Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-08-31 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
HardBreacher PoC Claims Kaspersky Endpoint 0-Day Privilege Escalation on Windows 11
HardBreacher’s newly published PoC claims a local privilege-escalation flaw in Kaspersky Endpoint Security on fully patched Windows 11 systems, but the issue remains unverified and has not been publicly confirmed or assigned a CVE by Kasper
Microsoft Exchange: 85% der deutschen <b>Server</b> ungepatcht und anfällig - BornCity
Das BSI meldet eine hohe Gefährdung deutscher Exchange-Server durch CVE-2026-62911 und empfiehlt sofortige Updates sowie Zugriffsschutz. Weiterlesen
CVE-2026-83492 | Extend mes Kubio AI Website Builder up to 2.9.0 input validation (EUVD-2026-68616)
A vulnerability was found in Extend mes Kubio AI Website Builder up to 2.9.0. It has been rated as critical. This affects an unknown function. Performing a manipulation results in improper input validation. This vulnerability was named CVE-
CVE-2026-51713 | TOTOLINK T6 4.1.5cu.748 WAN Dial State Management /cgi-bin/cstecgi.cgi setManualDialCfg access control (EUVD-2026-68636)
A vulnerability has been found in TOTOLINK T6 4.1.5cu.748 and classified as critical. This issue affects the function setManualDialCfg of the file /cgi-bin/cstecgi.cgi of the component WAN Dial State Management. The manipulation leads to im
CVE-2026-51712 | TOTOLINK T6 4.1.5cu.748_B20211015 /cgi-bin/cstecgi.cgi setApWiFiSchCfg access control (EUVD-2026-68637)
A vulnerability classified as critical has been found in TOTOLINK T6 4.1.5cu.748_B20211015. Affected by this vulnerability is the function setApWiFiSchCfg of the file /cgi-bin/cstecgi.cgi. This manipulation causes improper access controls.
CVE-2026-82724 | ash-project ash_phoenix up to 2.3.24 SubdomainHook AshPhoenix.LiveView.SubdomainHook.on_mount improper authorization (EUVD-2026-68336)
A vulnerability marked as problematic has been reported in ash-project ash_phoenix up to 2.3.24. This impacts the function AshPhoenix.LiveView.SubdomainHook.on_mount of the component SubdomainHook. This manipulation causes improper authoriz
CVE-2026-51715 | TOTOLINK T6 4.1.5cu.748_B20211015 Mac Filter Rules /cgi-bin/cstecgi.cgi delMacFilterRules access control (EUVD-2026-68634)
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been classified as very critical. The affected element is the function delMacFilterRules of the file /cgi-bin/cstecgi.cgi of the component Mac Filter Rules. This manipul
CVE-2026-81664 | OpenFaaS up to 0.27.13 Authentication gateway/main.go auth.DecorateWithBasicAuth improper authorization (EUVD-2026-67033)
A vulnerability marked as problematic has been reported in OpenFaaS up to 0.27.13. This vulnerability affects the function auth.DecorateWithBasicAuth of the file gateway/main.go of the component Authentication Handler. Performing a manipula
CVE-2026-81682 | jahlives openssl_encrypt up to 1.4.8 Desktop GUI permission (EUVD-2026-67038)
A vulnerability was found in jahlives openssl_encrypt up to 1.4.8. It has been declared as problematic. The affected element is an unknown function of the component Desktop GUI. Such manipulation leads to permission issues. This vulnerabili
CVE-2026-51714 | TOTOLINK T6 4.1.5cu.748 /cgi-bin/cstecgi.cgi setRoamingCfg access control (EUVD-2026-68635)
A vulnerability was found in TOTOLINK T6 4.1.5cu.748 and classified as very critical. Impacted is the function setRoamingCfg of the file /cgi-bin/cstecgi.cgi. The manipulation results in improper access controls. This vulnerability is known
CVE-2026-51716 | TOTOLINK T6 4.1.5cu.748_B20211015 Port Forwarding /cgi-bin/cstecgi.cgi delPortForwardRules access control (EUVD-2026-68633)
