CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5962 articles  ·  updated every 4 hours · grows forever

5962Total
4047Full Text
May 20, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6434 | rust-coreutils Temporary File uu_sort information disclosure

A vulnerability was found in rust-coreutils . It has been rated as problematic . This issue affects the function uu_sort of the component Temporary File Handler . The manipulation leads to information…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6494 | Red Hat Ansible Automation Platform 2 aap-mcp-server neutralization for logs

A vulnerability categorized as problematic has been discovered in Red Hat Ansible Automation Platform 2 . Impacted is an unknown function of the component aap-mcp-server . The manipulation results in …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-33557 | Apache Kafka 4.1.0 JWT Token improper authentication

A vulnerability identified as critical has been detected in Apache Kafka 4.1.0 . The affected element is an unknown function of the component JWT Token Handler . This manipulation causes improper auth…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-33558 | Apache Kafka/Kafka Clients up to 3.9.1/4.0.0 log file

A vulnerability labeled as problematic has been found in Apache Kafka and Kafka Clients up to 3.9.1/4.0.0 . The impacted element is an unknown function. Such manipulation leads to sensitive informatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-23778 | Dell PowerProtect Data Domain up to 8.5 command injection (dsa-2026-060)

A vulnerability marked as critical has been reported in Dell PowerProtect Data Domain up to 8.5 . This affects an unknown function. Performing a manipulation results in command injection. This vulnera…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-23775 | Dell PowerProtect Data Domain appliances up to 8.0/8.3.1.0/8.3.1.10/8.5 log file (dsa-2026-060)

A vulnerability described as problematic has been identified in Dell PowerProtect Data Domain appliances up to 8.0/8.3.1.0/8.3.1.10/8.5 . This impacts an unknown function. Executing a manipulation can…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-23776 | Dell PowerProtect Data Domain up to 8.5 certificate validation (dsa-2026-060)

A vulnerability classified as critical has been found in Dell PowerProtect Data Domain up to 8.5 . Affected is an unknown function. The manipulation leads to improper certificate validation. This vuln…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2025-15622 | Sparx Systems Sparx Enterprise Architect up to 16.1.1627/17.1.1713 insufficiently protected credentials

A vulnerability classified as critical was found in Sparx Systems Sparx Enterprise Architect up to 16.1.1627/17.1.1713 . Affected by this vulnerability is an unknown functionality. The manipulation re…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2025-15623 | Sparx Systems Sparx Pro Cloud Server 6.0.163 private personal information

A vulnerability, which was classified as problematic , has been found in Sparx Systems Sparx Pro Cloud Server 6.0.163 . Affected by this issue is some unknown functionality. This manipulation causes e…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6439 | jconti VideoZen Plugin up to 1.0.1 on WordPress Setting videozen_conf lang cross site scripting

A vulnerability, which was classified as problematic , was found in jconti VideoZen Plugin up to 1.0.1 on WordPress. This affects the function videozen_conf of the component Setting Handler . Such man…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-23779 | Dell PowerProtect Data Domain up to 8.5 command injection (dsa-2026-060)

A vulnerability has been found in Dell PowerProtect Data Domain up to 8.5 and classified as critical . This vulnerability affects unknown code. Performing a manipulation results in command injection. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2025-15624 | Sparx Systems Sparx Pro Cloud Server 6.0.163 primary credentials storage

A vulnerability was found in Sparx Systems Sparx Pro Cloud Server 6.0.163 and classified as problematic . This issue affects the function primary . Executing a manipulation can lead to unprotected sto…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2025-36568 | Dell PowerProtect Data Domain BoostFS up to 8.5 insufficiently protected credentials (dsa-2026-060)

A vulnerability was found in Dell PowerProtect Data Domain BoostFS up to 8.5 . It has been classified as problematic . Impacted is an unknown function. The manipulation leads to insufficiently protect…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2025-15625 | Sparx Systems Sparx Pro Cloud Server 6.0.163 sql injection

A vulnerability was found in Sparx Systems Sparx Pro Cloud Server 6.0.163 . It has been declared as critical . The affected element is an unknown function. The manipulation results in sql injection. T…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2025-66335 | Apache Doris MCP Server up to 0.6.0 sql injection

A vulnerability was found in Apache Doris MCP Server up to 0.6.0 . It has been rated as critical . The impacted element is an unknown function. This manipulation causes sql injection. This vulnerabili…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6435 | rust-coreutils File Permission permission

A vulnerability categorized as critical has been discovered in rust-coreutils . This affects an unknown function of the component File Permission Handler . Such manipulation leads to permission issues…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-25917 | Apache Airflow 3.1.5 API deserialization

A vulnerability identified as critical has been detected in Apache Airflow 3.1.5 . This impacts an unknown function of the component API . Performing a manipulation results in deserialization. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-30898 | Apache Airflow up to 3.1.x BashOperator dag_run.conf injection

A vulnerability labeled as critical has been found in Apache Airflow up to 3.1.x . Affected is an unknown function of the file dag_run.conf of the component BashOperator . Executing a manipulation can…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-30912 | Apache Airflow up to 3.1.x information exposure

A vulnerability marked as problematic has been reported in Apache Airflow up to 3.1.x . Affected by this vulnerability is an unknown functionality. The manipulation leads to information exposure throu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-32228 | Apache Airflow up to 3.1.x UI/API permission

A vulnerability described as critical has been identified in Apache Airflow up to 3.1.x . Affected by this issue is some unknown functionality of the component UI/API . The manipulation results in per…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-32690 | Apache Airflow up to 3.1.x JSON Dictionary information disclosure

A vulnerability classified as problematic has been found in Apache Airflow up to 3.1.x . This affects an unknown part of the component JSON Dictionary Handler . This manipulation causes information di…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-35153 | Dell PowerProtect Data Domain up to 8.7.0.0 argument injection (dsa-2026-060)

A vulnerability classified as critical was found in Dell PowerProtect Data Domain up to 8.7.0.0 . This vulnerability affects unknown code. Such manipulation leads to argument injection. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-21385: Google Patches Qualcomm Zero-Day Exploited in Targeted Android Attacks - SOC Prime

CVE-2026-21385: Google Patches Qualcomm Zero-Day Exploited in Targeted Android Attacks SOC Prime

SOC Prime Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
Critical Vulnerability in Flowise Allows Remote Command Execution via MCP Adapters - cyberpress.org

Critical Vulnerability in Flowise Allows Remote Command Execution via MCP Adapters cyberpress.org

cyberpress.org Read →
← Prev 90 / 249 Next →