CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  9442 articles  ·  updated every 4 hours · grows forever

9442Total
4202Full Text
Jun 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30532 | SourceCodester Online Food Ordering System 1.0 Parameter admin/view_product.php ID sql injection

A vulnerability was found in SourceCodester Online Food Ordering System 1.0 . It has been declared as critical . This issue affects some unknown processing of the file admin/view_product.php of the co…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30533 | SourceCodester Online Food Ordering System 1.0 Parameter admin/manage_product.php ID sql injection

A vulnerability was found in SourceCodester Online Food Ordering System 1.0 . It has been rated as critical . Impacted is an unknown function of the file admin/manage_product.php of the component Para…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30534 | SourceCodester Food Ordering System 1.0 Parameter manage_category.php ID sql injection

A vulnerability categorized as critical has been discovered in SourceCodester Food Ordering System 1.0 . The affected element is an unknown function of the file admin/manage_category.php of the compon…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5025 | langflow-ai langflow Endpoint /logs get_current_active_user authorization

A vulnerability identified as problematic has been detected in langflow-ai langflow . The impacted element is the function get_current_active_user of the file /logs of the component Endpoint . Perform…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5027 | langflow-ai langflow Multipart Form Data Parser /api/v2/files filename path traversal

A vulnerability labeled as critical has been found in langflow-ai langflow . This affects an unknown function of the file /api/v2/files of the component Multipart Form Data Parser . Executing a manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-32984 | Wazuh 3.5.0/4.3.10 authd out-of-bounds

A vulnerability marked as problematic has been reported in Wazuh 3.5.0/4.3.10 . This impacts an unknown function of the component authd . The manipulation leads to out-of-bounds read. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4980 | Inkscape up to 1.2 XInclude xml external entity reference

A vulnerability described as problematic has been identified in Inkscape up to 1.2 . Affected is an unknown function of the component XInclude Handler . The manipulation results in xml external entity…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5026 | langflow-ai langflow SVG File /api/v1/files/images/ flow_id cross site scripting

A vulnerability classified as problematic has been found in langflow-ai langflow . Affected by this vulnerability is an unknown functionality of the file /api/v1/files/images/ of the component SVG Fil…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30531 | SourceCodester Online Food Ordering System 1.0 Parameter Actions.php save_category Name sql injection

A vulnerability classified as critical was found in SourceCodester Online Food Ordering System 1.0 . Affected by this issue is the function save_category of the file Actions.php of the component Param…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-32983 | Wazuh up to 4.7.3/4.7.x authd default permission (EUVD-2026-16686)

A vulnerability, which was classified as critical , has been found in Wazuh up to 4.7.3/4.7.x . This affects an unknown part of the component authd . Performing a manipulation results in incorrect def…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30302 | CodeRider-Kilo Parser os command injection

A vulnerability, which was classified as critical , was found in CodeRider-Kilo . This vulnerability affects unknown code of the component Parser . Executing a manipulation can lead to os command inje…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5030 | Totolink NR1800X 9.1.0u.6279_B20210910 Telnet Service /cgi-bin/cstecgi.cgi NTPSyncWithHost host_time command injection

A vulnerability has been found in Totolink NR1800X 9.1.0u.6279_B20210910 and classified as critical . This issue affects the function NTPSyncWithHost of the file /cgi-bin/cstecgi.cgi of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5031 | BichitroGan ISP Billing Software 2025.3.20 Endpoint users-view ID resource injection

A vulnerability was found in BichitroGan ISP Billing Software 2025.3.20 and classified as problematic . Impacted is an unknown function of the file /?_route=settings/users-view/ of the component Endpo…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4981 | Red Hat Advanced Cluster Security OAuth Call error/error_uri redirect

A vulnerability was found in Red Hat Advanced Cluster Security . It has been classified as problematic . The affected element is an unknown function of the component OAuth Call Handler . This manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30529 | SourceCodester Food Ordering System 1.0 Parameter Actions.php Username sql injection (EUVD-2026-16674)

A vulnerability was found in SourceCodester Food Ordering System 1.0 . It has been declared as critical . The impacted element is an unknown function of the file Actions.php of the component Parameter…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30527 | SourceCodester Online Food Ordering System 1.0 Category Management Category Name cross site scripting (EUVD-2026-16672)

A vulnerability was found in SourceCodester Online Food Ordering System 1.0 . It has been rated as problematic . This affects an unknown function of the component Category Management Module . Performi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-30530 | SourceCodester Online Food Ordering System 1.0 Parameter Actions.php save_customer Username sql injection (EUVD-2026-16676)

A vulnerability categorized as critical has been discovered in SourceCodester Online Food Ordering System 1.0 . This impacts the function save_customer of the file Actions.php of the component Paramet…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2023-7340 | Wazuh 3.5.0/4.3.10 authd out-of-bounds (EUVD-2023-60542)

A vulnerability identified as problematic has been detected in Wazuh 3.5.0/4.3.10 . Affected is an unknown function of the component authd . The manipulation leads to out-of-bounds read. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5033 | code-projects Accounting System 1.0 Parameter /view_costumer.php cos_id sql injection

A vulnerability labeled as critical has been found in code-projects Accounting System 1.0 . Affected by this vulnerability is an unknown functionality of the file /view_costumer.php of the component P…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5034 | code-projects Accounting System 1.0 Parameter /edit_costumer.php cos_id sql injection

A vulnerability marked as critical has been reported in code-projects Accounting System 1.0 . Affected by this issue is some unknown functionality of the file /edit_costumer.php of the component Param…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5035 | code-projects Accounting System 1.0 Parameter /view_work.php en_id sql injection

A vulnerability described as critical has been identified in code-projects Accounting System 1.0 . This affects an unknown part of the file /view_work.php of the component Parameter Handler . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5036 | Tenda 4G06 04.06.01.29 Endpoint /goform/DhcpListClient fromDhcpListClient page stack-based overflow

A vulnerability classified as critical has been found in Tenda 4G06 04.06.01.29 . This vulnerability affects the function fromDhcpListClient of the file /goform/DhcpListClient of the component Endpoin…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5037 | mxml up to 4.0.4 mxmlIndexNew mxml-index.c index_sort tempr stack-based overflow (Issue 350)

A vulnerability classified as problematic was found in mxml up to 4.0.4 . This issue affects the function index_sort of the file mxml-index.c of the component mxmlIndexNew . Executing a manipulation o…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-5041 | code-projects Chamber of Commerce Membership Management System 1.0 admin/pageMail.php fwrite mailSubject/mailMessage command injection

A vulnerability, which was classified as critical , has been found in code-projects Chamber of Commerce Membership Management System 1.0 . Impacted is the function fwrite of the file admin/pageMail.ph…

VulDB Read →
← Prev 329 / 394 Next →