CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  9328 articles  ·  updated every 4 hours · grows forever

9328Total
4200Full Text
Jun 21, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2019-25655 | hdd Device Monitoring Studio 8.10.00.8925 Tools Menu fabric-address map allows programming of unwarranted overlaps of protected and unprotected ranges (Exploit 46321 / EUVD-2019-20047)

A vulnerability was found in hdd Device Monitoring Studio 8.10.00.8925 . It has been classified as critical . Affected is an unknown function of the component Tools Menu . Performing a manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-4315 | WatchGuard Fireware OS up to 11.12.4+541730/12.5.17/12.11.8/2026.1.2 WebUI cross-site request forgery (wgsa-2026-00006 / EUVD-2026-17081)

A vulnerability was found in WatchGuard Fireware OS up to 11.12.4+541730/12.5.17/12.11.8/2026.1.2 . It has been declared as problematic . Affected by this vulnerability is an unknown functionality of …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2018-25235 | NetworkActiv Web Server 4.0 Pre-Alpha-3.7.2 Set Username Interface out-of-bounds write (Exploit 45302 / EUVD-2018-21727)

A vulnerability was found in NetworkActiv Web Server 4.0 Pre-Alpha-3.7.2 . It has been rated as critical . Affected by this issue is some unknown functionality of the component Set Username Interface …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5147 | YunaiV yudao-cloud up to 2026.01 get-by-website Website sql injection

A vulnerability categorized as critical has been discovered in YunaiV yudao-cloud up to 2026.01 . This affects an unknown part of the file /admin-api/system/tenant/get-by-website . The manipulation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5148 | YunaiV yudao-cloud up to 2026.01 page toMail sql injection

A vulnerability identified as critical has been detected in YunaiV yudao-cloud up to 2026.01 . This vulnerability affects unknown code of the file /admin-api/system/mail-log/page . This manipulation o…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5150 | code-projects Accounting System 1.0 Parameter /viewin_costumer.php cos_id sql injection

A vulnerability labeled as critical has been found in code-projects Accounting System 1.0 . This issue affects some unknown processing of the file /viewin_costumer.php of the component Parameter Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5152 | Tenda CH22 1.0.0.1 /goform/createFileName formCreateFileName fileNameMit stack-based overflow

A vulnerability marked as critical has been reported in Tenda CH22 1.0.0.1 . Impacted is the function formCreateFileName of the file /goform/createFileName . Performing a manipulation of the argument …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5153 | Tenda CH22 1.0.0.1 /goform/WriteFacMac FormWriteFacMac mac command injection

A vulnerability described as critical has been identified in Tenda CH22 1.0.0.1 . The affected element is the function FormWriteFacMac of the file /goform/WriteFacMac . Executing a manipulation of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5154 | Tenda CH22 1.0.0.1/1.If Parameter /goform/setcfm fromSetCfm funcname stack-based overflow

A vulnerability classified as critical has been found in Tenda CH22 1.0.0.1/1.If . The impacted element is the function fromSetCfm of the file /goform/setcfm of the component Parameter Handler . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5155 | Tenda CH22 1.0.0.1 Parameter /goform/AdvSetWan fromAdvSetWan wanmode stack-based overflow

A vulnerability classified as critical was found in Tenda CH22 1.0.0.1 . This affects the function fromAdvSetWan of the file /goform/AdvSetWan of the component Parameter Handler . The manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5156 | Tenda CH22 1.0.0.1 Parameter /goform/QuickIndex formQuickIndex mit_linktype stack-based overflow

A vulnerability, which was classified as critical , has been found in Tenda CH22 1.0.0.1 . This impacts the function formQuickIndex of the file /goform/QuickIndex of the component Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5157 | code-projects Online Food Ordering System 1.0 Order /form/order.php cust_id cross site scripting

A vulnerability, which was classified as problematic , was found in code-projects Online Food Ordering System 1.0 . Affected is an unknown function of the file /form/order.php of the component Order M…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-3321 | ON24 Q&A Chat History answer authorization (EUVD-2026-17084)

A vulnerability has been found in ON24 Q&A Chat and classified as problematic . Affected by this vulnerability is an unknown functionality of the file console-survey/api/v1/answer/ of the component Hi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28526 | BlueKitchen BTstack up to 1.8.0 AVRCP Controller Count out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 and classified as problematic . Affected by this issue is the function LIST_PLAYER_APPLICATION_SETTING_ATTRIBUTES/LIST_PLAYER_APPLICATION_S…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28527 | BlueKitchen BTstack up to 1.8.0 AVRCP Controller out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 . It has been classified as problematic . This affects the function GET_PLAYER_APPLICATION_SETTING_ATTRIBUTE_TEXT/GET_PLAYER_APPLICATION_SE…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28528 | BlueKitchen BTstack up to 1.8.0 AVRCP Browsing Target attr_id out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 . It has been declared as problematic . This vulnerability affects unknown code of the component AVRCP Browsing Target Handler . The manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30564 | SourceCodester Sales and Inventory System 1.0 Parameter view_payments.php limit cross site scripting

A vulnerability was found in SourceCodester Sales and Inventory System 1.0 . It has been rated as problematic . This issue affects some unknown processing of the file view_payments.php of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30566 | SourceCodester Sales and Inventory System 1.0 Parameter view_customers.php limit cross site scripting

A vulnerability categorized as problematic has been discovered in SourceCodester Sales and Inventory System 1.0 . Impacted is an unknown function of the file view_customers.php of the component Parame…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30565 | SourceCodester Sales and Inventory System 1.0 Parameter view_supplier.php limit cross site scripting

A vulnerability identified as problematic has been detected in SourceCodester Sales and Inventory System 1.0 . The affected element is an unknown function of the file view_supplier.php of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5165 | virtio-win kvm-guest-drivers-windows VirtIO Block Device expired pointer dereference

A vulnerability labeled as critical has been found in virtio-win kvm-guest-drivers-windows . The impacted element is an unknown function of the component VirtIO Block Device . Executing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5164 | virtio-win kvm-guest-drivers-windows RhelDoUnMap buffer overflow

A vulnerability marked as critical has been reported in virtio-win kvm-guest-drivers-windows . This affects the function RhelDoUnMap . The manipulation leads to buffer overflow. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-33373 | Zimbra Collaboration Suite 10.0/10.1 cross-site request forgery

A vulnerability described as problematic has been identified in Zimbra Collaboration Suite 10.0/10.1 . This impacts an unknown function. The manipulation results in cross-site request forgery. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30563 | SourceCodester Sales and Inventory System 1.0 POST Request update_details.php Website cross site scripting

A vulnerability classified as problematic has been found in SourceCodester Sales and Inventory System 1.0 . Affected is an unknown function of the file update_details.php of the component POST Request…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30082 | IngEstate Server 11.14.0 Software Package List Page Release note cross site scripting

A vulnerability classified as problematic was found in IngEstate Server 11.14.0 . Affected by this vulnerability is an unknown functionality of the component Software Package List Page . Such manipula…

VulDB Read →
← Prev 316 / 389 Next →