CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5713 articles  ·  updated every 4 hours · grows forever

5713Total
4036Full Text
May 17, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2018-25291 | Pj64-Emu Project64 2.3.2 Directories Interface buffer overflow (Exploit 45229)

A vulnerability, which was classified as critical , was found in Pj64-Emu Project64 2.3.2 . This issue affects some unknown processing of the component Directories Interface . Executing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2026-40557 | Apache Storm Prometheus Reporter up to 2.8.6 certificate validation

A vulnerability has been found in Apache Storm Prometheus Reporter up to 2.8.6 and classified as critical . Impacted is an unknown function. The manipulation leads to improper certificate validation. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2026-41081 | Apache Storm Client up to 2.8.6 TLS Client Authentication Failure certificate validation

A vulnerability was found in Apache Storm Client up to 2.8.6 and classified as critical . The affected element is an unknown function of the component TLS Client Authentication Failure Handler . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2026-7107 | code-projects Invoice System in Laravel 1.0 /company logo unrestricted upload

A vulnerability was found in code-projects Invoice System in Laravel 1.0 . It has been classified as critical . The impacted element is an unknown function of the file /company . This manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2026-7108 | code-projects Invoice System in Laravel 1.0 cross-site request forgery

A vulnerability was found in code-projects Invoice System in Laravel 1.0 . It has been declared as problematic . This affects an unknown function. Such manipulation leads to cross-site request forgery…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2026-7109 | code-projects Invoice System in Laravel 1.0 API Endpoint /item improper authorization

A vulnerability was found in code-projects Invoice System in Laravel 1.0 . It has been rated as critical . This impacts an unknown function of the file /item of the component API Endpoint . Performing…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
CVE-2026-7110 | code-projects Invoice System in Laravel 1.0 /item item name/description cross site scripting

A vulnerability categorized as problematic has been discovered in code-projects Invoice System in Laravel 1.0 . Affected is an unknown function of the file /item . Executing a manipulation of the argu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 26, 2026
Critical Vulnerability in Microsoft Office Allows Malicious Code to Run Remotely - gbhackers.com

Critical Vulnerability in Microsoft Office Allows Malicious Code to Run Remotely gbhackers.com

gbhackers.com Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6995 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 New User Page /index.asp User name cross site scripting

A vulnerability was found in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . It has been classified as problematic . The impacted element is an unknown function of the file /index.asp of the component New Us…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6996 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 rmon event Tab Description cross site scripting

A vulnerability was found in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . It has been declared as problematic . This affects an unknown function of the component rmon event Tab . Executing a manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6997 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 New RMON History Page Owner cross site scripting

A vulnerability was found in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . It has been rated as problematic . This impacts an unknown function of the component New RMON History Page . The manipulation of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6998 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 New RMON Statistics Page Owner cross site scripting

A vulnerability categorized as problematic has been discovered in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . Affected is an unknown function of the component New RMON Statistics Page . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6999 | BIVOCOM TR321 21.1.1.50 Wireless Setting Network Name SSID cross site scripting

A vulnerability identified as problematic has been detected in BIVOCOM TR321 21.1.1.50 . Affected by this vulnerability is an unknown functionality of the component Wireless Setting . This manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-7000 | Datacom DM4100 1.3.6.1.4.1.3709 VLAN Page VLAN Name cross site scripting

A vulnerability labeled as problematic has been found in Datacom DM4100 1.3.6.1.4.1.3709 . Affected by this issue is some unknown functionality of the component VLAN Page . Such manipulation of the ar…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-7001 | Datacom DM4100 1.3.6.1.4.1.3709 Ethernet Configuration Page Name cross site scripting

A vulnerability marked as problematic has been reported in Datacom DM4100 1.3.6.1.4.1.3709 . This affects an unknown part of the component Ethernet Configuration Page . Performing a manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-7002 | KLiK SocialMediaWebsite up to 1.0.1 Private Message get_message_ajax.php c_id sql injection

A vulnerability described as critical has been identified in KLiK SocialMediaWebsite up to 1.0.1 . This vulnerability affects unknown code of the file /includes/get_message_ajax.php of the component P…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41475 | bacnet-stack BACnet Stack up to 1.4.2 WritePropertyMultiple Service wpm_decode_object_property out-of-bounds (GHSA-cvv4-v3g6-4jmv / EUVD-2026-25621)

A vulnerability classified as problematic has been found in bacnet-stack BACnet Stack up to 1.4.2 . This issue affects the function wpm_decode_object_property of the component WritePropertyMultiple Se…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41502 | bacnet-stack BACnet Stack up to 1.4.2 ReadPropertyMultiple Service src/bacnet/rpm.c rpm_decode_object_id out-of-bounds (GHSA-7545-3fpx-4xw3 / EUVD-2026-25624)

A vulnerability classified as problematic was found in bacnet-stack BACnet Stack up to 1.4.2 . Impacted is the function rpm_decode_object_id of the file src/bacnet/rpm.c of the component ReadPropertyM…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41503 | bacnet-stack BACnet Stack up to 1.4.2 ReadPropertyMultiple Service src/bacnet/rpm.c rpm_decode_object_property out-of-bounds (GHSA-5w2v-mwqj-pr2c / EUVD-2026-25625)

A vulnerability, which was classified as problematic , has been found in bacnet-stack BACnet Stack up to 1.4.2 . The affected element is the function rpm_decode_object_property of the file src/bacnet/…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41476 | Deskflow up to 1.26.0.138 IClipboard.cpp ClipboardChunk::assemble buffer overflow (GHSA-3jp5-g964-cgmh / EUVD-2026-25622)

A vulnerability, which was classified as critical , was found in Deskflow up to 1.26.0.138 . The impacted element is the function ClipboardChunk::assemble in the library src/lib/deskflow/IClipboard.cp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6966 | AWS tough/tuftool 0.22.0/up to 0.21 signature verification (EUVD-2026-25627)

A vulnerability has been found in AWS tough and tuftool 0.22.0/up to 0.21 and classified as problematic . This affects an unknown function. Performing a manipulation results in improper verification o…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6968 | AWS tough/tuftool prior 0.22.0 copy_target/link_target path traversal (EUVD-2026-25629)

A vulnerability was found in AWS tough and tuftool and classified as critical . This impacts the function copy_target/link_target . Executing a manipulation can lead to path traversal. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6967 | AWS tough/tuftool up to 0.21.x load_delegations data authenticity (EUVD-2026-25628)

A vulnerability was found in AWS tough and tuftool up to 0.21.x . It has been classified as problematic . Affected is the function load_delegations . The manipulation leads to insufficient verificatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41477 | deskflow up to 1.20.0/1.26.0.134 missing authentication (GHSA-6rx5-g478-775c / EUVD-2026-25623)

A vulnerability was found in deskflow up to 1.20.0/1.26.0.134 . It has been declared as critical . Affected by this vulnerability is an unknown functionality. The manipulation results in missing authe…

VulDB Read →
← Prev 47 / 239 Next →