CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5898 articles  ·  updated every 4 hours · grows forever

5898Total
4045Full Text
May 19, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-5478 | wpeverest Everest Forms Plugin up to 3.4.4 on WordPress unlink old_files path traversal (EUVD-2026-23941)

A vulnerability categorized as critical has been discovered in wpeverest Everest Forms Plugin up to 3.4.4 on WordPress. Impacted is the function unlink . Such manipulation of the argument old_files le…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-29645 | NEMU up to 2025.12.r1 RISC-V Vector Decoder funct3 denial of service (EUVD-2026-23937)

A vulnerability identified as problematic has been detected in NEMU up to 2025.12.r1 . The affected element is an unknown function of the component RISC-V Vector Decoder . Performing a manipulation of…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-6060 | OTRS up to 2026.2.x SQL Box resource consumption (EUVD-2026-23933 / WID-SEC-2026-1176)

A vulnerability labeled as problematic has been found in OTRS up to 2026.2.x . The impacted element is an unknown function of the component SQL Box . Executing a manipulation can lead to resource cons…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 21, 2026
CVE-2026-32135 | NanoMQ MQTT Broker up to 0.24.10 REST API uri_param_parse heap-based overflow (EUVD-2026-23939)

A vulnerability marked as critical has been reported in NanoMQ MQTT Broker up to 0.24.10 . This affects the function uri_param_parse of the component REST API . The manipulation leads to heap-based bu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-24467 | OpenAEV-Platform openaev up to 2.0.12 password recovery (GHSA-vcjx-vw28-25p2)

A vulnerability has been found in OpenAEV-Platform openaev up to 2.0.12 and classified as problematic . Impacted is an unknown function. The manipulation leads to weak password recovery. This vulnerab…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-24468 | OpenAEV-Platform openaev up to 2.0.12 Endpoint /api/reset Login response discrepancy (GHSA-v6rg-hf9w-f8ph)

A vulnerability was found in OpenAEV-Platform openaev up to 2.0.12 and classified as problematic . The affected element is an unknown function of the file /api/reset of the component Endpoint . The ma…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-26944 | Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 missing authentication (dsa-2026-060)

A vulnerability was found in Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 . It has been classified as critical . The impacted element is an unknown function. This manipulation causes mis…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-24504 | Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 input validation (dsa-2026-060)

A vulnerability was found in Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 . It has been declared as critical . This affects an unknown function. Such manipulation leads to improper input…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-24505 | Dell PowerProtect Data Domain 8.5/8.6 input validation (dsa-2026-060)

A vulnerability was found in Dell PowerProtect Data Domain 8.5/8.6 . It has been rated as critical . This impacts an unknown function. Performing a manipulation results in improper input validation. T…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-24506 | Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 os command injection (dsa-2026-060)

A vulnerability categorized as critical has been discovered in Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 . Affected is an unknown function. Executing a manipulation can lead to os com…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-39109 | PHPGurukul Apartment Visitors Management System 1.1 index.php Username sql injection

A vulnerability identified as critical has been detected in PHPGurukul Apartment Visitors Management System 1.1 . Affected by this vulnerability is an unknown functionality of the file index.php . The…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-39110 | PHPGurukul Apartment Visitors Management System 1.1 Forgot Password forgot-password.php contactno sql injection

A vulnerability labeled as critical has been found in PHPGurukul Apartment Visitors Management System 1.1 . Affected by this issue is some unknown functionality of the file forgot-password.php of the …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-39111 | PHPGurukul Apartment Visitors Management System 1.1 forgot-password.php email sql injection

A vulnerability marked as critical has been reported in PHPGurukul Apartment Visitors Management System 1.1 . This affects an unknown part of the file forgot-password.php . This manipulation of the ar…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-39112 | PHPGurukul Apartment Visitors Management System 1.1 visitors-form.php visname cross site scripting

A vulnerability described as problematic has been identified in PHPGurukul Apartment Visitors Management System 1.1 . This vulnerability affects unknown code of the file visitors-form.php . Such manip…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-26943 | Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 os command injection (dsa-2026-060)

A vulnerability classified as critical has been found in Dell PowerProtect Data Domain up to 7.13.1.60/8.3.1.20/8.6 . This issue affects some unknown processing. Performing a manipulation results in o…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-26942 | Dell PowerProtect Data Domain 8.5/8.6 os command injection (dsa-2026-060)

A vulnerability classified as critical was found in Dell PowerProtect Data Domain 8.5/8.6 . Impacted is an unknown function. Executing a manipulation can lead to os command injection. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-22761 | Dell PowerProtect Data Domain 8.5/8.6 os command injection (dsa-2026-060)

A vulnerability, which was classified as critical , has been found in Dell PowerProtect Data Domain 8.5/8.6 . The affected element is an unknown function. The manipulation leads to os command injectio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-40098 | OpenMage magento-lts up to 20.16.x Download Endpoint sharing_code authorization (GHSA-665x-ppc4-685w)

A vulnerability, which was classified as critical , was found in OpenMage magento-lts up to 20.16.x . The impacted element is an unknown function of the component Download Endpoint . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-25058 | Vexa-ai vexa prior 0.10.0-260419-1910 /internal/transcripts/ meeting_id missing authentication (GHSA-w73r-2449-qwgh)

A vulnerability has been found in Vexa-ai vexa and classified as critical . This affects an unknown function of the file /internal/transcripts/ . This manipulation of the argument meeting_id causes mi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-25525 | OpenMage magento-lts up to 20.16.x Dataflow path traversal (GHSA-6vqf-6fhm-7rc6)

A vulnerability was found in OpenMage magento-lts up to 20.16.x and classified as critical . This impacts an unknown function of the component Dataflow Module . Such manipulation leads to path travers…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-41445 | mborgerding kissfft kiss_fftndr.c kiss_fftndr_alloc integer overflow

A vulnerability was found in mborgerding kissfft . It has been classified as critical . Affected is the function kiss_fftndr_alloc of the file kiss_fftndr.c . Performing a manipulation results in inte…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2025-66954 | Buffalo Link Station 1.85-0.01 /nasapi information disclosure

A vulnerability was found in Buffalo Link Station 1.85-0.01 . It has been declared as problematic . Affected by this vulnerability is an unknown functionality of the file /nasapi . Executing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-30269 | Doorman 0.1.0/1.0.2 /platform/user/ manage_users role access control

A vulnerability was found in Doorman 0.1.0/1.0.2 . It has been rated as critical . Affected by this issue is the function manage_users of the file /platform/user/ . The manipulation of the argument ro…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 20, 2026
CVE-2026-26399 | stm32duino Arduino_Core_STM32 up to 1.6.x pwm_start memory corruption

A vulnerability categorized as critical has been discovered in stm32duino Arduino_Core_STM32 up to 1.6.x . This affects the function pwm_start . The manipulation results in memory corruption. This vul…

VulDB Read →
← Prev 77 / 246 Next →