CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  15861 articles  ·  updated every 4 hours · grows forever

15861Total
4381Full Text
Aug 14, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-72855 | Budibase up to 3.39.x OpenAPI Query Import server-side request forgery

A vulnerability classified as critical has been found in Budibase up to 3.39.x . Affected is an unknown function of the component OpenAPI Query Import . The manipulation leads to server-side request f…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-72856 | Budibase up to 3.39.x owner improper authorization

A vulnerability classified as critical was found in Budibase up to 3.39.x . Affected by this vulnerability is an unknown functionality of the file /api/global/users/tenant/owner . The manipulation res…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-33818 | Google Go up to 1.25.12/1.26.5 encoding-asn1 Unmarshal resource consumption

A vulnerability, which was classified as problematic , has been found in Google Go up to 1.25.12/1.26.5 . Affected by this issue is the function Unmarshal of the component encoding-asn1 . This manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-56859 | Go encoding/xml up to 1.25.12/1.26.5 DecodeElement allocation of resources

A vulnerability, which was classified as problematic , was found in Go encoding and xml up to 1.25.12/1.26.5 . This affects the function DecodeElement . Such manipulation leads to allocation of resour…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-56858 | Google html-template up to 1.25.12/1.26.5 cross site scripting

A vulnerability has been found in Google html-template up to 1.25.12/1.26.5 and classified as problematic . This vulnerability affects unknown code. Performing a manipulation results in cross site scr…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73416 | JupyterLab up to 4.5.9/4.6.1 PyPI Extension Manager manager.py privileges management

A vulnerability was found in JupyterLab up to 4.5.9/4.6.1 and classified as problematic . This issue affects some unknown processing of the file jupyterlab/extensions/manager.py of the component PyPI …

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73408 | Budibase up to 3.39.17 MySQL Integration mysql.ts tableName sql injection

A vulnerability was found in Budibase up to 3.39.17 . It has been classified as problematic . Impacted is an unknown function of the file packages/server/src/integrations/mysql.ts of the component MyS…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73840 | OpenChoreo up to 1.0.2/1.1.2 Webhook webhook_handler.go X-Event-Key improper authentication

A vulnerability was found in OpenChoreo up to 1.0.2/1.1.2 . It has been declared as critical . The affected element is an unknown function of the file internal/openchoreo-api/api/handlers/webhook_hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73843 | OpenChoreo up to 1.0.1/1.1.1 cluster-gateway server.go improper authentication

A vulnerability was found in OpenChoreo up to 1.0.1/1.1.1 . It has been rated as very critical . The impacted element is an unknown function of the file internal/cluster-gateway/server.go of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73302 | Budibase up to 3.39.29 OIDC Flow oidc.ts users.getGlobalUserByEmail assertion

A vulnerability categorized as critical has been discovered in Budibase up to 3.39.29 . This affects the function users.getGlobalUserByEmail of the file packages/backend-core/src/middleware/passport/s…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73304 | Budibase up to 3.39.24 User Object Processing global.ts oauth2.accessToken/oauth2.refreshToken privileges management

A vulnerability identified as problematic has been detected in Budibase up to 3.39.24 . This impacts an unknown function of the file packages/server/src/utilities/global.ts of the component User Objec…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73417 | Jupyter JupyterLab up to 4.5.9/4.6.1 Notebook Extension index.ts code injection

A vulnerability labeled as problematic has been found in Jupyter JupyterLab up to 4.5.9/4.6.1 . Affected is an unknown function of the file packages/notebook-extension/src/index.ts of the component No…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73421 | nextauthjs next-auth up to 5.0.0-beta.31 Session Parsing improper authorization

A vulnerability marked as critical has been reported in nextauthjs next-auth up to 5.0.0-beta.31 . Affected by this vulnerability is the function auth of the component Session Parsing . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73841 | OpenChoreo up to 1.1.x API Handlers exec.go project improper authorization

A vulnerability described as critical has been identified in OpenChoreo up to 1.1.x . Affected by this issue is some unknown functionality of the file internal/openchoreo-api/api/handlers/exec.go of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73842 | OpenChoreo prior 1.0.3/1.1.3/1.2.0-rc.2 cluster-gateway server.go certificate validation

A vulnerability classified as problematic has been found in OpenChoreo . This affects an unknown part of the file internal/cluster-gateway/server.go of the component cluster-gateway . This manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73420 | NextAuth.js @auth/core/next-auth Email Normalization defaultNormalizer improper authentication

A vulnerability classified as critical was found in NextAuth.js @auth, core and next-auth . This vulnerability affects the function defaultNormalizer of the component Email Normalization . Such manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73489 | Eugeny Russh up to 0.62.3 Parser encrypted.rs out-of-bounds

A vulnerability, which was classified as problematic , has been found in Eugeny Russh up to 0.62.3 . This issue affects some unknown processing of the file russh/src/server/encrypted.rs of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73305 | Budibase up to 3.39.23 Global Role Validation globalRoleValidation.ts validateGlobalRoleUpdate privileges management

A vulnerability, which was classified as critical , was found in Budibase up to 3.39.23 . Impacted is the function validateGlobalRoleUpdate of the file packages/server/src/api/controllers/public/globa…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
CVE-2026-73428 | Basecamp Trix up to 2.1.17 HTMLParser/StringPiece StringPiece.fromJSON HTML injection

A vulnerability has been found in Basecamp Trix up to 2.1.17 and classified as problematic . The affected element is the function StringPiece.fromJSON of the component HTMLParser/StringPiece . The man…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 14, 2026
Critical VMware vCenter RCE flaw exploited for reverse SSH access - BleepingComputer

Critical VMware vCenter RCE flaw exploited for reverse SSH access BleepingComputer

BleepingComputer Read →
⬡ Vulnerabilities & CVEs Aug 13, 2026
CVE-2026-17223 | IBM i 7.3/7.4/7.5/7.6 buffer overflow

A vulnerability marked as very critical has been reported in IBM i 7.3/7.4/7.5/7.6 . This affects an unknown function. The manipulation leads to buffer overflow. This vulnerability is documented as CV…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 13, 2026
CVE-2026-17229 | IBM i 7.3/7.4/7.5/7.6 infinite loop

A vulnerability described as critical has been identified in IBM i 7.3/7.4/7.5/7.6 . This impacts an unknown function. The manipulation results in infinite loop. This vulnerability is reported as CVE-…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 13, 2026
CVE-2026-16929 | IBM i 7.3/7.4/7.5/7.6 buffer overflow

A vulnerability classified as very critical has been found in IBM i 7.3/7.4/7.5/7.6 . Affected is an unknown function. This manipulation causes buffer overflow. This vulnerability appears as CVE-2026-…

VulDB Read →
⬡ Vulnerabilities & CVEs Aug 13, 2026
CVE-2026-16982 | IBM i 7.3/7.4/7.5/7.6 heap-based overflow

A vulnerability classified as critical was found in IBM i 7.3/7.4/7.5/7.6 . Affected by this vulnerability is an unknown functionality. Such manipulation leads to heap-based buffer overflow. This vuln…

VulDB Read →
← Prev 3 / 661 Next →