CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5669 articles  ·  updated every 4 hours · grows forever

5669Total
4036Full Text
May 17, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 30, 2026
Desktop Window Manager Zero-Day Vulnerability Allows Privilege Escalation - cyberpress.org

Desktop Window Manager Zero-Day Vulnerability Allows Privilege Escalation cyberpress.org

cyberpress.org Read →
⬡ Vulnerabilities & CVEs Apr 30, 2026
CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEV - The Hacker News

CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEV The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs Apr 30, 2026
WARNING: Three Microsoft Defender Zero-Days Under Active Attack As Two Remain Unpatched - LinkedIn

WARNING: Three Microsoft Defender Zero-Days Under Active Attack As Two Remain Unpatched LinkedIn

LinkedIn Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CISA orders feds to patch Windows flaw exploited as zero-day - BleepingComputer

CISA orders feds to patch Windows flaw exploited as zero-day BleepingComputer

BleepingComputer Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
Recent Microsoft Defender Vulnerability Exploited as Zero-Day - SecurityWeek

Recent Microsoft Defender Vulnerability Exploited as Zero-Day SecurityWeek

SecurityWeek Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CISA orders feds to patch Windows flaw exploited as zero-day - BleepingComputer

CISA orders feds to patch Windows flaw exploited as zero-day BleepingComputer

BleepingComputer Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] GeographicLib v2.5.1 - stack buffer overflow

GeographicLib v2.5.1 - stack buffer overflow

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] phpMyFAQ 4.0.16 - Improper Authorization

phpMyFAQ 4.0.16 - Improper Authorization

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[local] GNU InetUtils 2.6 - Telnetd Remote Privilege Escalation

GNU InetUtils 2.6 - Telnetd Remote Privilege Escalation

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] Craft CMS 5.6.16 - RCE

Craft CMS 5.6.16 - RCE

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] HAX CMS 24.x - Stored Cross-Site Scripting (XSS)

HAX CMS 24.x - Stored Cross-Site Scripting (XSS)

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2025-10503 | WSO2 Identity Server up to 7.0.0.87 Authentication Endpoint cross site scripting

A vulnerability was found in WSO2 Identity Server . It has been declared as problematic . This issue affects some unknown processing of the component Authentication Endpoint . Executing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42513 | CDAC-Noida e-Sushrut Hospital Management Information System Server Response improper authentication (CIVN-2026-0207)

A vulnerability was found in CDAC-Noida e-Sushrut Hospital Management Information System . It has been rated as critical . Impacted is an unknown function of the component Server Response Handler . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42514 | CDAC-Noida e-Sushrut Hospital Management Information System API cleartext transmission (CIVN-2026-0207)

A vulnerability categorized as problematic has been discovered in CDAC-Noida e-Sushrut Hospital Management Information System . The affected element is an unknown function of the component API . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42515 | CDAC-Noida e-Sushrut Hospital Management Information System API Request authorization (CIVN-2026-0207)

A vulnerability identified as problematic has been detected in CDAC-Noida e-Sushrut Hospital Management Information System . The impacted element is an unknown function of the component API Request Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42412 | weDevs WP User Frontend Plugin up to 4.3.1 on WordPress authorization

A vulnerability labeled as critical has been found in weDevs WP User Frontend Plugin up to 4.3.1 on WordPress. This affects an unknown function. Such manipulation leads to missing authorization. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7384 | ezequiroga mcp-bases research_server.py search_papers topic path traversal

A vulnerability marked as critical has been reported in ezequiroga mcp-bases 357ca19c7a49a9b9cb2ef639b366f03aba8bea39/c630b8ab0f970614d42da8e566e9c0d15a16414c . This impacts the function search_papers…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7386 | fatbobman mail-mcp-bridge up to 1.3.3 src/mail_mcp_server.py message_ids path traversal

A vulnerability described as critical has been identified in fatbobman mail-mcp-bridge up to 1.3.3 . Affected is an unknown function of the file src/mail_mcp_server.py . Executing a manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-4019 | Complianz Plugin up to 7.4.5 on WordPress REST API Endpoint cmplz_rest_consented_content authorization

A vulnerability classified as problematic has been found in Complianz Plugin up to 7.4.5 on WordPress. Affected by this vulnerability is the function cmplz_rest_consented_content of the component REST…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42518 | CDAC-Noida e-Sushrut Hospital Management Information System hard-coded key (CIVN-2026-0207)

A vulnerability classified as problematic was found in CDAC-Noida e-Sushrut Hospital Management Information System . Affected by this issue is some unknown functionality. The manipulation results in u…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42516 | CDAC-Noida e-Sushrut Hospital Management Information System encoded authorization (CIVN-2026-0207)

A vulnerability, which was classified as critical , has been found in CDAC-Noida e-Sushrut Hospital Management Information System . This affects an unknown part. This manipulation of the argument enco…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-42517 | CDAC-Noida e-Sushrut Hospital Management Information System Base64 Encoding authorization (CIVN-2026-0207)

A vulnerability, which was classified as problematic , was found in CDAC-Noida e-Sushrut Hospital Management Information System . This vulnerability affects unknown code of the component Base64 Encodi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-3325 | CRM Sistemas de Fidelización MegaCMS 12.0.0 POST Request get_provincias id_territorio sql injection

A vulnerability has been found in CRM Sistemas de Fidelización MegaCMS 12.0.0 and classified as critical . This issue affects some unknown processing of the file /web_comunications/cms/get_provincias …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7388 | EyouCMS up to 1.7.9 Template File FilemanagerLogic.php editFile code injection (IILDJS)

A vulnerability was found in EyouCMS up to 1.7.9 and classified as critical . Impacted is the function editFile of the file application/admin/logic/FilemanagerLogic.php of the component Template File …

VulDB Read →
← Prev 37 / 237 Next →