CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10152 articles  ·  updated every 4 hours · grows forever

10152Total
4231Full Text
Jun 29, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28460 | OpenClaw up to 2026.2.21 Double Quote os command injection (GHSA-9868-vxmx-w862)

A vulnerability was found in OpenClaw up to 2026.2.21 . It has been classified as critical . This impacts an unknown function of the component Double Quote Handler . Performing a manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31990 | OpenClaw up to 2026.3.1 stageSandboxMedia link following (GHSA-cfvj-7rx7-fc7c)

A vulnerability was found in OpenClaw up to 2026.3.1 . It has been declared as critical . Affected is the function stageSandboxMedia . Executing a manipulation can lead to link following. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31991 | OpenClaw up to 2026.2.25 authorization (GHSA-wm8r-w8pf-2v6w)

A vulnerability was found in OpenClaw up to 2026.2.25 . It has been rated as problematic . Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect authorization…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31995 | OpenClaw up to 2026.2.18 os command injection (GHSA-fg3m-vhrr-8gj6)

A vulnerability categorized as critical has been discovered in OpenClaw up to 2026.2.18 . Affected by this issue is some unknown functionality. The manipulation results in os command injection. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28070 | Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress authorization

A vulnerability identified as problematic has been detected in Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress. This affects an unknown part. This manipulation causes missing authorizat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32000 | OpenClaw up to 2026.2.18 Command Argument os command injection (GHSA-7fcc-cw49-xm78)

A vulnerability labeled as critical has been found in OpenClaw up to 2026.2.18 . This vulnerability affects unknown code of the component Command Argument Handler . Such manipulation leads to os comma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-1238 | veronalabs SlimStat Analytics Plugin up to 5.3.5 on WordPress cross site scripting

A vulnerability marked as problematic has been reported in veronalabs SlimStat Analytics Plugin up to 5.3.5 on WordPress. This issue affects some unknown processing. Performing a manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-27670 | OpenClaw up to 2026.3.1 ZIP Extraction toctou (GHSA-r54r-wmmq-mh84)

A vulnerability described as problematic has been identified in OpenClaw up to 2026.3.1 . Impacted is an unknown function of the component ZIP Extraction . Executing a manipulation can lead to time-of…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-29608 | OpenClaw up to 2026.3.1 system.run node-host Execution argument injection (GHSA-h3rm-6x7g-882f)

A vulnerability classified as critical has been found in OpenClaw up to 2026.3.1 . The affected element is an unknown function of the component system.run node-host Execution . The manipulation leads …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2025-36051 | IBM QRadar SIEM up to 7.5.0 UP14 Configuration file information disclosure

A vulnerability classified as problematic was found in IBM QRadar SIEM up to 7.5.0 UP14 . The impacted element is an unknown function of the component Configuration Handler . The manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31993 | OpenClaw up to 2026.2.21 incomplete blacklist (GHSA-5f9p-f3w2-fwch)

A vulnerability, which was classified as critical , has been found in OpenClaw up to 2026.2.21 . This affects an unknown function. This manipulation causes incomplete blacklist. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31989 | OpenClaw up to 2026.3.0 Network Request web_search server-side request forgery (GHSA-g99v-8hwm-g76g)

A vulnerability, which was classified as critical , was found in OpenClaw up to 2026.3.0 . This impacts the function web_search of the component Network Request Handler . Such manipulation leads to se…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31994 | OpenClaw up to 2026.2.18 Windows Scheduled Task Script Generation os command injection (GHSA-mqr9-vqhq-3jxw)

A vulnerability has been found in OpenClaw up to 2026.2.18 and classified as critical . Affected is an unknown function of the component Windows Scheduled Task Script Generation . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-31998 | OpenClaw up to 2026.2.23 authorization (GHSA-gw85-xp4q-5gp9)

A vulnerability was found in OpenClaw up to 2026.2.23 and classified as problematic . Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to incorrect authori…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28044 | WP Media WP Rocket Plugin up to 3.19.4 on WordPress cross site scripting

A vulnerability was found in WP Media WP Rocket Plugin up to 3.19.4 on WordPress. It has been classified as problematic . Affected by this issue is some unknown functionality. The manipulation leads t…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-28073 | Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress cross site scripting

A vulnerability was found in Tips and Tricks HQ WP eMember Plugin up to 10.2.2 on WordPress. It has been declared as problematic . This affects an unknown part. The manipulation results in cross site …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4120 | bplugins Info Cards Plugin up to 2.0.7 on WordPress URL Protocol render.php esc_attr btnUrl cross site scripting

A vulnerability was found in bplugins Info Cards Plugin up to 2.0.7 on WordPress. It has been rated as problematic . This vulnerability affects the function esc_attr of the file render.php of the comp…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-27093 | Ovatheme Tripgo Plugin up to 1.5.5 on WordPress filename control

A vulnerability categorized as problematic has been discovered in Ovatheme Tripgo Plugin up to 1.5.5 on WordPress. This issue affects some unknown processing. Such manipulation leads to improper contr…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-2571 | codename065 Download Manager Plugin up to 3.3.49 on WordPress reviewUserStatus information disclosure

A vulnerability identified as problematic has been detected in codename065 Download Manager Plugin up to 3.3.49 on WordPress. Impacted is the function reviewUserStatus . Performing a manipulation resu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4068 | pattihis Add Custom Fields to Media Plugin up to 2.0.3 on WordPress update_option cross-site request forgery

A vulnerability labeled as problematic has been found in pattihis Add Custom Fields to Media Plugin up to 2.0.3 on WordPress. The affected element is the function update_option . Executing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-27091 | UiPress lite Plugin up to 3.5.09 on WordPress authorization

A vulnerability marked as critical has been reported in UiPress lite Plugin up to 3.5.09 on WordPress. The impacted element is an unknown function. The manipulation leads to missing authorization. Thi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-4006 | dartiss Draft List Plugin up to 2.6.2 on WordPress Shortcode WP_Post::__get cross site scripting

A vulnerability described as problematic has been identified in dartiss Draft List Plugin up to 2.6.2 on WordPress. This affects the function WP_Post::__get of the component Shortcode Handler . The ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CISA Warns of Actively Exploited Google Chromium 0‑Day Vulnerability - gbhackers.com

CISA Warns of Actively Exploited Google Chromium 0‑Day Vulnerability gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs Mar 19, 2026
CVE-2026-32743 | PX4 PX4-Autopilot up to 1.17.0-rc2 sscanf stack-based overflow (EUVD-2026-13003)

A vulnerability was found in PX4 PX4-Autopilot up to 1.17.0-rc2 and classified as critical . Impacted is the function sscanf . The manipulation results in stack-based buffer overflow. This vulnerabili…

VulDB Read →
← Prev 404 / 423 Next →