CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5667 articles  ·  updated every 4 hours · grows forever

5667Total
4035Full Text
May 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 09, 2026
[webapps] Bludit CMS 3.18.4 - RCE

Bludit CMS 3.18.4 - RCE

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
[webapps] LuaJIT 2.1.1774638290 - Arbitrary Code Execution

LuaJIT 2.1.1774638290 - Arbitrary Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
[webapps] Ghost CMS 6.19.0 - SQLi

Ghost CMS 6.19.0 - SQLi

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
[remote] telnetd 2.7 - Buffer Overflow

telnetd 2.7 - Buffer Overflow

Exploit DB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-42560 | go-pkgz auth up to 1.25.1/2.1.1 improper authentication (GHSA-f6qq-3m3h-4g42)

A vulnerability categorized as critical has been discovered in go-pkgz auth up to 1.25.1/2.1.1 . This impacts an unknown function. Such manipulation leads to improper authentication. This vulnerabilit…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-42308 | Pillow up to 12.1.x integer overflow (GHSA-wjx4-4jcj-g98j)

A vulnerability identified as problematic has been detected in Pillow up to 12.1.x . Affected is an unknown function. Performing a manipulation results in integer overflow. This vulnerability is repor…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8212 | OSGeo gdal up to 3.13.0dev-4 SWapi.c SWSDfldsrch heap-based overflow (Issue 14398)

A vulnerability labeled as critical has been found in OSGeo gdal up to 3.13.0dev-4 . Affected by this vulnerability is the function SWSDfldsrch of the file frmts/hdf4/hdf-eos/SWapi.c . Executing a man…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8213 | OSGeo gdal up to 3.13.0dev-4 Grid File GDapi.c GDSDfldsrch heap-based overflow (Issue 14399)

A vulnerability marked as critical has been reported in OSGeo gdal up to 3.13.0dev-4 . Affected by this issue is the function GDSDfldsrch of the file frmts/hdf4/hdf-eos/GDapi.c of the component Grid F…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8214 | Industrial Application Software IAS Canias ERP 8.03 RMI Interface doAction sessionId improper authentication

A vulnerability described as problematic has been identified in Industrial Application Software IAS Canias ERP 8.03 . This affects the function doAction of the component RMI Interface . The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8215 | Industrial Application Software IAS Canias ERP 8.03 RMI Interface iasRequestFileEvent m_strSourceFileName path traversal

A vulnerability classified as critical has been found in Industrial Application Software IAS Canias ERP 8.03 . This vulnerability affects the function iasRequestFileEvent of the component RMI Interfac…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8216 | Industrial Application Software IAS Canias ERP 8.03 Java RMI Session Management iasServerRemoteInterface.doAction improper authentication

A vulnerability classified as critical was found in Industrial Application Software IAS Canias ERP 8.03 . This issue affects the function iasServerRemoteInterface.doAction of the component Java RMI Se…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8217 | Industrial Application Software IAS Canias ERP 8.03 RMI Interface Runtime.getRuntime.exec troiaCode os command injection

A vulnerability, which was classified as critical , has been found in Industrial Application Software IAS Canias ERP 8.03 . Impacted is the function Runtime.getRuntime.exec of the component RMI Interf…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8218 | Devs Palace ERP Online up to 4.0.0 purchase_return_save cross site scripting

A vulnerability, which was classified as problematic , was found in Devs Palace ERP Online up to 4.0.0 . The affected element is an unknown function of the file /inventory/purchase_return_save . Execu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8219 | Devs Palace ERP Online up to 4.0.0 /inventory/supplier-save cross site scripting

A vulnerability has been found in Devs Palace ERP Online up to 4.0.0 and classified as problematic . The impacted element is an unknown function of the file /inventory/supplier-save . The manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8220 | Devs Palace ERP Online up to 4.0.0 /inventory/customer-save cross site scripting

A vulnerability was found in Devs Palace ERP Online up to 4.0.0 and classified as problematic . This affects an unknown function of the file /inventory/customer-save . The manipulation results in cros…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8221 | Devs Palace ERP Online up to 4.0.0 /inventory/item-save cross site scripting

A vulnerability was found in Devs Palace ERP Online up to 4.0.0 . It has been classified as problematic . This impacts an unknown function of the file /inventory/item-save . This manipulation causes c…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8222 | Open5GS up to 2.7.7 sm-policies Endpoint src/pcf/nbsf-handler.c pcf_nbsf_management_handle_register denial of service (Issue 4437)

A vulnerability was found in Open5GS up to 2.7.7 . It has been declared as problematic . Affected is the function pcf_nbsf_management_handle_register of the file src/pcf/nbsf-handler.c of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8223 | Open5GS up to 2.7.7 sm-policies Endpoint pcf_sess_sbi_discover_and_send denial of service (Issue 4438)

A vulnerability was found in Open5GS up to 2.7.7 . It has been rated as problematic . Affected by this vulnerability is the function pcf_sess_sbi_discover_and_send of the component sm-policies Endpoin…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8224 | Open5GS up to 2.7.7 PCF /src/pcf/context.c pcf_sess_set_ipv6prefix SmPolicyContextData.ipv6AddressPrefix denial of service (Issue 4439)

A vulnerability categorized as problematic has been discovered in Open5GS up to 2.7.7 . Affected by this issue is the function pcf_sess_set_ipv6prefix of the file /src/pcf/context.c of the component P…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8225 | Open5GS up to 2.7.7 delete Endpoint src/pcf/sm-sm.c pcf_npcf_smpolicycontrol_handle_delete denial of service (Issue 4440)

A vulnerability identified as problematic has been detected in Open5GS up to 2.7.7 . This affects the function pcf_npcf_smpolicycontrol_handle_delete of the file src/pcf/sm-sm.c of the component delet…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8226 | Open5GS up to 2.7.7 /lib/proto/types.c ogs_pcc_rule_install_flow_from_media denial of service (Issue 4441)

A vulnerability labeled as problematic has been found in Open5GS up to 2.7.7 . This vulnerability affects the function ogs_pcc_rule_install_flow_from_media in the library /lib/proto/types.c . The mani…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8227 | Wavlink NU516U1 240425 /cgi-bin/adm.cgi wzdapMesh os command injection

A vulnerability marked as critical has been reported in Wavlink NU516U1 240425 . This issue affects the function wzdapMesh of the file /cgi-bin/adm.cgi . This manipulation causes os command injection.…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8228 | Wavlink NU516U1 240425 /cgi-bin/wireless.cgi advance wlan_conf/Channel/skiplist/ieee_80211h os command injection

A vulnerability described as critical has been identified in Wavlink NU516U1 240425 . Impacted is the function advance of the file /cgi-bin/wireless.cgi . Such manipulation of the argument wlan_conf/C…

VulDB Read →
⬡ Vulnerabilities & CVEs May 09, 2026
CVE-2026-8229 | Wavlink NU516U1 240425 /cgi-bin/wireless.cgi WifiBasic AuthMethod/EncrypType os command injection

A vulnerability classified as critical has been found in Wavlink NU516U1 240425 . The affected element is the function WifiBasic of the file /cgi-bin/wireless.cgi . Performing a manipulation of the ar…

VulDB Read →
← Prev 30 / 237 Next →