CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5717 articles  ·  updated every 4 hours · grows forever

5717Total
4037Full Text
May 18, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-31531 | Linux Kernel up to 6.12.82/6.18.23/6.19.13 ipv4 net/ipv4/nexthop.c rtm_get_nexthop allocation of resources (EUVD-2026-25218)

A vulnerability classified as critical was found in Linux Kernel up to 6.12.82/6.18.23/6.19.13 . Affected by this vulnerability is the function rtm_get_nexthop of the file net/ipv4/nexthop.c of the co…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-6903 | Zurich Instruments LabOne prior 26.01.3.9 User Interface path traversal (EUVD-2026-25215)

A vulnerability, which was classified as critical , has been found in Zurich Instruments LabOne . Affected by this issue is some unknown functionality of the component User Interface . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-31532 | Linux Kernel up to 6.12.82/6.18.23/6.19.13/7.0.0 raw_rcv use after free (EUVD-2026-25219)

A vulnerability, which was classified as critical , was found in Linux Kernel up to 6.12.82/6.18.23/6.19.13/7.0.0 . This affects the function raw_rcv . The manipulation results in use after free. This…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-5464 | smub ExactMetrics Plugin up to 9.1.2 on WordPress Google Analytics Dashboard connect-url onboarding_key File authorization

A vulnerability has been found in smub ExactMetrics Plugin up to 9.1.2 on WordPress and classified as problematic . This vulnerability affects the function onboarding_key of the file /wp-json/exactmet…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-3259 | Google Cloud BigQuery up to 0.x/28 information exposure

A vulnerability was found in Google Cloud BigQuery up to 0.x/28 and classified as problematic . This issue affects some unknown processing. Such manipulation leads to information exposure through erro…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-6885 | BorG SPM 2007 unrestricted upload (EUVD-2026-25209)

A vulnerability was found in BorG SPM 2007 . It has been classified as critical . Impacted is an unknown function. Performing a manipulation results in unrestricted upload. This vulnerability was name…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-6886 | BorG SPM 2007 weak authentication (EUVD-2026-25211)

A vulnerability was found in BorG SPM 2007 . It has been declared as very critical . The affected element is an unknown function. Executing a manipulation can lead to weak authentication. The identifi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-6887 | BorG SPM 2007 sql injection (EUVD-2026-25213)

A vulnerability was found in BorG SPM 2007 . It has been rated as critical . The impacted element is an unknown function. The manipulation leads to sql injection. This vulnerability is referenced as C…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2025-62104 | Navneil Naicker ACF Galerie 4 Plugin up to 1.4.2 on WordPress authorization

A vulnerability categorized as critical has been discovered in Navneil Naicker ACF Galerie 4 Plugin up to 1.4.2 on WordPress. This affects an unknown function. The manipulation results in missing auth…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-28040 | Magepeople Taxi Booking Manager for WooCommerce Plugin up to 2.0.0 on WordPress cross site scripting (EUVD-2026-25217)

A vulnerability identified as problematic has been detected in Magepeople Taxi Booking Manager for WooCommerce Plugin up to 2.0.0 on WordPress. This impacts an unknown function. This manipulation caus…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2025-62110 | Rescue Themes Rescue Shortcodes Plugin up to 3.3 on WordPress cross site scripting

A vulnerability labeled as problematic has been found in Rescue Themes Rescue Shortcodes Plugin up to 3.3 on WordPress. Affected is an unknown function. Such manipulation leads to cross site scripting…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2025-13763 | libopensc up to 0.26.x USB Device uninitialized pointer (EUVD-2025-209564)

A vulnerability marked as problematic has been reported in libopensc up to 0.26.x . Affected by this vulnerability is an unknown functionality of the component USB Device Handler . Performing a manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-39440 | Funnelforms FunnelFormsPro Plugin up to 3.8.1 on WordPress Inclusion.This code injection

A vulnerability described as critical has been identified in Funnelforms FunnelFormsPro Plugin up to 3.8.1 on WordPress. Affected by this issue is the function Inclusion.This . Executing a manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2025-66286 | WebKitGTK/WPE WebKit WebPage::send-request authorization (EUVD-2025-209565)

A vulnerability classified as problematic has been found in WebKitGTK and WPE WebKit . This affects the function WebPage::send-request . The manipulation leads to authorization bypass. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-41460 | SocialEngine up to 7.8.0 get-memberall text sql injection

A vulnerability classified as critical was found in SocialEngine up to 7.8.0 . This vulnerability affects unknown code of the file /activity/index/get-memberall . The manipulation of the argument text…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-35225 | CODESYS EtherNetIP 4.1.0.0 TCP Connection unusual condition (vde-2026-040)

A vulnerability, which was classified as problematic , has been found in CODESYS EtherNetIP 4.1.0.0 . This issue affects some unknown processing of the component TCP Connection Handler . This manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-41461 | SocialEngine up to 7.8.0 Request Parameter /core/link/preview server-side request forgery

A vulnerability, which was classified as critical , was found in SocialEngine up to 7.8.0 . Impacted is an unknown function of the file /core/link/preview of the component Request Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2025-70994 | Yadea T5 Electric Bicycles Keyless Entry System authentication replay

A vulnerability has been found in Yadea T5 Electric Bicycles and classified as critical . The affected element is an unknown function of the component Keyless Entry System . Performing a manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CISA, National Cyber Security Centre (NCSC) UK, and Global Partners Issue Advisory on Chinese Government-Linked Covert Cyber Networks
CISA Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-41564 | MIK CryptX up to 0.087 on Perl X25519 X25519 Modules prng seed (GHSA-24c2-gp6c-24c6 / EUVD-2026-25201)

A vulnerability labeled as problematic has been found in MIK CryptX up to 0.087 on Perl. The impacted element is the function Crypt::PK::RSA/Crypt::PK::DSA/Crypt::PK::DH/Crypt::PK::ECC/Crypt::PK::Ed25…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2025-10549 | EfficientLab Controlio up to 1.3.94 uncontrolled search path (EUVD-2025-209559)

A vulnerability marked as problematic has been reported in EfficientLab Controlio up to 1.3.94 . This affects an unknown function. This manipulation causes uncontrolled search path. This vulnerability…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-41040 | GROWI redos (EUVD-2026-25199)

A vulnerability described as problematic has been identified in GROWI . This impacts an unknown function. Such manipulation leads to inefficient regular expression complexity. This vulnerability is do…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-2951 | Gutentor Plugin up to 3.5.5 on WordPress Gutenberg Block cross site scripting

A vulnerability categorized as problematic has been discovered in Gutentor Plugin up to 3.5.5 on WordPress. Affected is an unknown function of the component Gutenberg Block Handler . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-1923 | socialrocket Social Rocket Plugin up to 1.3.4.2 on WordPress cross site scripting

A vulnerability identified as problematic has been detected in socialrocket Social Rocket Plugin up to 1.3.4.2 on WordPress. Affected by this vulnerability is an unknown functionality. This manipulati…

VulDB Read →
← Prev 55 / 239 Next →