CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5717 articles  ·  updated every 4 hours · grows forever

5717Total
4037Full Text
May 18, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-4106 | HT Mega Addons for Elementor Plugin up to 3.0.6 on WordPress Ajax Action information disclosure

A vulnerability was found in HT Mega Addons for Elementor Plugin up to 3.0.6 on WordPress. It has been declared as problematic . This vulnerability affects unknown code of the component Ajax Action Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-4512 | WebDesignBy reCaptcha Plugin up to 1.x on WordPress Setting grecaptcha_js cross site scripting

A vulnerability was found in WebDesignBy reCaptcha Plugin up to 1.x on WordPress. It has been rated as problematic . This issue affects the function grecaptcha_js of the component Setting Handler . Pe…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34488 | i-PRO IP Setting Software up to 5.19 uncontrolled search path

A vulnerability categorized as problematic has been discovered in i-PRO IP Setting Software up to 5.19 . Impacted is an unknown function. Executing a manipulation can lead to uncontrolled search path.…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-4367 | X.org libXpm up to 3.5.4 xpmNextWord out-of-bounds (5448e1bd)

A vulnerability identified as problematic has been detected in X.org libXpm up to 3.5.4 . The affected element is the function xpmNextWord . The manipulation leads to out-of-bounds read. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
Microsoft Defender 0-Day Vulnerability Enables Privilege Escalation Attack - CyberSecurityNews

Microsoft Defender 0-Day Vulnerability Enables Privilege Escalation Attack CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa Ransomware - The Hacker News

China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa Ransomware The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621 - The Hacker News

Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621 The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34413 | thexerteproject xerteonlinetoolkits up to 3.13.0/3.14.0/3.15.0 elFinder Connector Endpoint connector.php exposure of sensitive system information to an unauthorized control sphere (ID 1527)

A vulnerability classified as critical was found in thexerteproject xerteonlinetoolkits up to 3.13.0/3.14.0/3.15.0 . This issue affects some unknown processing of the file /editor/elfinder/php/connect…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-41459 | thexerteproject xerteonlinetoolkits up to 3.15.0 GET Request /setup root_path exposure of sensitive system information to an unauthorized control sphere (ID 1527)

A vulnerability, which was classified as problematic , has been found in thexerteproject xerteonlinetoolkits up to 3.15.0 . Impacted is an unknown function of the file /setup of the component GET Requ…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34063 | nimiq core-rs-albatross up to 1.2.x assertion (GHSA-74hp-mhfx-m45h)

A vulnerability, which was classified as problematic , was found in nimiq core-rs-albatross up to 1.2.x . The affected element is an unknown function. The manipulation results in reachable assertion. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34414 | thexerteproject xerteonlinetoolkits up to 3.13.0/3.14.0/3.15.0 elFinder Connector Endpoint connector.php rename Name path traversal (ID 1527)

A vulnerability has been found in thexerteproject xerteonlinetoolkits up to 3.13.0/3.14.0/3.15.0 and classified as critical . The impacted element is the function rename of the file /editor/elfinder/p…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34415 | thexerteproject xerteonlinetoolkits up to 3.13.0/3.14.0/3.15.0 elFinder Connector Endpoint incomplete blacklist (ID 1527)

A vulnerability was found in thexerteproject xerteonlinetoolkits up to 3.13.0/3.14.0/3.15.0 and classified as critical . This affects an unknown function of the component elFinder Connector Endpoint .…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34066 | nimiq core-rs-albatross up to 1.2.x put_historic_txns assertion (GHSA-j99g-7rqw-q9jg)

A vulnerability was found in nimiq core-rs-albatross up to 1.2.x . It has been classified as problematic . This impacts the function HistoryStore::put_historic_txns . Performing a manipulation results…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34062 | nimiq core-rs-albatross up to 1.2.x read_to_end allocation of resources (GHSA-gh7r-qh4p-q4fr)

A vulnerability was found in nimiq core-rs-albatross up to 1.2.x . It has been declared as problematic . Affected is the function read_to_end . Executing a manipulation can lead to allocation of resou…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34064 | nimiq core-rs-albatross up to 1.2.x can_change_balance integer underflow (GHSA-vc34-39q2-m6q3)

A vulnerability was found in nimiq core-rs-albatross up to 1.2.x . It has been rated as problematic . Affected by this vulnerability is the function VestingContract::can_change_balance . The manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34065 | nimiq core-rs-albatross up to 1.2.x Validators::voting_keys return value (GHSA-7c4j-2m43-2mgh)

A vulnerability categorized as problematic has been discovered in nimiq core-rs-albatross up to 1.2.x . Affected by this issue is the function Validators::voting_keys . The manipulation results in unc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-6019 | Python CPython up to 3.14.x HTML Parser http.cookies.Morsel.js_output control sequence (ID 90309)

A vulnerability identified as problematic has been detected in Python CPython up to 3.14.x . This affects the function http.cookies.Morsel.js_output of the component HTML Parser . This manipulation ca…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-33656 | EspoCRM up to 9.3.3 getFilePath sourceId path traversal

A vulnerability labeled as critical has been found in EspoCRM up to 9.3.3 . This vulnerability affects the function EspoUploadDir::getFilePath . Such manipulation of the argument sourceId leads to pat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-33733 | EspoCRM up to 9.3.3 Admin Template Management Endpoint name/scope path traversal

A vulnerability marked as problematic has been reported in EspoCRM up to 9.3.3 . This issue affects some unknown processing of the component Admin Template Management Endpoint . Performing a manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34067 | nimiq core-rs-albatross up to 1.2.x HistoryTreeProof::verify assertion

A vulnerability described as problematic has been identified in nimiq core-rs-albatross up to 1.2.x . Impacted is the function HistoryTreeProof::verify . Executing a manipulation can lead to reachable…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-34068 | nimiq core-rs-albatross up to 1.2.x signature verification

A vulnerability classified as problematic has been found in nimiq core-rs-albatross up to 1.2.x . The affected element is an unknown function. The manipulation leads to improper verification of crypto…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-33471 | nimiq core-rs-albatross up to 1.2.x SkipBlockProof::verify input validation (GHSA-6973-8887-87ff)

A vulnerability classified as problematic was found in nimiq core-rs-albatross up to 1.2.x . The impacted element is the function SkipBlockProof::verify . The manipulation results in improper input va…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-3673 | Frappe 16.10.10 Tag _user_tags cross site scripting

A vulnerability, which was classified as problematic , has been found in Frappe 16.10.10 . This affects an unknown function of the component Tag Handler . This manipulation of the argument _user_tags …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 23, 2026
CVE-2026-3837 | Frappe 16.10.0 cross site scripting

A vulnerability, which was classified as problematic , was found in Frappe 16.10.0 . This impacts an unknown function. Such manipulation leads to cross site scripting. This vulnerability is referenced…

VulDB Read →
← Prev 57 / 239 Next →