CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10213 articles  ·  updated every 4 hours · grows forever

10213Total
4232Full Text
Jun 30, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-40521 | FrontAccounting up to 2.4.19 PHP File unique_name path traversal

A vulnerability, which was classified as critical , has been found in FrontAccounting up to 2.4.19 . This affects an unknown function of the component PHP File Handler . Performing a manipulation of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13676 | fast-uri up to 3.1.2/4.0.0 normalize/equal interpretation conflict (GHSA-4c8g-83qw-93j6)

A vulnerability, which was classified as problematic , was found in fast-uri up to 3.1.2/4.0.0 . This impacts the function normalize/equal . Executing a manipulation can lead to interpretation conflic…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-40522 | FrontAccounting up to 2.4.19 POST Parameter PARAM_0 sql injection

A vulnerability has been found in FrontAccounting up to 2.4.19 and classified as critical . Affected is an unknown function of the component POST Parameter Handler . The manipulation of the argument P…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-40523 | FrontAccounting up to 2.4.19 PARAM_2/PARAM_3 sql injection

A vulnerability was found in FrontAccounting up to 2.4.19 and classified as critical . Affected by this vulnerability is an unknown functionality. The manipulation of the argument PARAM_2/PARAM_3 resu…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-40524 | FrontAccounting up to 2.4.19 get_gl_transactions filter_type sql injection

A vulnerability was found in FrontAccounting up to 2.4.19 . It has been classified as critical . Affected by this issue is the function get_gl_transactions . This manipulation of the argument filter_t…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-56457 | HCL HCL DevOps Deploy/HCL Launch up to 7.3.2.18/8.0.1.13/8.1.2.6/8.2.1.0 log file (KB0131694)

A vulnerability was found in HCL HCL DevOps Deploy and HCL Launch up to 7.3.2.18/8.0.1.13/8.1.2.6/8.2.1.0 . It has been declared as problematic . This affects an unknown part. Such manipulation leads …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-54370 | acl up to 2.3.x Pathname lstat toctou

A vulnerability was found in acl up to 2.3.x . It has been rated as problematic . This vulnerability affects the function lstat of the component Pathname . Performing a manipulation results in time-of…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-54369 | acl up to 2.3.x link following

A vulnerability categorized as critical has been discovered in acl up to 2.3.x . This issue affects the function acl_get_file/acl_set_file/acl_extended_file/acl_delete_def_file . Executing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-12616 | Eclipse CSI up to 0.2.1 Audit Trail Service /v1/upload/sbom neutralization for logs

A vulnerability identified as problematic has been detected in Eclipse CSI up to 0.2.1 . Impacted is an unknown function of the file /v1/upload/sbom of the component Audit Trail Service . The manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-11979 | Xmlsoft libxml2 up to 2.15.3 Xmlcatalog Utility usershell stack-based overflow

A vulnerability labeled as critical has been found in Xmlsoft libxml2 up to 2.15.3 . The affected element is the function usershell of the component Xmlcatalog Utility . The manipulation results in st…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-12856 | Red Hat OpenShift Dev Spaces vscode-java Extension argument injection (GHSA-7qv8-6qrw-3crv)

A vulnerability marked as critical has been reported in Red Hat OpenShift Dev Spaces . The impacted element is an unknown function of the component vscode-java Extension . This manipulation causes arg…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13165 | Krajowa Izba Rozliczeniowa SzafirHost up to 1.2.1 JarFile Parser unrestricted upload

A vulnerability described as critical has been identified in Krajowa Izba Rozliczeniowa SzafirHost up to 1.2.1 . This affects an unknown function of the component JarFile Parser . Such manipulation le…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-54371 | acl up to 2.5.x Pathname link following

A vulnerability classified as critical has been found in acl up to 2.5.x . This impacts an unknown function of the component Pathname . Performing a manipulation results in link following. This vulner…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2025-0824 | Hitachi Virtual Storage Platform One Block 23/24/26/28 Firmware Update signature verification (EUVD-2025-210367)

