CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  9862 articles  ·  updated every 4 hours · grows forever

9862Total
4228Full Text
Jun 26, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33323 | parse-community parse-server up to 8.6.50/9.6.0-alpha.39 Configuration Options response discrepancy (GHSA-h29g-q5c2-9h4f)

A vulnerability has been found in parse-community parse-server up to 8.6.50/9.6.0-alpha.39 and classified as problematic . This impacts an unknown function of the component Configuration Options Handl…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33409 | parse-community parse-server up to 8.6.51/9.6.0-alpha.40 improper authentication (GHSA-pfj7-wv7c-22pr)

A vulnerability was found in parse-community parse-server up to 8.6.51/9.6.0-alpha.40 and classified as critical . Affected is an unknown function. Executing a manipulation can lead to improper authen…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33417 | ellite Wallos up to 4.7.1 Password Reset Token session expiration (GHSA-p3fv-m43r-3fhf)

A vulnerability was found in ellite Wallos up to 4.7.1 . It has been classified as problematic . Affected by this vulnerability is an unknown functionality of the component Password Reset Token Handle…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33421 | parse-community parse-server up to 8.6.52/9.6.0-alpha.41 LiveQuery WebSocket Interface authorization (GHSA-fph2-r4qg-9576)

A vulnerability was found in parse-community parse-server up to 8.6.52/9.6.0-alpha.41 . It has been declared as problematic . Affected by this issue is some unknown functionality of the component Live…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-30932 | Froxlor up to 2.3.4 API Endpoint DomainZones.add injection (GHSA-x6w6-2xwp-3jh6)

A vulnerability was found in Froxlor up to 2.3.4 . It has been rated as problematic . This affects the function DomainZones.add of the component API Endpoint . This manipulation causes injection. The …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33627 | parse-community parse-server up to 8.6.60/9.6.0-alpha.54 Endpoint information disclosure (GHSA-37mj-c2wf-cx96)

A vulnerability categorized as problematic has been discovered in parse-community parse-server up to 8.6.60/9.6.0-alpha.54 . This vulnerability affects unknown code of the component Endpoint . Such ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33527 | parse-community parse-server up to 8.6.56/9.6.0-alpha.47 REST API authorization (GHSA-jc39-686j-wp6q)

A vulnerability identified as problematic has been detected in parse-community parse-server up to 8.6.56/9.6.0-alpha.47 . This issue affects some unknown processing of the component REST API . Perform…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33538 | parse-community parse-server up to 8.6.57/9.6.0-alpha.51 resource consumption (GHSA-g4cf-xj29-wqqr)

A vulnerability labeled as problematic has been found in parse-community parse-server up to 8.6.57/9.6.0-alpha.51 . Impacted is an unknown function. Executing a manipulation can lead to resource consu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation - CyberSecurityNews

Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-33311 | DiceBear up to 5.4.3/6.1.3/7.1.3/8.0.2/9.4.0 createAvatar cross site scripting

A vulnerability classified as problematic has been found in DiceBear up to 5.4.3/6.1.3/7.1.3/8.0.2/9.4.0 . Affected by this issue is the function createAvatar . This manipulation causes cross site scr…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4722 | Mozilla Firefox up to 148 IPC Remote Code Execution

A vulnerability classified as critical was found in Mozilla Firefox up to 148 . This affects an unknown part of the component IPC . Such manipulation leads to Remote Code Execution. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4723 | Mozilla Firefox up to 148 JavaScript Engine use after free

A vulnerability, which was classified as critical , has been found in Mozilla Firefox up to 148 . This vulnerability affects unknown code of the component JavaScript Engine . Performing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4725 | Mozilla Firefox up to 148 Canvas2D use after free

A vulnerability, which was classified as critical , was found in Mozilla Firefox up to 148 . This issue affects some unknown processing of the component Canvas2D . Executing a manipulation can lead to…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4726 | Mozilla Firefox up to 148 XML denial of service

A vulnerability has been found in Mozilla Firefox up to 148 and classified as problematic . Impacted is an unknown function of the component XML . The manipulation leads to denial of service. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4727 | Mozilla Firefox up to 148 Libraries denial of service

A vulnerability was found in Mozilla Firefox up to 148 and classified as problematic . The affected element is an unknown function of the component Libraries . The manipulation results in denial of se…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4728 | Mozilla Firefox up to 148 Anti-Tracking

A vulnerability was found in Mozilla Firefox up to 148 . It has been classified as problematic . The impacted element is an unknown function of the component Anti-Tracking . This manipulation causes a…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-4724 | Mozilla Firefox up to 148 Audio/Video Remote Code Execution

A vulnerability was found in Mozilla Firefox up to 148 . It has been declared as critical . This affects an unknown function of the component Audio/Video . Such manipulation leads to Remote Code Execu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-30662 | Concrete CMS 9.4.7 File Manager file.php download denial of service

A vulnerability was found in Concrete CMS 9.4.7 . It has been rated as problematic . This impacts the function Download of the file concrete/controllers/backend/file.php of the component File Manager …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-27651 | F5 NGINX Open Source/NGINX Plus Response Header ngx_mail_auth_http_module null pointer dereference (K000160383)

A vulnerability categorized as problematic has been discovered in F5 NGINX Open Source and NGINX Plus . Affected is the function ngx_mail_auth_http_module of the component Response Header Handler . Ex…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-27654 | F5 NGINX Open Source/NGINX Plus DAV Module ngx_http_dav_module heap-based overflow (K000160382)

A vulnerability identified as critical has been detected in F5 NGINX Open Source and NGINX Plus . Affected by this vulnerability is the function ngx_http_dav_module of the component DAV Module . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-32647 | F5 NGINX Open Source/NGINX Plus ngx_http_mp4_module out-of-bounds (K000160366)

A vulnerability labeled as problematic has been found in F5 NGINX Open Source and NGINX Plus . Affected by this issue is the function ngx_http_mp4_module . The manipulation results in out-of-bounds re…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-27784 | F5 NGINX Open Source ngx_http_mp4_module integer overflow (K000160364)

A vulnerability marked as critical has been reported in F5 NGINX Open Source . This affects the function ngx_http_mp4_module . This manipulation causes integer overflow. This vulnerability appears as …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-28753 | F5 NGINX Open Source/NGINX Plus ngx_mail_smtp_module crlf injection (K000160367)

A vulnerability described as problematic has been identified in F5 NGINX Open Source and NGINX Plus . This vulnerability affects the function ngx_mail_smtp_module . Such manipulation leads to crlf inj…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 24, 2026
CVE-2026-28755 | F5 NGINX Open Source/NGINX Plus ngx_stream_ssl_module authorization (K000160368)

A vulnerability classified as critical has been found in F5 NGINX Open Source and NGINX Plus . This issue affects the function ngx_stream_ssl_module . Performing a manipulation results in incorrect au…

VulDB Read →
← Prev 365 / 411 Next →