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been declared as very critical. The impacted element is the function delPortForwardRules of the file /cgi-bin/cstecgi.cgi of the component Port Forwarding. Such manipula
CVE-2026-81692 | jahlives openssl_encrypt up to 1.4.8 FLAC file allocation of resources (EUVD-2026-67048)
A vulnerability marked as problematic has been reported in jahlives openssl_encrypt up to 1.4.8. Impacted is an unknown function of the component FLAC file Handler. Performing a manipulation results in allocation of resources. This vulnerab
CVE-2026-81687 | jahlives openssl_encrypt up to 1.4.8 resource consumption (EUVD-2026-67043)
A vulnerability classified as problematic has been found in jahlives openssl_encrypt up to 1.4.8. This issue affects the function openssl_encrypt. Performing a manipulation results in resource consumption. This vulnerability was named CVE-2
CVE-2026-52491 | LibTIFF Thumbnail thumbnail.c main code injection (EUVD-2026-66177)
A vulnerability was found in LibTIFF. It has been declared as critical. The affected element is the function main of the file libtiff/tools/thumbnail.c of the component Thumbnail. Such manipulation leads to code injection. This vulnerabilit
CVE-2026-20887 | Intel Vision Software access control (intel-sa-01457)
A vulnerability marked as critical has been reported in Intel Vision Software. Affected is an unknown function. Performing a manipulation results in improper access controls. This vulnerability is reported as CVE-2026-20887. The attack is p
CVE-2026-24874 | themrdemonized xray-monolith up to 2025.12.29 type confusion
A vulnerability identified as critical has been detected in themrdemonized xray-monolith up to 2025.12.29. This affects an unknown part. The manipulation leads to type confusion. This vulnerability is uniquely identified as CVE-2026-24874.
CVE-2025-53811 | Mosh-Pro 1.3.2 on macOS default permission
A vulnerability described as critical has been identified in Mosh-Pro 1.3.2 on macOS. Affected by this issue is some unknown functionality. Such manipulation leads to incorrect default permissions. This vulnerability is referenced as CVE-20
CVE-2024-6387 | OpenSSH up to 9.8 on Linux Signal grace_alarm_handler regreSSHion race condition (EDB-52269 / Nessus ID 209711)
A vulnerability categorized as critical has been discovered in OpenSSH up to 9.8 on Linux. Affected by this issue is the function grace_alarm_handler of the component Signal Handler. Executing a manipulation can lead to race condition. This
CVE-2026-0826 | HP Poly Trio 8300/Poly Trio 8500/Poly Trio 8800 up to 8.1.6 on Linux stack-based overflow
A vulnerability marked as critical has been reported in HP Poly Trio 8300, Poly Trio 8500 and Poly Trio 8800 up to 8.1.6 on Linux. This impacts an unknown function. This manipulation causes stack-based buffer overflow. This vulnerability is
CVE-2026-13753 | HP Deskjet 2800 Series prior TBP1CN2612AR Webserver authorization
A vulnerability, which was classified as problematic, was found in HP Deskjet 2800 Series. This issue affects some unknown processing of the component Webserver. Such manipulation leads to missing authorization. This vulnerability is refere
CVE-2024-52011 | vitejs launch-editor up to 2.8.x on Windows Special Character launchEditor File command injection
A vulnerability classified as critical was found in vitejs launch-editor up to 2.8.x on Windows. This affects the function launchEditor of the component Special Character Handler. The manipulation of the argument File results in command inj
CVE-2026-15044 | Red Hat OpenShift AI TrustyAI Service Operator improper authorization
A vulnerability was found in Red Hat OpenShift AI. It has been rated as critical. This affects an unknown part of the component TrustyAI Service Operator. This manipulation causes improper authorization. This vulnerability appears as CVE-20
