CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  9442 articles  ·  updated every 4 hours · grows forever

9442Total
4202Full Text
Jun 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27857 | Open-Xchange OX Dovecot Pro up to 2.3.0 resource consumption (adv-2026-0001)

A vulnerability categorized as problematic has been discovered in Open-Xchange OX Dovecot Pro up to 2.3.0 . The impacted element is an unknown function. The manipulation results in resource consumptio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2025-59028 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 improper authentication (adv-2026-0001)

A vulnerability identified as critical has been detected in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . This affects an unknown function. This manipulation causes improper authentication. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27858 | Open-Xchange OX Dovecot Pro up to 2.3.0/2.4.0/3.1.0 Message resource consumption (adv-2026-0001)

A vulnerability labeled as problematic has been found in Open-Xchange OX Dovecot Pro up to 2.3.0/2.4.0/3.1.0 . This impacts an unknown function of the component Message Handler . Such manipulation lea…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27859 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.0.2/3.1.0 Mail Message resource consumption (adv-2026-0001)

A vulnerability marked as problematic has been reported in Open-Xchange OX Dovecot Pro up to 2.4.0/3.0.2/3.1.0 . Affected is an unknown function of the component Mail Message Handler . Performing a ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2025-59031 | Open-Xchange OX Dovecot Pro up to 2.3.0 OOXML information disclosure (adv-2026-0001)

A vulnerability described as problematic has been identified in Open-Xchange OX Dovecot Pro up to 2.3.0 . Affected by this vulnerability is an unknown functionality of the component OOXML Handler . Ex…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2025-59032 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 ManageSieve Service denial of service (adv-2026-0001)

A vulnerability classified as problematic has been found in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . Affected by this issue is some unknown functionality of the component ManageSieve Service . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-0394 | Open-Xchange OX Dovecot Pro up to 2.3.0 path traversal (adv-2026-0001)

A vulnerability classified as critical was found in Open-Xchange OX Dovecot Pro up to 2.3.0 . This affects an unknown part. The manipulation results in path traversal. This vulnerability is known as C…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-24031 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 auth_username_chars sql injection (adv-2026-0001)

A vulnerability, which was classified as critical , has been found in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 . This vulnerability affects unknown code. This manipulation of the argument auth_us…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27855 | Open-Xchange OX Dovecot Pro up to 2.3.0 SCRAM Protocol authentication replay (adv-2026-0001)

A vulnerability, which was classified as critical , was found in Open-Xchange OX Dovecot Pro up to 2.3.0 . This issue affects some unknown processing of the component SCRAM Protocol Handler . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-27860 | Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 auth_username_chars ldap injection (adv-2026-0001)

A vulnerability has been found in Open-Xchange OX Dovecot Pro up to 2.4.0/3.1.0 and classified as problematic . Impacted is an unknown function. Performing a manipulation of the argument auth_username…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4968 | SourceCodester Diary App 1.0 diary.php cross-site request forgery

A vulnerability was found in SourceCodester Diary App 1.0 and classified as problematic . The affected element is an unknown function of the file diary.php . Executing a manipulation can lead to cross…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4969 | code-projects Social Networking Site 1.0 Alert /home.php content cross site scripting

A vulnerability was found in code-projects Social Networking Site 1.0 . It has been classified as problematic . The impacted element is an unknown function of the file /home.php of the component Alert…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4970 | code-projects Social Networking Site 1.0 Endpoint delete_photos.php ID sql injection

A vulnerability was found in code-projects Social Networking Site 1.0 . It has been declared as critical . This affects an unknown function of the file delete_photos.php of the component Endpoint . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4971 | SourceCodester Note Taking App up to 1.0 cross-site request forgery

A vulnerability was found in SourceCodester Note Taking App up to 1.0 . It has been rated as problematic . This impacts an unknown function. This manipulation causes cross-site request forgery. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4972 | code-projects Online Reviewer System up to 1.0 btn_functions.php Description cross site scripting

A vulnerability categorized as problematic has been discovered in code-projects Online Reviewer System up to 1.0 . Affected is an unknown function of the file /system/system/students/assessments/datab…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4973 | SourceCodester Online Quiz System up to 1.0 add-question.php quiz_question cross site scripting

A vulnerability identified as problematic has been detected in SourceCodester Online Quiz System up to 1.0 . Affected by this vulnerability is an unknown functionality of the file endpoint/add-questio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4974 | Tenda AC7 15.03.06.44 POST Request /goform/SetSysTimeCfg fromSetSysTime stack-based overflow

A vulnerability labeled as critical has been found in Tenda AC7 15.03.06.44 . Affected by this issue is the function fromSetSysTime of the file /goform/SetSysTimeCfg of the component POST Request Hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4975 | Tenda AC15 15.03.05.19 POST Request /goform/setcfm formSetCfm funcpara1 stack-based overflow

A vulnerability marked as critical has been reported in Tenda AC15 15.03.05.19 . This affects the function formSetCfm of the file /goform/setcfm of the component POST Request Handler . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-4976 | Totolink LR350 9.3.5u.6369_B20220309 /cgi-bin/cstecgi.cgi setWiFiGuestCfg ssid buffer overflow

A vulnerability described as critical has been identified in Totolink LR350 9.3.5u.6369_B20220309 . This vulnerability affects the function setWiFiGuestCfg of the file /cgi-bin/cstecgi.cgi . The manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-1281, CVE-2026-1340: Ivanti Endpoint Manager Mobile (EPMM) Zero-Day Vulnerabilities Exploited - Security Boulevard

CVE-2026-1281, CVE-2026-1340: Ivanti Endpoint Manager Mobile (EPMM) Zero-Day Vulnerabilities Exploited Security Boulevard

Security Boulevard Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-33897 | lxc incus up to 6.22.x Template File special elements used in a template engine (GHSA-83xr-5xxr-mh92)

A vulnerability was found in lxc incus up to 6.22.x . It has been declared as critical . The impacted element is an unknown function of the component Template File Handler . Executing a manipulation c…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-33697 | ultravioletrs cocos up to 0.8.1 CoCoS Service key exchange without entity authentication (GHSA-vfgg-mvxx-mgg7)

A vulnerability was found in ultravioletrs cocos up to 0.8.1 . It has been rated as problematic . This affects an unknown function of the component CoCoS Service . The manipulation leads to key exchan…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-33735 | franklioxygen MyTube up to 1.8.68 Setting import-database improper authorization (GHSA-63cf-662x-crp2 / EUVD-2026-16512)

A vulnerability categorized as critical has been discovered in franklioxygen MyTube up to 1.8.68 . This impacts an unknown function of the file /api/settings/import-database of the component Setting H…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 27, 2026
CVE-2026-33745 | yhirose cpp-httplib up to 0.38.x information disclosure (GHSA-6hrp-7fq9-3qv2 / EUVD-2026-16515)

A vulnerability identified as problematic has been detected in yhirose cpp-httplib up to 0.38.x . Affected is an unknown function. This manipulation causes information disclosure. This vulnerability a…

VulDB Read →
← Prev 332 / 394 Next →