CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10006 articles  ·  updated every 4 hours · grows forever

10006Total
4230Full Text
Jun 27, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2025-15605 | TP-Link Archer NX200 v1.0 Device Configuration hard-coded key

A vulnerability classified as critical has been found in TP-Link Archer NX600 v3.0, Archer NX600 v2.0, Archer NX600 v1.0, Archer NX500 v2.0, Archer NX500 v1.0, Archer NX210 v3.0, Archer NX210 v2.0 v2.…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-0898 | Pegasystems Pega Robot Studio 22.1/R25 access control

A vulnerability classified as critical was found in Pegasystems Pega Robot Studio 22.1/R25 . Affected by this issue is some unknown functionality. Such manipulation leads to improper access controls. …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33717 | WWBN AVideo up to 26.0 aVideoEncoder.json.php downloadVideoFromDownloadURL resolution unrestricted upload

A vulnerability, which was classified as critical , has been found in WWBN AVideo up to 26.0 . This affects the function downloadVideoFromDownloadURL of the file objects/aVideoEncoder.json.php . Perfo…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33688 | WWBN AVideo up to 26.0 Password Recovery Endpoint userRecoverPass.php response discrepancy

A vulnerability, which was classified as problematic , was found in WWBN AVideo up to 26.0 . This vulnerability affects unknown code of the file objects/userRecoverPass.php of the component Password R…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33690 | WWBN AVideo up to 26.0 HTTP Header objects/functions.php getRealIpAddr less trusted source

A vulnerability has been found in WWBN AVideo up to 26.0 and classified as problematic . This issue affects the function getRealIpAddr of the file objects/functions.php of the component HTTP Header Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33685 | WWBN AVideo up to 26.0 JSON API User::isAdmin authorization

A vulnerability was found in WWBN AVideo up to 26.0 and classified as problematic . Impacted is the function User::isAdmin of the component JSON API . The manipulation results in missing authorization…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33716 | WWBN AVideo up to 26.0 control.json.php streamerURL improper authentication

A vulnerability was found in WWBN AVideo up to 26.0 . It has been classified as critical . The affected element is an unknown function of the file plugin/Live/standAloneFiles/control.json.php . This m…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33723 | WWBN AVideo up to 26.0 Database Table objects/subscribe.php Subscribe::save user_id sql injection

A vulnerability was found in WWBN AVideo up to 26.0 . It has been declared as critical . The impacted element is the function Subscribe::save of the file objects/subscribe.php of the component Databas…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-26209 | agronholm cbor2 up to 5.8.x cbor2.loads recursion

A vulnerability was found in agronholm cbor2 up to 5.8.x . It has been rated as problematic . This affects the function cbor2.loads . Performing a manipulation results in uncontrolled recursion. This …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33651 | WWBN AVideo up to 26.0 remindMe.json.php getAllActiveOrToRepeat live_schedule_id sql injection

A vulnerability categorized as critical has been discovered in WWBN AVideo up to 26.0 . This impacts the function Scheduler_commands::getAllActiveOrToRepeat of the file remindMe.json.php . Executing a…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33719 | WWBN AVideo up to 26.0 CDN Plugin Endpoint status.json.php par missing authentication

A vulnerability identified as critical has been detected in WWBN AVideo up to 26.0 . Affected is an unknown function of the file plugin/CDN/status.json.php of the component CDN Plugin Endpoint . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33681 | WWBN AVideo up to 26.0 Parameter pluginRunDatabaseScript.json.php getDatabaseFileName path traversal

A vulnerability labeled as critical has been found in WWBN AVideo up to 26.0 . Affected by this vulnerability is the function Plugin::getDatabaseFileName of the file objects/pluginRunDatabaseScript.js…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-25075 | strongSwan up to 6.0.4 TTLS AVP Parser length integer underflow

A vulnerability marked as problematic has been reported in strongSwan up to 6.0.4 . Affected by this issue is some unknown functionality of the component TTLS AVP Parser . This manipulation of the arg…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-33683 | WWBN AVideo up to 26.0 Registered User xss_esc About cross site scripting

A vulnerability described as problematic has been identified in WWBN AVideo up to 26.0 . This affects the function xss_esc of the component Registered User Handler . Such manipulation of the argument …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2025-15606 | TP-Link TD-W8961N 4.0 Httpd Service denial of service

A vulnerability classified as problematic has been found in TP-Link TD-W8961N 4.0 . This vulnerability affects unknown code of the component Httpd Service . Performing a manipulation results in denial…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2025-41007 | Cuantis Parameter /search.php Search sql injection

A vulnerability labeled as critical has been found in Cuantis . The impacted element is an unknown function of the file /search.php of the component Parameter Handler . Such manipulation of the argume…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-32969 | MB connect line mbCONNECT24/mymbCONNECT24 up to 2.19.3 Userinfo Endpoint sql injection (VDE-2026-024 / EUVD-2026-14407)

A vulnerability marked as critical has been reported in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.3 . This affects an unknown function of the component Userinfo Endpoint . Performing a …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-31846 | Nexxt Solutions Nebula 300+ up to 12.01.01.37 HTTP /goform/ate missing authentication (EUVD-2026-14402)

A vulnerability described as critical has been identified in Nexxt Solutions Nebula 300+ up to 12.01.01.37 . This impacts an unknown function of the file /goform/ate of the component HTTP Handler . Ex…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-31847 | Nexxt Solutions Nebula 300+ up to 12.01.01.37 Telnet Service /goform/setSysTools backdoor

A vulnerability classified as critical has been found in Nexxt Solutions Nebula 300+ up to 12.01.01.37 . Affected is an unknown function of the file /goform/setSysTools of the component Telnet Service…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-31848 | Nexxt Solutions Nebula 300+ up to 12.01.01.37 Cookie ecos_pw risky encryption

A vulnerability classified as problematic was found in Nexxt Solutions Nebula 300+ up to 12.01.01.37 . Affected by this vulnerability is an unknown functionality of the component Cookie Handler . The …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-31849 | Nexxt Solutions Nebula 300+ up to 12.01.01.37 cross-site request forgery

A vulnerability, which was classified as problematic , has been found in Nexxt Solutions Nebula 300+ up to 12.01.01.37 . Affected by this issue is some unknown functionality. This manipulation causes …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-28809 | dropbox/arekinath/handnot2 esaml SAML xml external entity reference

A vulnerability, which was classified as problematic , was found in dropbox/arekinath/handnot2 esaml . This affects an unknown part of the component SAML Handler . Such manipulation leads to xml exter…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-31850 | Nexxt Solutions Nebula 300+ up to 12.01.01.37 Configuration Backup credentials storage

A vulnerability has been found in Nexxt Solutions Nebula 300+ up to 12.01.01.37 and classified as problematic . This vulnerability affects unknown code of the component Configuration Backup Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-31851 | Nexxt Solutions Nebula 300+ up to 12.01.01.37 Authentication Interface excessive authentication

A vulnerability was found in Nexxt Solutions Nebula 300+ up to 12.01.01.37 and classified as problematic . This issue affects some unknown processing of the component Authentication Interface . Execut…

VulDB Read →
← Prev 376 / 417 Next →