CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10025 articles  ·  updated every 4 hours · grows forever

10025Total
4230Full Text
Jun 27, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-2580 | flippercode WP Maps Plugin up to 4.9.1 on WordPress Parameter orderby sql injection (EUVD-2026-14335)

A vulnerability categorized as critical has been discovered in flippercode WP Maps Plugin up to 4.9.1 on WordPress. Affected is an unknown function of the component Parameter Handler . Such manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4606 | GeoVision GV-Edge Recording Manager up to 2.3.1 Windows Service unnecessary privileges (EUVD-2026-14346)

A vulnerability identified as critical has been detected in GeoVision GV-Edge Recording Manager up to 2.3.1 . Affected by this vulnerability is an unknown functionality of the component Windows Servic…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4611 | TOTOLINK X6000R 9.4.0cu.1360_B20241207/9.4.0cu.1498_B20250826 /usr/sbin/shttpd setLanCfg Hostname os command injection

A vulnerability labeled as critical has been found in TOTOLINK X6000R 9.4.0cu.1360_B20241207/9.4.0cu.1498_B20250826 . Affected by this issue is the function setLanCfg of the file /usr/sbin/shttpd . Ex…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4612 | itsourcecode Free Hotel Reservation System 1.0 Parameter index.php?view=edit&id=8 account_id sql injection

A vulnerability marked as critical has been reported in itsourcecode Free Hotel Reservation System 1.0 . This affects an unknown part of the file /hotel/admin/mod_users/index.php?view=edit&id=8 of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4613 | SourceCodester E-Commerce Site 1.0 /products.php Search sql injection

A vulnerability described as critical has been identified in SourceCodester E-Commerce Site 1.0 . This vulnerability affects unknown code of the file /products.php . The manipulation of the argument S…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4614 | itsourcecode sanitize or validate this input 1.0 Parameter /admin/subjects.php subject_code sql injection

A vulnerability classified as critical has been found in itsourcecode sanitize or validate this input 1.0 . This issue affects some unknown processing of the file /admin/subjects.php of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4615 | SourceCodester Online Catering Reservation 1.0 /search.php rcode sql injection

A vulnerability classified as critical was found in SourceCodester Online Catering Reservation 1.0 . Impacted is an unknown function of the file /search.php . Such manipulation of the argument rcode l…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4616 | bolo-blog up to 2.6.4 Article Title /console/article/ articleTitle cross site scripting (Issue 330)

A vulnerability, which was classified as problematic , has been found in bolo-blog up to 2.6.4 . The affected element is an unknown function of the file /console/article/ of the component Article Titl…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4617 | SourceCodester Patients Waiting Area Queue Management System 1.0 Patient Check-In api_patient_checkin.php ValidateToken improper authorization

A vulnerability, which was classified as critical , was found in SourceCodester Patients Waiting Area Queue Management System 1.0 . The impacted element is the function ValidateToken of the file /php/…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4623 | DefaultFuction Jeson-Customer-Relationship-Management-System up to 1b4679c4d06b90d31dd521c2b000bfdec5a36e00 API Module /api/System.php url server-side request forgery

A vulnerability has been found in DefaultFuction Jeson-Customer-Relationship-Management-System up to 1b4679c4d06b90d31dd521c2b000bfdec5a36e00 and classified as critical . This affects an unknown funct…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2025-10679 | ReviewX Plugin up to 2.2.12 on WordPress bulkTenReviews code injection

A vulnerability was found in ReviewX Plugin up to 2.2.12 on WordPress and classified as critical . This impacts the function bulkTenReviews . The manipulation results in code injection. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2025-10734 | ReviewX Plugin up to 2.2.12 on WordPress syncedData sensitive information

A vulnerability was found in ReviewX Plugin up to 2.2.12 on WordPress. It has been classified as problematic . Affected is the function syncedData . This manipulation causes insecure storage of sensit…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2025-10731 | ReviewX Plugin up to 2.2.12 on WordPress Setting allReminderSettings improper authorization

A vulnerability was found in ReviewX Plugin up to 2.2.12 on WordPress. It has been declared as critical . Affected by this vulnerability is the function allReminderSettings of the component Setting Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4598 | jsrsasign up to 11.1.0 ext/jsbn2.js bnModInverse infinite loop (SNYK-JS-JSRSASIGN-15370938)

A vulnerability was found in jsrsasign up to 11.1.0 . It has been rated as problematic . Affected by this issue is the function bnModInverse of the file ext/jsbn2.js . Performing a manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4599 | jsrsasign up to 11.1.0 Private Key src/crypto-1.1.js incomplete comparison with missing factors (SNYK-JS-JSRSASIGN-15370939)

A vulnerability categorized as critical has been discovered in jsrsasign up to 11.1.0 . This affects the function getRandomBigIntegerZeroToMax/getRandomBigIntegerMinToMax of the file src/crypto-1.1.js…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4600 | jsrsasign up to 11.1.0 Domain src/dsa-2.0.js KJUR.crypto.DSA.setPublic signature verification (SNYK-JS-JSRSASIGN-15370940)

A vulnerability identified as problematic has been detected in jsrsasign up to 11.1.0 . This vulnerability affects the function KJUR.crypto.DSA.setPublic of the file src/dsa-2.0.js of the component Do…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4603 | jsrsasign up to 11.1.0 KEYUTIL Parser ext/rsa.js divide by zero (SNYK-JS-JSRSASIGN-15371176)

A vulnerability labeled as problematic has been found in jsrsasign up to 11.1.0 . This issue affects some unknown processing of the file ext/rsa.js of the component KEYUTIL Parser . The manipulation r…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4601 | jsrsasign up to 11.1.0 Private Key KJUR.crypto.DSA.signWithMessageHash missing cryptographic step (SNYK-JS-JSRSASIGN-15370941)

A vulnerability marked as problematic has been reported in jsrsasign up to 11.1.0 . Impacted is the function KJUR.crypto.DSA.signWithMessageHash of the component Private Key Handler . This manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4602 | jsrsasign up to 11.1.0 ext/jsbn2.js numeric conversion (SNYK-JS-JSRSASIGN-15371175)

A vulnerability described as problematic has been identified in jsrsasign up to 11.1.0 . The affected element is an unknown function of the file ext/jsbn2.js . Such manipulation leads to incorrect con…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4624 | SourceCodester Online Library Management System 1.0 Parameter /home.php searchField sql injection

A vulnerability classified as critical has been found in SourceCodester Online Library Management System 1.0 . The impacted element is an unknown function of the file /home.php of the component Parame…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4625 | SourceCodester Online Admission System 1.0 /programmes.php program sql injection

A vulnerability classified as critical was found in SourceCodester Online Admission System 1.0 . This affects an unknown function of the file /programmes.php . Executing a manipulation of the argument…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4626 | projectworlds Lawyer Management System 1.0 /lawyer_booking.php Description cross site scripting

A vulnerability, which was classified as problematic , has been found in projectworlds Lawyer Management System 1.0 . This impacts an unknown function of the file /lawyer_booking.php . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVE-2026-4627 | D-Link DIR-825/DIR-825R 1.0.5/4.5.1 NTP Service libdeuteron_modules.so handler_update_system_time os command injection

A vulnerability, which was classified as critical , was found in D-Link DIR-825 and DIR-825R 1.0.5/4.5.1 . Affected is the function handler_update_system_time of the file libdeuteron_modules.so of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 23, 2026
CVEs set to hit record high levels in 2026 - BetaNews

CVEs set to hit record high levels in 2026 BetaNews

BetaNews Read →
← Prev 379 / 418 Next →