CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  9297 articles  ·  updated every 4 hours · grows forever

9297Total
4200Full Text
Jun 20, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-30309 | InfCode code injection

A vulnerability marked as critical has been reported in InfCode . The affected element is an unknown function. Performing a manipulation results in code injection. This vulnerability was named CVE-202…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33578 | OpenClaw up to 2026.3.27 authorization

A vulnerability described as critical has been identified in OpenClaw up to 2026.3.27 . The impacted element is an unknown function. Executing a manipulation can lead to incorrect authorization. The i…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33580 | OpenClaw up to 2026.3.27 Webhook Endpoint excessive authentication

A vulnerability classified as problematic has been found in OpenClaw up to 2026.3.27 . This affects an unknown function of the component Webhook Endpoint . The manipulation leads to improper restricti…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34209 | wevm mppx up to 0.4.10 authentication replay

A vulnerability classified as critical was found in wevm mppx up to 0.4.10 . This impacts an unknown function. The manipulation results in authentication bypass by capture-replay. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34210 | wevm mppx up to 0.4.10 comparison

A vulnerability, which was classified as problematic , has been found in wevm mppx up to 0.4.10 . Affected is an unknown function. This manipulation causes incorrect comparison. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33576 | OpenClaw up to 2026.3.27 authorization

A vulnerability, which was classified as critical , was found in OpenClaw up to 2026.3.27 . Affected by this vulnerability is an unknown functionality. Such manipulation leads to incorrect authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33577 | OpenClaw up to 2026.3.27 authorization

A vulnerability has been found in OpenClaw up to 2026.3.27 and classified as critical . Affected by this issue is some unknown functionality. Performing a manipulation results in incorrect authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33762 | go-git up to 5.17.0 array index

A vulnerability was found in go-git up to 5.17.0 and classified as problematic . This affects an unknown part. Executing a manipulation can lead to improper validation of array index. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34202 | ZcashFoundation zebra/zebra-chain prior 4.3.0 Transaction ID special elements used in a template engine

A vulnerability was found in ZcashFoundation zebra and zebra-chain . It has been classified as problematic . This vulnerability affects unknown code of the component Transaction ID Handler . The manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34162 | labring FastGPT up to 4.14.7 Endpoint runTool missing authentication

A vulnerability was found in labring FastGPT up to 4.14.7 . It has been declared as critical . This issue affects some unknown processing of the file /api/core/app/httpTools/runTool of the component E…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33579 | OpenClaw up to 2026.3.27 authorization

A vulnerability was found in OpenClaw up to 2026.3.27 . It has been rated as critical . Impacted is an unknown function. This manipulation causes incorrect authorization. This vulnerability appears as…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34163 | labring FastGPT up to 4.14.7 getTools isInternalAddress server-side request forgery

A vulnerability categorized as critical has been discovered in labring FastGPT up to 4.14.7 . The affected element is the function isInternalAddress of the file /api/core/app/mcpTools/getTools . Such …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33581 | OpenClaw up to 2026.3.23 alias path traversal

A vulnerability identified as critical has been detected in OpenClaw up to 2026.3.23 . The impacted element is an unknown function. Performing a manipulation of the argument alias results in path trav…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34200 | Nhost up to 1.40.x missing authentication

A vulnerability labeled as critical has been found in Nhost up to 1.40.x . This affects an unknown function. Executing a manipulation can lead to missing authentication. This vulnerability is handled …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34165 | go-git up to 5.17.0 integer underflow

A vulnerability marked as problematic has been reported in go-git up to 5.17.0 . This impacts an unknown function. The manipulation leads to integer underflow. This vulnerability is uniquely identifie…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-20915 | Checkmk up to 2.5.0b1 cross site scripting

A vulnerability described as problematic has been identified in Checkmk up to 2.5.0b1 . Affected is an unknown function. The manipulation results in cross site scripting. This vulnerability was named …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-33276 | Checkmk up to 2.5.0b1 Unified Search cross site scripting

A vulnerability classified as problematic has been found in Checkmk up to 2.5.0b1 . Affected by this vulnerability is an unknown functionality of the component Unified Search . This manipulation cause…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
FortiGate Firewalls Exploited in Wave of Attacks to Breach Networks and Steal Credentials - CyberSecurityNews

FortiGate Firewalls Exploited in Wave of Attacks to Breach Networks and Steal Credentials CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5203 | CMS Made Simple up to 2.2.22 UserGuide Module XML Import class.UserGuideImporterExporter.php _copyFilesToFolder path traversal

A vulnerability was found in CMS Made Simple up to 2.2.22 and classified as critical . This impacts the function _copyFilesToFolder in the library modules/UserGuide/lib/class.UserGuideImporterExporter…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5204 | Tenda CH22 1.0.0.1 Parameter /goform/webtypelibrary formWebTypeLibrary webSiteId stack-based overflow

A vulnerability was found in Tenda CH22 1.0.0.1 . It has been classified as critical . Affected is the function formWebTypeLibrary of the file /goform/webtypelibrary of the component Parameter Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5205 | chatwoot up to 4.11.2 Webhook API lib/webhooks/trigger.rb Webhooks::Trigger url server-side request forgery

A vulnerability was found in chatwoot up to 4.11.2 . It has been declared as critical . Affected by this vulnerability is the function Webhooks::Trigger in the library lib/webhooks/trigger.rb of the c…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5201 | gdk-pixbuf JPEG Image Loader heap-based overflow

A vulnerability was found in gdk-pixbuf . It has been rated as critical . Affected by this issue is some unknown functionality of the component JPEG Image Loader . Performing a manipulation results in…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-10551 | Dassault Systèmes ENOVIA Collaborative Industry Innovator Document Management cross site scripting

A vulnerability categorized as problematic has been discovered in Dassault Systèmes ENOVIA Collaborative Industry Innovator . This affects an unknown part of the component Document Management . Execut…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5206 | code-projects Simple Gym Management System 1.0 Payment sql injection

A vulnerability identified as critical has been detected in code-projects Simple Gym Management System 1.0 . This vulnerability affects unknown code of the component Payment Handler . The manipulation…

VulDB Read →
← Prev 309 / 388 Next →