CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5599 articles  ·  updated every 4 hours · grows forever

5599Total
4034Full Text
May 16, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-8181 | burstbv Burst Statistics Plugin up to 3.4.1.1 on WordPress is_mainwp_authenticated improper authentication

A vulnerability was found in burstbv Burst Statistics Plugin up to 3.4.1.1 on WordPress. It has been classified as critical . This impacts the function is_mainwp_authenticated . This manipulation caus…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-4524 | GitLab Community Edition/Enterprise Edition up to 18.9.6/18.10.5/18.11.2 authentication bypass

A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . It has been declared as critical . Affected is an unknown function. Such manipulation leads …

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-6063 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 Merge Request authorization

A vulnerability was found in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . It has been rated as problematic . Affected by this vulnerability is an unknown functionality of the component Mer…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-6073 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 cross site scripting

A vulnerability categorized as problematic has been discovered in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . Affected by this issue is some unknown functionality. Executing a manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-6335 | GitLab Community Edition/Enterprise Edition up to 18.11.2 cross site scripting

A vulnerability identified as problematic has been detected in GitLab Community Edition and Enterprise Edition up to 18.11.2 . This affects an unknown part. The manipulation leads to cross site script…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-6883 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 Merge Request authorization

A vulnerability labeled as problematic has been found in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . This vulnerability affects unknown code of the component Merge Request Handler . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-7377 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 Analytics Dashboard cross site scripting

A vulnerability marked as problematic has been reported in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . This issue affects some unknown processing of the component Analytics Dashboard . Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-7471 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 server-side request forgery

A vulnerability described as critical has been identified in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . Impacted is an unknown function. Such manipulation leads to server-side request fo…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-7481 | GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 cross site scripting

A vulnerability classified as problematic has been found in GitLab Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . The affected element is an unknown function. Performing a manipulation results in c…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-8144 | GitLab Community Edition/Enterprise Edition up to 18.9.6/18.10.5/18.11.2 Private Group authorization

A vulnerability classified as problematic was found in GitLab Community Edition and Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . The impacted element is an unknown function of the component Priva…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-8280 | GitLab Community Edition/Enterprise Edition up to 18.9.6/18.10.5/18.11.2 allocation of resources

A vulnerability, which was classified as problematic , has been found in GitLab Community Edition and Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . This affects an unknown function. The manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-4527 | GitLab Community Edition/Enterprise Edition up to 18.9.6/18.10.5/18.11.2 cross-site request forgery

A vulnerability, which was classified as problematic , was found in GitLab Community Edition and Enterprise Edition up to 18.9.6/18.10.5/18.11.2 . This impacts an unknown function. The manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
Nation-state actors exploit Palo Alto PAN-OS zero-day for weeks - Security Affairs

Nation-state actors exploit Palo Alto PAN-OS zero-day for weeks Security Affairs

Security Affairs Read →
⬡ Vulnerabilities & CVEs May 14, 2026
cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now - The Hacker News

cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now The Hacker News

The Hacker News Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44424 | shellhub-io shellhub up to 0.24.1 /api/devices/ authorization (GHSA-j72x-xfwg-783f)

A vulnerability identified as problematic has been detected in shellhub-io shellhub up to 0.24.1 . Affected by this issue is some unknown functionality of the file /api/devices/ . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44426 | shellhub-io shellhub up to 0.24.1 /api/namespaces/:tenant authorization (GHSA-vwx9-7qcf-gg7f)

A vulnerability labeled as problematic has been found in shellhub-io shellhub up to 0.24.1 . This affects an unknown part of the file /api/namespaces/:tenant . Executing a manipulation can lead to aut…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45053 | CubeCart up to 6.6.x /api/v1/files unrestricted upload (GHSA-652f-8c88-25cx)

A vulnerability marked as critical has been reported in CubeCart up to 6.6.x . This vulnerability affects unknown code of the file /api/v1/files . The manipulation leads to unrestricted upload. This v…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45054 | CubeCart up to 6.6.x Admin Password admin.php?_g=orders&node=transactions sqlSafe sort sql injection (GHSA-rm2f-rpcq-6w9f)

A vulnerability described as critical has been identified in CubeCart up to 6.6.x . This issue affects the function sqlSafe of the file admin.php?_g=orders&node=transactions of the component Admin Pas…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45055 | CubeCart up to 6.7.1 Request Header /index.php?_a=recover User::passwordRequest password recovery (GHSA-7pvc-gxc4-chmc)

A vulnerability classified as critical has been found in CubeCart up to 6.7.1 . Impacted is the function User::passwordRequest of the file /index.php?_a=recover of the component Request Header Handler…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-45708 | CubeCart up to 6.7.2 files/print..php code injection (GHSA-747j-4mmc-cj63)

A vulnerability classified as critical was found in CubeCart up to 6.7.2 . The affected element is an unknown function of the file files/print..php . Such manipulation leads to code injection. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-42031 | CKAN up to 2.10.9/2.11.4 datastore_search_sql sql injection (GHSA-h7j7-3rx6-xvcg)

A vulnerability, which was classified as critical , has been found in CKAN up to 2.10.9/2.11.4 . The impacted element is the function datastore_search_sql . Performing a manipulation results in sql in…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-42032 | CKAN up to 2.10.9/2.11.4 datastore_search_sql authorization (GHSA-cg4x-64p3-x59h)

A vulnerability, which was classified as critical , was found in CKAN up to 2.10.9/2.11.4 . This affects the function datastore_search_sql . Executing a manipulation can lead to incorrect authorizatio…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-5486 | unitecms Unlimited Elements for Elementor Plugin up to 2.0.7 on WordPress normalizeAjaxInputData filter_search sql injection

A vulnerability has been found in unitecms Unlimited Elements for Elementor Plugin up to 2.0.7 on WordPress and classified as critical . This impacts the function normalizeAjaxInputData . The manipula…

VulDB Read →
⬡ Vulnerabilities & CVEs May 14, 2026
CVE-2026-44440 | Frappe ERPNext up to 15.101.0/16.9.x path traversal (GHSA-6ffr-92hr-3394)

A vulnerability was found in Frappe ERPNext up to 15.101.0/16.9.x and classified as critical . Affected is an unknown function. The manipulation results in path traversal. This vulnerability is known …

VulDB Read →
← Prev 9 / 234 Next →