A vulnerability classified as problematic has been found in Hitachi Virtual Storage Platform One Block 23/24/26/28 . This vulnerability affects unknown code of the component Firmware Update Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2025-2902 | Hitachi Virtual Storage Platform F900 authorization (EUVD-2025-210368)

A vulnerability classified as critical was found in Hitachi Virtual Storage Platform E390, Virtual Storage Platform E590, Virtual Storage Platform E790, Virtual Storage Platform E990, Virtual Storage …

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2025-7386 | Hitachi Virtual Storage Platform VX7 insufficiently protected credentials (EUVD-2025-210366)

A vulnerability, which was classified as problematic , has been found in Hitachi Virtual Storage Platform 5100, Virtual Storage Platform 5200, Virtual Storage Platform 5500, Virtual Storage Platform 5…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-10083 | APCu Manager Plugin up to 4.4.x on WordPress cross site scripting (EUVD-2026-40039)

A vulnerability, which was classified as problematic , was found in APCu Manager Plugin up to 4.4.x on WordPress. The affected element is an unknown function. Such manipulation leads to cross site scr…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-9676 | F4 Post Tree Plugin up to 2.0.4 on WordPress AJAX Action authorization (EUVD-2026-40040)

A vulnerability has been found in F4 Post Tree Plugin up to 2.0.4 on WordPress and classified as critical . The impacted element is an unknown function of the component AJAX Action Handler . Performin…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13587 | seladb PcapPlusPlus 25.05 LightPcapNg Parser light_pcapng.c parse_by_block_type captured_packet_length heap-based overflow (Issue 2149)

A vulnerability was found in seladb PcapPlusPlus 25.05 . It has been classified as critical . The affected element is the function parse_by_block_type of the file light_pcapng.c of the component Light…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13588 | seladb PcapPlusPlus 25.05 TLS Hello SSLHandshake.cpp getHandshakeVersion handshakeVersion heap-based overflow (Issue 2151)

A vulnerability was found in seladb PcapPlusPlus 25.05 . It has been declared as critical . The impacted element is the function pcpp::SSLClientHelloMessage::getHandshakeVersion of the file Packet++/s…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13589 | seladb PcapPlusPlus 25.05 Telnet Subnegotiation Packet TelnetLayer.cpp getSubCommand heap-based overflow (Issue 2152)

A vulnerability was found in seladb PcapPlusPlus 25.05 . It has been rated as critical . This affects the function pcpp::TelnetLayer::getSubCommand of the file Packet++/src/TelnetLayer.cpp of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13590 | seladb PcapPlusPlus 25.05 Modbus Protocol ModbusLayer.h getLength length heap-based overflow (Issue 2155)

A vulnerability categorized as critical has been discovered in seladb PcapPlusPlus 25.05 . This impacts the function pcpp::ModbusLayer::getLength in the library Packet++/header/ModbusLayer.h of the co…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2026-13591 | DeepMyst Mysti 0.4.0 Contact Tracking ChannelBridge.ts _isTrackedConversation _channelType improper authorization (Issue 42)

A vulnerability identified as critical has been detected in DeepMyst Mysti 0.4.0 . Affected is the function _isTrackedConversation of the file src/managers/ChannelBridge.ts of the component Contact Tr…

VulDB Read →
⬡ Vulnerabilities & CVEs Jun 29, 2026
CVE-2025-15666 | Open Asset Import Library Assimp up to 5.4.3 Model File SceneCombiner.cpp Copy width/height heap-based overflow (Issue 6079)

A vulnerability labeled as problematic has been found in Open Asset Import Library Assimp up to 5.4.3 . Affected by this vulnerability is the function Assimp::SceneCombiner::Copy of the file code/Comm…

VulDB Read →
← Prev 4 / 426 Next →