CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Vulnerabilities & CVEs
Intel Feed

cyberintel.kalymoon.com  ·  5962 articles  ·  updated every 4 hours · grows forever

5962Total
4047Full Text
May 20, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-40461 | Anviz CX2 Lite/CX7 setting missing authentication (icsa-26-106-03)

A vulnerability classified as critical was found in Anviz CX2 Lite and CX7 . This affects an unknown part of the component setting Handler . The manipulation results in missing authentication. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-35682 | Anviz CX2 Lite filename command injection (icsa-26-106-03)

A vulnerability, which was classified as critical , has been found in Anviz CX2 Lite . This vulnerability affects unknown code. This manipulation of the argument filename causes command injection. The…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-35546 | Anviz CX2 Lite/CX7 Archives missing authentication (icsa-26-106-03)

A vulnerability, which was classified as critical , was found in Anviz CX2 Lite and CX7 . This issue affects some unknown processing of the component Archives Handler . Such manipulation leads to miss…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-40066 | Anviz CX2 Lite/CX7 Update Package code download (icsa-26-106-03)

A vulnerability has been found in Anviz CX2 Lite and CX7 and classified as problematic . Impacted is an unknown function of the component Update Package Handler . Performing a manipulation results in …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-32324 | Anviz CX7 MQTT hard-coded key (icsa-26-106-03)

A vulnerability was found in Anviz CX7 and classified as problematic . The affected element is an unknown function of the component MQTT Handler . Executing a manipulation can lead to use of hard-code…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-31927 | Anviz CX7 Setting path traversal (icsa-26-106-03)

A vulnerability was found in Anviz CX7 . It has been classified as problematic . The impacted element is an unknown function of the component Setting Handler . The manipulation leads to relative path …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-33569 | Anviz CX2 Lite/CX7 cleartext transmission (icsa-26-106-03)

A vulnerability was found in Anviz CX2 Lite and CX7 . It has been declared as problematic . This affects an unknown function. The manipulation results in cleartext transmission of sensitive informatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-40434 | Anviz CrossChex Standard Communication Channel verification of source (icsa-26-106-03)

A vulnerability was found in Anviz CrossChex Standard . It has been rated as critical . This impacts an unknown function of the component Communication Channel Handler . This manipulation causes impro…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-32650 | Anviz CrossChex Standard downgrade (icsa-26-106-03)

A vulnerability categorized as problematic has been discovered in Anviz CrossChex Standard . Affected is an unknown function. Such manipulation leads to algorithm downgrade. This vulnerability is docu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-3842 | QEMU KVM hw/hyperv/syndbg.c cpu_physical_memory_map out-of-bounds write

A vulnerability identified as critical has been detected in QEMU . Affected by this vulnerability is the function cpu_physical_memory_map of the file hw/hyperv/syndbg.c of the component KVM . Performi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6284 | Horner Automation Cscape/XL4/XL7 PLC weak password (icsa-26-106-02)

A vulnerability labeled as critical has been found in Horner Automation Cscape, XL4 and XL7 PLC . Affected by this issue is some unknown functionality. Executing a manipulation can lead to weak passwo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6421 | Mobatek MobaXterm Home Edition up to 26.1 msimg32.dll uncontrolled search path

A vulnerability marked as problematic has been reported in Mobatek MobaXterm Home Edition up to 26.1 . This affects an unknown part in the library msimg32.dll . The manipulation leads to uncontrolled …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6483 | Wavlink WL-WN530H4 20220721 /cgi-bin/internet.cgi strcat/snprintf os command injection

A vulnerability described as critical has been identified in Wavlink WL-WN530H4 20220721 . This vulnerability affects the function strcat/snprintf of the file /cgi-bin/internet.cgi . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-35496 | CubeCart up to 6.5.x path traversal (EUVD-2026-23370)

A vulnerability classified as critical has been found in CubeCart up to 6.5.x . This issue affects some unknown processing. This manipulation causes path traversal. This vulnerability is handled as CV…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-21719 | CubeCart up to 6.5.x os command injection (EUVD-2026-23366)

A vulnerability classified as critical was found in CubeCart up to 6.5.x . Impacted is an unknown function. Such manipulation leads to os command injection. This vulnerability is uniquely identified a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-34018 | CubeCart up to 6.5.x sql injection (EUVD-2026-23368)

A vulnerability, which was classified as critical , has been found in CubeCart up to 6.5.x . The affected element is an unknown function. Performing a manipulation results in sql injection. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-5797 | expresstech Quiz and Survey Master Plugin up to 10.1.0 on WordPress do_shortcode cross site scripting

A vulnerability, which was classified as problematic , was found in expresstech Quiz and Survey Master Plugin up to 10.1.0 on WordPress. The impacted element is the function do_shortcode . Executing a…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6482 | Rapid7 Insight Agent 4.1.0.2 Agent Service openssl.cnf inclusion of functionality from untrusted control sphere

A vulnerability has been found in Rapid7 Insight Agent 4.1.0.2 and classified as problematic . This affects an unknown function of the file openssl.cnf of the component Agent Service . The manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6486 | classroombookings up to 2.17.0 User Display Name layout.php read displayname cross site scripting

A vulnerability was found in classroombookings up to 2.17.0 and classified as problematic . This impacts the function read of the file crbs-core/application/views/layout.php of the component User Disp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6487 | Qihui jtbc5 CMS 5.0.3.6 Code Endpoint manage.php path path traversal

A vulnerability was found in Qihui jtbc5 CMS 5.0.3.6 . It has been classified as problematic . Affected is an unknown function of the file /dev/code/common/diplomat/manage.php of the component Code En…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6441 | flightbycanto Canto Plugin up to 3.1.1 on WordPress class-canto.php updateOptions authorization

A vulnerability was found in flightbycanto Canto Plugin up to 3.1.1 on WordPress. It has been declared as critical . Affected by this vulnerability is the function updateOptions of the file class-cant…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6443 | essentialplugin Accordion and Accordion Slider Plugin 1.4.6 on WordPress malicious code

A vulnerability was found in essentialplugin Accordion and Accordion Slider Plugin 1.4.6 on WordPress. It has been rated as critical . Affected by this issue is some unknown functionality. Performing …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-4659 | unitecms Unlimited Elements for Elementor Plugin up to 2.0.6 on WordPress Setting URLtoRelative/URLToPath URL path traversal

A vulnerability categorized as critical has been discovered in unitecms Unlimited Elements for Elementor Plugin up to 2.0.6 on WordPress. This affects the function URLtoRelative/URLToPath of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 17, 2026
CVE-2026-6488 | QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 GET Request Parameter admin/editcourse.php ID sql injection

A vulnerability identified as critical has been detected in QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593 . This vulnerability affects unknown code of the file admin/editcourse.php of t…

VulDB Read →
← Prev 91 / 249 Next →