversal (EUVD-2026-40060)

A vulnerability labeled as critical has been found in Epiphyt Embed Privacy Plugin up to 1.12.3 on WordPress. This vulnerability affects unknown code. Executing a manipulation can lead to path travers…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-41992 | GNU gzip up to 1.14 LZH Decoder buffer over-read (EUVD-2026-40069)

A vulnerability marked as problematic has been reported in GNU gzip up to 1.14 . This issue affects some unknown processing of the component LZH Decoder . The manipulation leads to buffer over-read. T…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-41991 | GNU gzip up to 1.14 Gzexe Utility temp file (EUVD-2026-40068)

A vulnerability described as problematic has been identified in GNU gzip up to 1.14 . Impacted is an unknown function of the component Gzexe Utility . The manipulation results in insecure temporary fi…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-22078 | OPPO O+ Connect 16.0.33 IPC Service privileges assignment (EUVD-2026-40052)

A vulnerability classified as problematic has been found in OPPO O+ Connect 16.0.33 . The affected element is an unknown function of the component IPC Service . This manipulation causes incorrect priv…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-57965 | Red Hat spice-vdagent integer overflow (EUVD-2026-40049)

A vulnerability classified as problematic was found in Red Hat spice-vdagent . The impacted element is an unknown function. Such manipulation leads to integer overflow. This vulnerability is uniquely …

VulDB Read →
← Prev 3 / 426 Next →