CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5692 articles  ·  updated every 4 hours · grows forever

5692Total
4036Full Text
May 17, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7390 | SourceCodester Pharmacy Sales and Inventory System 1.0 /index.php?page=customer Name cross site scripting

A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0 . It has been declared as problematic . The impacted element is the function Customer of the file /index.php?page=cu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7391 | SourceCodester Pharmacy Sales and Inventory System 1.0 ajax.php?action=save_supplier ID sql injection

A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0 . It has been rated as critical . This affects the function save_supplier of the file /ajax.php?action=save_supplier…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7392 | SourceCodester Pharmacy Sales and Inventory System 1.0 ajax.php?action=delete_supplier ID sql injection

A vulnerability categorized as critical has been discovered in SourceCodester Pharmacy Sales and Inventory System 1.0 . This impacts the function delete_supplier of the file /ajax.php?action=delete_su…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7393 | SourceCodester Pizzafy Ecommerce System 1.0 File Extension admin_class_novo.php save_menu img unrestricted upload

A vulnerability identified as critical has been detected in SourceCodester Pizzafy Ecommerce System 1.0 . Affected is the function save_menu of the file /admin/admin_class_novo.php of the component Fi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7394 | SourceCodester Pizzafy Ecommerce System 1.0 GET Parameter /admin/view_order.php ID sql injection

A vulnerability labeled as critical has been found in SourceCodester Pizzafy Ecommerce System 1.0 . Affected by this vulnerability is an unknown functionality of the file /admin/view_order.php of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7396 | NousResearch hermes-agent 0.8.0 WeChat Work Platform Adapter wecom.py path traversal (Issue 8733)

A vulnerability marked as critical has been reported in NousResearch hermes-agent 0.8.0 . Affected by this issue is some unknown functionality of the file gateway/platforms/wecom.py of the component W…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7397 | NousResearch hermes-agent 0.8.0 tools/file_tools.py _check_sensitive_path symlink (Issue 8734)

A vulnerability described as critical has been identified in NousResearch hermes-agent 0.8.0 . This affects the function _check_sensitive_path of the file tools/file_tools.py . The manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7398 | florensiawidjaja BioinfoMCP up to 7ada7918b9e515604d3c0ae264d3a9af10bf6e54 Upload Endpoint app.py upload Name path traversal

A vulnerability classified as critical has been found in florensiawidjaja BioinfoMCP up to 7ada7918b9e515604d3c0ae264d3a9af10bf6e54 . This vulnerability affects the function Upload of the file bioinfo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CISA Warns of Windows Shell Zero-Day Exploited in Attacks - gbhackers.com

CISA Warns of Windows Shell Zero-Day Exploited in Attacks gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[local] Atlona ATOMERX21 - Authenticated Command Injection

Atlona ATOMERX21 - Authenticated Command Injection

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] LangChain Core 1.2.4 - SSTI/RCE

LangChain Core 1.2.4 - SSTI/RCE

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[local] Fedora - Local Privilege Escalation

Fedora - Local Privilege Escalation

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] Xibo CMS 4.3.0 - RCE via SSTI

Xibo CMS 4.3.0 - RCE via SSTI

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] FacturaScripts 2025.43 - XSS

FacturaScripts 2025.43 - XSS

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] JuzaWeb CMS 3.4.2 - Authenticated Remote Code Execution

JuzaWeb CMS 3.4.2 - Authenticated Remote Code Execution

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] GUnet OpenEclass E-learning platform < 4.2 - Remote Code Execution (RCE)

GUnet OpenEclass E-learning platform < 4.2 - Remote Code Execution (RCE)

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[webapps] OpenKM 6.3.12 - Multiple

OpenKM 6.3.12 - Multiple

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
[local] OpenWrt 23.05 - Authenticated Remote Code Execution (RCE)

OpenWrt 23.05 - Authenticated Remote Code Execution (RCE)

Exploit DB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7344 | Google Chrome up to 147.0.7727.117 on Windows Accessibility use after free (ID 503419)

A vulnerability was found in Google Chrome on Windows and classified as critical . The impacted element is an unknown function of the component Accessibility . Executing a manipulation can lead to use…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7345 | Google Chrome up to 147.0.7727.117 Feedback sandbox (ID 502248 / EUVD-2026-26171)

A vulnerability was found in Google Chrome . It has been classified as critical . This affects an unknown function of the component Feedback . The manipulation leads to sandbox issue. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7346 | Google Chrome up to 147.0.7727.117 Tint out-of-bounds write (ID 502206)

A vulnerability was found in Google Chrome . It has been declared as critical . This impacts an unknown function of the component Tint . The manipulation results in out-of-bounds write. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7347 | Google Chrome up to 147.0.7727.117 Chromoting use after free (ID 501722)

A vulnerability was found in Google Chrome . It has been rated as critical . Affected is an unknown function of the component Chromoting . This manipulation causes use after free. This vulnerability a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7348 | Google Chrome up to 147.0.7727.117 Codecs use after free (ID 500104)

A vulnerability categorized as critical has been discovered in Google Chrome . Affected by this vulnerability is an unknown functionality of the component Codecs . Such manipulation leads to use after…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 29, 2026
CVE-2026-7350 | Google Chrome up to 147.0.7727.117 WebMIDI use after free (ID 500018)

A vulnerability identified as critical has been detected in Google Chrome . Affected by this issue is some unknown functionality of the component WebMIDI . Performing a manipulation results in use aft…

VulDB Read →
← Prev 39 / 238 Next →