CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5784 articles  ·  updated every 4 hours · grows forever

5784Total
4039Full Text
May 18, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-31369 | Honor PcManager 1.0.0.2 denial of service (EUVD-2026-24065)

A vulnerability was found in Honor PcManager 1.0.0.2 . It has been declared as problematic . The impacted element is an unknown function. Executing a manipulation can lead to denial of service. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-31368 | Honor AIAssistant 90.0.12.010 Local Privilege Escalation (EUVD-2026-24063)

A vulnerability was found in Honor AIAssistant 90.0.12.010 . It has been rated as critical . This affects an unknown function. The manipulation leads to Local Privilege Escalation. This vulnerability …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-6711 | ryhowa Website LLMs.txt Plugin up to 8.2.6 on WordPress filter_input tab cross site scripting (EUVD-2026-24071)

A vulnerability categorized as problematic has been discovered in ryhowa Website LLMs.txt Plugin up to 8.2.6 on WordPress. This impacts the function filter_input . The manipulation of the argument tab…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-31370 | Honor E App 25.02.08.01 information disclosure (EUVD-2026-24067)

A vulnerability identified as problematic has been detected in Honor E App 25.02.08.01 . Affected is an unknown function. This manipulation causes information disclosure. This vulnerability appears as…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-6712 | ryhowa Website LLMs.txt Plugin up to 8.2.6 on WordPress Setting cross site scripting (EUVD-2026-24072)

A vulnerability labeled as problematic has been found in ryhowa Website LLMs.txt Plugin up to 8.2.6 on WordPress. Affected by this vulnerability is an unknown functionality of the component Setting Ha…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2025-13826 | Zervit Portable Web Server Configuration Reset Request denial of service (EUVD-2025-209536)

A vulnerability marked as problematic has been reported in Zervit Portable Web Server . Affected by this issue is some unknown functionality of the component Configuration Reset Request Handler . Perf…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-41036 | Quantum Router QN-I-470 6.1.1.B1 Management CLI Interface os command injection (CIVN-2026-0200)

A vulnerability described as critical has been identified in Quantum Router QN-I-470 6.1.1.B1 . This affects an unknown part of the component Management CLI Interface . Executing a manipulation can le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-41037 | Quantum Router QN-I-470 6.1.1.B1 Web-based Management Interface excessive authentication (CIVN-2026-0200)

A vulnerability classified as critical has been found in Quantum Router QN-I-470 6.1.1.B1 . This vulnerability affects unknown code of the component Web-based Management Interface . The manipulation l…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-41038 | Quantum Router QN-I-470 6.1.1.B1 Web-based Management Interface weak password (CIVN-2026-0200)

A vulnerability classified as critical was found in Quantum Router QN-I-470 6.1.1.B1 . This issue affects some unknown processing of the component Web-based Management Interface . The manipulation res…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-6553 | TYPO3 CMS up to 14.2.x User Settings user_settings cleartext storage

A vulnerability, which was classified as problematic , has been found in TYPO3 CMS up to 14.2.x . Impacted is an unknown function of the component User Settings Module . This manipulation of the argum…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-39467 | MetaSlider Responsive Slider Plugin up to 3.106.0 on WordPress deserialization

A vulnerability, which was classified as problematic , was found in MetaSlider Responsive Slider Plugin up to 3.106.0 on WordPress. The affected element is an unknown function. Such manipulation leads…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-41039 | Quantum Router QN-I-470 6.1.1.B1 API Endpoint missing authentication (CIVN-2026-0200)

A vulnerability has been found in Quantum Router QN-I-470 6.1.1.B1 and classified as critical . The impacted element is an unknown function of the component API Endpoint . Performing a manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-3317 | Navigate CMS up to 2.9.5 /blog cross site scripting

A vulnerability was found in Navigate CMS up to 2.9.5 and classified as problematic . This affects an unknown function of the file /blog . Executing a manipulation can lead to cross site scripting. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
Attackers Weaponize CVE-2026-39987 to Spread Blockchain-Based Backdoor Via Hugging Face - CyberSecurityNews

Attackers Weaponize CVE-2026-39987 to Spread Blockchain-Based Backdoor Via Hugging Face CyberSecurityNews

CyberSecurityNews Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
6,000+ Apache ActiveMQ Instances Vulnerable to CVE-2026-34197 Exposed Online - cyberpress.org

6,000+ Apache ActiveMQ Instances Vulnerable to CVE-2026-34197 Exposed Online cyberpress.org

cyberpress.org Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-39946 | OpenBao up to 2.5.2 PostgreSQL Database Secrets Engine sql injection (GHSA-6vgr-cp5c-ffx3)

A vulnerability has been found in OpenBao up to 2.5.2 and classified as critical . This impacts an unknown function of the component PostgreSQL Database Secrets Engine . Performing a manipulation resu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-39386 | m1k1o neko up to 3.0.10/3.1.1 /api/profile access control (GHSA-2gw9-c2r2-f5qf)

A vulnerability was found in m1k1o neko up to 3.0.10/3.1.1 and classified as critical . Affected is an unknown function of the file /api/profile . Executing a manipulation can lead to improper access …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-39388 | OpenBao up to 2.5.2 certificate validation (GHSA-7ccv-rp6m-rffr)

A vulnerability was found in OpenBao up to 2.5.2 . It has been classified as critical . Affected by this vulnerability is an unknown functionality. The manipulation leads to improper certificate valid…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-40264 | OpenBao up to 2.5.2 improper restriction of security token assignment (GHSA-p49j-v9wc-wg57)

A vulnerability was found in OpenBao up to 2.5.2 . It has been declared as problematic . Affected by this issue is some unknown functionality. The manipulation results in improper restriction of secur…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-34839 | nicolargo glances up to 4.5.3 REST API /api/4/ information disclosure (GHSA-gfc2-9qmw-w7vh)

A vulnerability was found in nicolargo glances up to 4.5.3 . It has been rated as problematic . This affects an unknown part of the file /api/4/ of the component REST API . This manipulation causes in…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-35588 | nicolargo glances up to 4.5.3 Cassandra Export __init__.py sql injection (GHSA-grp3-h8m8-45p7)

A vulnerability categorized as critical has been discovered in nicolargo glances up to 4.5.3 . This vulnerability affects unknown code of the file glances/exports/glances_cassandra/__init__.py of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-35570 | Gitlawb openclaude up to 0.5.0 Command Line Interface Parser bashPermissions.ts path traversal (GHSA-m6rx-7pvw-2f73)

A vulnerability identified as critical has been detected in Gitlawb openclaude up to 0.5.0 . This issue affects some unknown processing of the file src/tools/BashTool/bashPermissions.ts of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-39396 | OpenBao up to 2.5.2 OCI Plugin ExtractPluginFromImage resource consumption (GHSA-r65v-xgwc-g56j)

A vulnerability labeled as problematic has been found in OpenBao up to 2.5.2 . Impacted is the function ExtractPluginFromImage of the component OCI Plugin . Executing a manipulation can lead to resour…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-35587 | nicolargo glances up to 4.5.3 Configuration Parameter public_api server-side request forgery (GHSA-g5pq-48mj-jvw8)

A vulnerability marked as critical has been reported in nicolargo glances up to 4.5.3 . The affected element is the function public_api of the component Configuration Parameter Handler . The manipulat…

VulDB Read →
← Prev 70 / 241 Next →