CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  9297 articles  ·  updated every 4 hours · grows forever

9297Total
4200Full Text
Jun 20, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-41355 | Anon Proxy Server 0.104 URL /anon.php port/proxyPort cross site scripting

A vulnerability labeled as problematic has been found in Anon Proxy Server 0.104 . This issue affects some unknown processing of the file /anon.php of the component URL Handler . The manipulation of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-41356 | Anon Proxy Server 0.104 URL /diagconnect.php host cross site scripting

A vulnerability marked as problematic has been reported in Anon Proxy Server 0.104 . Impacted is an unknown function of the file /diagconnect.php of the component URL Handler . This manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-41357 | Anon Proxy Server 0.104 URL /diagdns.php host cross site scripting

A vulnerability described as problematic has been identified in Anon Proxy Server 0.104 . The affected element is an unknown function of the file /diagdns.php of the component URL Handler . Such manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-3106 | Teampass up to 3.1.5.15 Login Form redacted/index.php Username cross site scripting

A vulnerability classified as problematic has been found in Teampass up to 3.1.5.15 . The impacted element is an unknown function of the file redacted/index.php of the component Login Form . Performin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-3107 | Teampass up to 3.1.5.15 index.php?page=items cross site scripting

A vulnerability classified as problematic was found in Teampass up to 3.1.5.15 . This affects an unknown function of the file redacted/index.php?page=items . Executing a manipulation can lead to cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-10559 | Dassault Systèmes DELMIA Factory Resource Manager path traversal

A vulnerability, which was classified as critical , has been found in Dassault Systèmes DELMIA Factory Resource Manager . This impacts an unknown function. The manipulation leads to path traversal. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-10553 | Dassault Systèmes DELMIA Factory Resource Manager cross site scripting

A vulnerability, which was classified as problematic , was found in Dassault Systèmes DELMIA Factory Resource Manager . Affected is an unknown function. The manipulation results in cross site scriptin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-4317 | Umami Software application 3.0.2 Request Parameter prisma.rawQuery/prisma.queryRawUnsafe sql injection

A vulnerability has been found in Umami Software application 3.0.2 and classified as critical . Affected by this vulnerability is an unknown functionality of the component Request Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5209 | SourceCodester Leave Application System 1.0 User Management cross site scripting

A vulnerability was found in SourceCodester Leave Application System 1.0 and classified as problematic . Affected by this issue is some unknown functionality of the component User Management Handler .…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5210 | SourceCodester Leave Application System 1.0 page file inclusion

A vulnerability was found in SourceCodester Leave Application System 1.0 . It has been classified as critical . This affects an unknown part. Performing a manipulation of the argument page results in …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5211 | D-Link DNS-1550-04 up to 20260205 /cgi-bin/app_mgr.cgi UPnP_AV_Server_Path_Del f_dir stack-based overflow

A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, D…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5212 | D-Link DNS-1550-04 up to 20260205 /cgi-bin/webdav_mgr.cgi Webdav_Upload_File f_file stack-based overflow

A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, D…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5214 | D-Link DNS-1550-04 up to 20260205 /cgi-bin/account_mgr.cgi cgi_addgroup_get_group_quota_minsize Name stack-based overflow

A vulnerability categorized as critical has been discovered in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-34…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5213 | D-Link DNS-1550-04 up to 20260205 /cgi-bin/account_mgr.cgi cgi_adduser_to_session read_list stack-based overflow

A vulnerability identified as critical has been detected in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L,…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5215 | D-Link DNS-1550-04 up to 20260205 /cgi-bin/network_mgr.cgi cgi_get_ipv6 access control

A vulnerability labeled as critical has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-3…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34054 | Microsoft vcpkg up to 3.6.1#2 OpenSSL uncontrolled search path (GHSA-p322-v6vw-vrq9)

A vulnerability, which was classified as problematic , was found in Microsoft vcpkg up to 3.6.1#2 . Affected by this issue is some unknown functionality of the component OpenSSL . The manipulation res…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34036 | Dolibarr up to 22.0.4 AJAX Endpoint selectobject.php restrictedArea objectdesc filename control (GHSA-2mfj-r695-5h9r)

A vulnerability has been found in Dolibarr up to 22.0.4 and classified as problematic . This affects the function restrictedArea of the file /core/ajax/selectobject.php of the component AJAX Endpoint …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2025-32957 | baserproject basercms up to 5.2.2 require_once unrestricted upload (GHSA-hv78-cwp4-8r7r)

A vulnerability was found in baserproject basercms up to 5.2.2 and classified as critical . This vulnerability affects the function require_once . Such manipulation leads to unrestricted upload. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-34060 | Shopify ruby-lsp up to 0.26.8 vscode/settings.json code injection (GHSA-c4r5-fxqw-vh93)

A vulnerability was found in Shopify ruby-lsp up to 0.26.8 . It has been classified as critical . This issue affects some unknown processing of the file vscode/settings.json . Performing a manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-1710 | woocommerce WooPayments Plugin up to 10.5.1 on WordPress Setting save_upe_appearance_ajax improper authorization

A vulnerability was found in woocommerce WooPayments Plugin up to 10.5.1 on WordPress. It has been declared as critical . Impacted is the function save_upe_appearance_ajax of the component Setting Han…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-5130 | jhimross Debugger & Troubleshooter Plugin up to 1.3.2 on WordPress wp_debug_troubleshoot_simulate_user cookie cookie validation

A vulnerability was found in jhimross Debugger & Troubleshooter Plugin up to 1.3.2 on WordPress. It has been rated as critical . The affected element is the function wp_debug_troubleshoot_simulate_use…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-32714 | SciTokens up to 1.9.5 str.format sql injection (GHSA-rh5m-2482-966c)

A vulnerability categorized as critical has been discovered in SciTokens up to 1.9.5 . The impacted element is the function str.format . The manipulation results in sql injection. This vulnerability i…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-32716 | SciTokens up to 1.9.5 improper authorization (GHSA-w8fp-g9rh-34jh)

A vulnerability identified as critical has been detected in SciTokens up to 1.9.5 . This affects an unknown function. This manipulation causes improper authorization. This vulnerability is tracked as …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 31, 2026
CVE-2026-32727 | SciTokens up to 1.9.6 path traversal (GHSA-3x2w-63fp-3qvw)

A vulnerability labeled as critical has been found in SciTokens up to 1.9.6 . This impacts an unknown function. Such manipulation leads to path traversal. This vulnerability is listed as CVE-2026-3272…

VulDB Read →
← Prev 310 / 388 Next →