CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  10313 articles  ·  updated every 4 hours · grows forever

10313Total
4235Full Text
Jun 30, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs
CVE-2026-2049 | GIMP HDR File Parser heap-based overflow

A vulnerability classified as critical has been found in GIMP . This vulnerability affects unknown code of the component HDR File Parser . This manipulation causes heap-based buffer overflow. This vul…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-2046 | GIMP LBM File Parser heap-based overflow

A vulnerability described as critical has been identified in GIMP . This affects an unknown part of the component LBM File Parser . The manipulation results in heap-based buffer overflow. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2022-1972 | Linux Kernel nf_tables_newset out-of-bounds write

A vulnerability marked as critical has been reported in Linux Kernel . Affected by this issue is some unknown functionality of the component nf_tables_newset . The manipulation leads to out-of-bounds …

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4177 | TODDR YAML::Syck up to 1.36 on Perl base64 Decoder heap-based overflow

A vulnerability labeled as critical has been found in TODDR YAML::Syck up to 1.36 on Perl. Affected by this vulnerability is an unknown functionality of the component base64 Decoder . Executing a mani…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-2579 | wpxpo WowStore Plugin up to 4.4.3 on WordPress sql injection

A vulnerability identified as critical has been detected in wpxpo WowStore Plugin up to 4.4.3 on WordPress. Affected is an unknown function. Performing a manipulation results in sql injection. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs
Android Security Update Fixes 129 Vulnerabilities, Including Actively Exploited Zero-Day - cyberpress.org

Android Security Update Fixes 129 Vulnerabilities, Including Actively Exploited Zero-Day cyberpress.org

cyberpress.org Read →
⬡ Vulnerabilities & CVEs
Cisco Unified Communications 0-day RCE Vulnerability Exploited in the Wild to Gain Root Access - CyberSecurityNews

Cisco Unified Communications 0-day RCE Vulnerability Exploited in the Wild to Gain Root Access CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs
CVE-2026-3312 | Pagure reStructuredText File path traversal

A vulnerability was found in Pagure . It has been rated as critical . Affected by this vulnerability is an unknown functionality of the component reStructuredText File Handler . Performing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-2373 | wproyal Royal Addons for Elementor Plugin up to 1.7.1049 on WordPress get_main_query_args authorization (EUVD-2026-12537)

A vulnerability was found in wproyal Royal Addons for Elementor Plugin up to 1.7.1049 on WordPress. It has been declared as problematic . Affected is the function get_main_query_args . Such manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4258 | sjcl sjcl.ecc.basicKey.publicKey signature verification (SNYK-JS-SJCL-15369617 / EUVD-2026-12542)

A vulnerability was found in sjcl . It has been classified as problematic . This impacts the function sjcl.ecc.basicKey.publicKey . This manipulation causes improper verification of cryptographic sign…

VulDB Read →
⬡ Vulnerabilities & CVEs
NSA Joins ASD’s ACSC and Others to Release a Cybersecurity Alert and Related Hunt Guide on - National Security Agency (.gov)

NSA Joins ASD’s ACSC and Others to Release a Cybersecurity Alert and Related Hunt Guide on National Security Agency (.gov)

National Security Agency (.gov) Read →
⬡ Vulnerabilities & CVEs
Zero-Day in Microsoft SQL Server Allows Attackers to Escalate Privileges - Cyber Press

Zero-Day in Microsoft SQL Server Allows Attackers to Escalate Privileges Cyber Press

Cyber Press Read →
⬡ Vulnerabilities & CVEs
Ivanti Endpoint Manager Vulnerability Lets Remote Attacker Leak Arbitrary Data - CyberSecurityNews

Ivanti Endpoint Manager Vulnerability Lets Remote Attacker Leak Arbitrary Data CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs
Multiple Elastic Vulnerabilities Could Lead to File Theft and DoS - gbhackers.com

Multiple Elastic Vulnerabilities Could Lead to File Theft and DoS gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4319 | code-projects Simple Food Order System 1.0 /routers/add-item.php price sql injection

A vulnerability was found in code-projects Simple Food Order System 1.0 and classified as critical . Affected by this vulnerability is an unknown functionality of the file /routers/add-item.php . Such…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4318 | UTT HiPER 810G up to 1.7.7-171114 /goform/formApLbConfig strcpy loadBalanceNameOld buffer overflow

A vulnerability has been found in UTT HiPER 810G up to 1.7.7-171114 and classified as critical . Affected is the function strcpy of the file /goform/formApLbConfig . This manipulation of the argument …

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-28779 | Apache Airflow up to 3.1.7 HTTP Request Header exposure of resource

A vulnerability, which was classified as problematic , was found in Apache Airflow up to 3.1.7 . This impacts an unknown function of the component HTTP Request Header Handler . The manipulation result…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4202 | Redirect Tabs Extension up to 2.1.1/3.1.6/4.0.4 on TYPO3 authorization

A vulnerability, which was classified as problematic , has been found in Redirect Tabs Extension up to 2.1.1/3.1.6/4.0.4 on TYPO3. This affects an unknown function. The manipulation leads to missing a…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4208 | E-Mail MFA Provider Extension up to 2.0.0 on TYPO3 authorization

A vulnerability classified as problematic was found in E-Mail MFA Provider Extension up to 2.0.0 on TYPO3. The impacted element is an unknown function. Executing a manipulation can lead to authorizati…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-1323 | Mailqueue Extension up to 0.4.4/0.5.1 on TYPO3 deserialization

A vulnerability classified as critical has been found in Mailqueue Extension up to 0.4.4/0.5.1 on TYPO3. The affected element is an unknown function. Performing a manipulation results in deserializati…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-23241 | Linux Kernel up to 6.19.5 audit /tmp/test getxattr information disclosure

A vulnerability described as critical has been identified in Linux Kernel up to 6.19.5 . Impacted is the function getxattr of the file /tmp/test of the component audit . Such manipulation leads to inf…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2025-71239 | Linux Kernel up to 6.19.5 audit fchmodat2 privilege escalation

A vulnerability marked as critical has been reported in Linux Kernel up to 6.19.5 . This issue affects the function fchmodat2 of the component audit . This manipulation causes privilege escalation. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-4312 | DrangSoft GCB FCB Audit Software prior 20260108 missing authentication

A vulnerability labeled as critical has been found in DrangSoft GCB FCB Audit Software . This vulnerability affects unknown code. The manipulation results in missing authentication. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs
CVE-2026-3237 | Octopus Deploy Octopus Server up to 2025.3.14730/2025.4.10358/2026.1.5570 API Endpoint permission

A vulnerability identified as critical has been detected in Octopus Deploy Octopus Server up to 2025.3.14730/2025.4.10358/2026.1.5570 . This affects an unknown part of the component API Endpoint . The…

VulDB Read →
← Prev 422 / 430 Next →