CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10115 articles  ·  updated every 4 hours · grows forever

10115Total
4231Full Text
Jun 29, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-4514 | PbootCMS up to 3.2.12 Backend UserController.php Field access control

A vulnerability was found in PbootCMS up to 3.2.12 . It has been declared as critical . Affected by this issue is some unknown functionality of the file apps/admin/controller/system/UserController.php…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-4515 | Foundation Agents MetaGPT up to 0.8.1 operator.py code_generate code injection

A vulnerability was found in Foundation Agents MetaGPT up to 0.8.1 . It has been rated as critical . This affects the function code_generate of the file metagpt/ext/aflow/scripts/operator.py . The man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-4516 | Foundation Agents MetaGPT up to 0.8.1 DataInterpreter write_analysis_code.py injection

A vulnerability categorized as critical has been discovered in Foundation Agents MetaGPT up to 0.8.1 . This vulnerability affects unknown code of the file metagpt/actions/di/write_analysis_code.py of …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33369 | Zimbra Collaboration Suite 10.0/10.1 Mailbox SOAP Service ldap injection

A vulnerability identified as critical has been detected in Zimbra Collaboration Suite 10.0/10.1 . This issue affects some unknown processing of the component Mailbox SOAP Service . This manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33371 | Zimbra Collaboration Suite 10.0/10.1 Exchange Web Service xml external entity reference

A vulnerability labeled as problematic has been found in Zimbra Collaboration Suite 10.0/10.1 . Impacted is an unknown function of the component Exchange Web Service . Such manipulation leads to xml e…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33372 | Zimbra Collaboration Suite 10.0/10.1 Request Header cross-site request forgery

A vulnerability marked as problematic has been reported in Zimbra Collaboration Suite 10.0/10.1 . The affected element is an unknown function of the component Request Header Handler . Performing a man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33370 | Zimbra Collaboration Suite 10.0/10.1 Briefcase Feature cross site scripting

A vulnerability described as problematic has been identified in Zimbra Collaboration Suite 10.0/10.1 . The impacted element is an unknown function of the component Briefcase Feature . Executing a mani…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33368 | Zimbra Collaboration Suite 10.0/10.1 Webmail REST Interface /h/rest cross site scripting

A vulnerability classified as problematic has been found in Zimbra Collaboration Suite 10.0/10.1 . This affects an unknown function of the file /h/rest of the component Webmail REST Interface . The ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
APT28 Hackers Exploiting Microsoft Office 0-Day in the Wild to Deploy Malware - CyberSecurityNews

APT28 Hackers Exploiting Microsoft Office 0-Day in the Wild to Deploy Malware CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
Critical Vulnerability in Next-Mdx-Remote Allows Arbitrary Code Execution in React Server-Side Rendering - CyberSecurityNews

Critical Vulnerability in Next-Mdx-Remote Allows Arbitrary Code Execution in React Server-Side Rendering CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
Critical Cisco SD-WAN 0-Day Vulnerability Exploited Since 2023 to Gain Root Access - CyberSecurityNews

Critical Cisco SD-WAN 0-Day Vulnerability Exploited Since 2023 to Gain Root Access CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-23271 | Linux Kernel up to 6.12.76/6.18.16/6.19.6/7.0-rc1 __perf_event_overflow privilege escalation

A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.12.76/6.18.16/6.19.6/7.0-rc1 . This affects the function __perf_event_overflow . Executing a manipulation can lead t…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-23272 | Linux Kernel up to 6.18.16/6.19.6/7.0-rc2 nf_tables synchronize_rcu state issue (EUVD-2026-13607)

A vulnerability identified as critical has been detected in Linux Kernel up to 6.18.16/6.19.6/7.0-rc2 . This vulnerability affects the function synchronize_rcu of the component nf_tables . The manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-23275 | Linux Kernel up to 6.18.18/6.19.8/7.0-rc3 io_uring io_ctx_mark_taskrun privilege escalation (EUVD-2026-13611)

A vulnerability labeled as problematic has been found in Linux Kernel up to 6.18.18/6.19.8/7.0-rc3 . This issue affects the function io_ctx_mark_taskrun of the component io_uring . The manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-23278 | Linux Kernel up to 6.18.18/6.19.8/7.0-rc3 netfilter nf_tables.h nf_tables privilege escalation (EUVD-2026-13614)

A vulnerability marked as critical has been reported in Linux Kernel up to 6.18.18/6.19.8/7.0-rc3 . Impacted is the function nf_tables in the library /include/net/netfilter/nf_tables.h of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-23274 | Linux Kernel up to 6.18.18/6.19.8/7.0-rc3 netfilter mod_timer uninitialized pointer (EUVD-2026-13610)

A vulnerability described as critical has been identified in Linux Kernel up to 6.18.18/6.19.8/7.0-rc3 . The affected element is the function mod_timer of the component netfilter . Such manipulation l…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33069 | pjsip pjproject up to 2.16 SIP Message pjsip_multipart_parse out-of-bounds (EUVD-2026-13632)

A vulnerability classified as problematic has been found in pjsip pjproject up to 2.16 . The impacted element is the function pjsip_multipart_parse of the component SIP Message Handler . Performing a …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33192 | Free5GC up to 1.4.1 PATCH Request information exposure

A vulnerability classified as problematic was found in Free5GC up to 1.4.1 . This affects an unknown function of the component PATCH Request Handler . Executing a manipulation can lead to information …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33067 | SiYuan up to 3.6.0 Bazaar Page cross site scripting

A vulnerability, which was classified as problematic , has been found in SiYuan up to 3.6.0 . This impacts an unknown function of the component Bazaar Page . The manipulation leads to cross site scrip…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33066 | SiYuan up to 3.6.0 lute.New cross site scripting

A vulnerability, which was classified as problematic , was found in SiYuan up to 3.6.0 . Affected is the function lute.New . The manipulation results in cross site scripting. This vulnerability is rep…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33068 | Anthropic claude-code up to 2.1.52 claude/settings.json reliance on untrusted inputs in a security decision

A vulnerability has been found in Anthropic claude-code up to 2.1.52 and classified as critical . Affected by this vulnerability is an unknown functionality of the file claude/settings.json . This man…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-33071 | error311 FileRise up to 3.7.x WebDAV Upload Endpoint createFile unrestricted upload

A vulnerability was found in error311 FileRise up to 3.7.x and classified as critical . Affected by this issue is the function createFile of the component WebDAV Upload Endpoint . Such manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-2421 | ghera74 ilGhera Carta Docente for WooCommerce Plugin up to 1.5.0 on WordPress wccd-delete-certificate cert path traversal (EUVD-2026-13636)

A vulnerability was found in ghera74 ilGhera Carta Docente for WooCommerce Plugin up to 1.5.0 on WordPress. It has been classified as critical . This affects the function wccd-delete-certificate . Per…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 20, 2026
CVE-2026-3550 | firetree RockPress Plugin up to 1.0.17 on WordPress AJAX profile.php current_user_can authorization (EUVD-2026-13655)

A vulnerability was found in firetree RockPress Plugin up to 1.0.17 on WordPress. It has been declared as problematic . This vulnerability affects the function current_user_can of the file profile.php…

VulDB Read →
← Prev 395 / 422 Next →