HardBreacher PoC Claims Kaspersky Endpoint 0-Day Privilege Escalation on Windows 11
HardBreacher’s newly published PoC claims a local privilege-escalation flaw in Kaspersky Endpoint Security on fully patched Windows 11 systems, but the issue remains unverified and has not been publicly confirmed or assigned a CVE by Kasper
HardBreacher PoC Claims Kaspersky Endpoint 0-Day Privilege Escalation on Windows 11
HardBreacher’s newly published PoC claims a local privilege-escalation flaw in Kaspersky Endpoint Security on fully patched Windows 11 systems, but the issue remains unverified and has not been publicly confirmed or assigned a CVE by Kasper
Microsoft Exchange mit kritischer Schwachstelle: Neue Lücke, alte Fehler
... Hacker über eine Schwachstelle in anfällige Exchange-Systeme eindringen können. Wie das Bundesamt für Sicherheit in der Informationstechnik (BSI) ... Weiterlesen
HardBreacher Exploit Targets Kaspersky Endpoint Security Zero-Day for Windows 11 Privilege Escalation
A proof of concept called HardBreacher allegedly exploits an unpatched local privilege escalation flaw in Kaspersky Antivirus for Endpoint. This vulnerability allows a local user to control a privileged component. The code was published by
HardBreacher Exploit Targets Kaspersky Endpoint Security Zero-Day for Windows 11 Privilege Escalation
A proof of concept called HardBreacher allegedly exploits an unpatched local privilege escalation flaw in Kaspersky Antivirus for Endpoint. This vulnerability allows a local user to control a privileged component. The code was published by
HardBreacher PoC Targets Kaspersky Endpoint Security Zero-Day for Windows 11 Privilege Escalation
A publicly available proof-of-concept (PoC) named HardBreacher claims to exploit an unpatched elevation-of-privilege issue in Kaspersky Endpoint Security for Windows, potentially allowing a local user to gain high-level access on affected W
Metasploit Exploit Targets Actively Exploited PaperCut NG/MF Zero-Day RCE Chain
A new Metasploit Framework module is poised to make a recently disclosed, actively exploited PaperCut NG and MF zero-day chain more accessible. Rapid7 contributor Stephen Fewer submitted pull request #21842 for CVE-2026-81578 and CVE-2026-8
Metasploit Adds Exploit for PaperCut MF/NG Zero-Day RCE Vulnerabilities
Rapid7’s Metasploit Framework is set to add an exploit module targeting the actively exploited chain of vulnerabilities affecting PaperCut MF and PaperCut NG. This addition will provide public offensive tooling for a security emergency invo
Metasploit Adds Exploit for PaperCut MF/NG Zero-Day RCE Vulnerabilities
Rapid7’s Metasploit Framework is set to add an exploit module targeting the actively exploited chain of vulnerabilities affecting PaperCut MF and PaperCut NG. This addition will provide public offensive tooling for a security emergency invo
[NEU] [mittel] PJSIP: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
Ein entfernter, anonymer Angreifer kann eine Schwachstelle in PJSIP ausnutzen, um Sicherheitsvorkehrungen zu umgehen. Weiterlesen
[NEU] [mittel] HP Computer: Schwachstelle ermöglicht Privilegieneskalation
Ein lokaler Angreifer kann eine Schwachstelle in HP Computer ausnutzen, um seine Privilegien zu erhöhen. Weiterlesen
[NEU] [hoch] JFrog Artifactory: Schwachstelle ermöglicht Erlangen von Administratorrechten
Ein entfernter, anonymer Angreifer kann eine Schwachstelle in JFrog Artifactory ausnutzen, um Administratorrechte zu erlangen. Weiterlesen
[NEU] [mittel] sudo: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
Ein lokaler Angreifer kann eine Schwachstelle in sudo ausnutzen, um Sicherheitsvorkehrungen zu umgehen. Weiterlesen
[UPDATE] [mittel] Red Hat Enterprise Linux (NetworkManager): Schwachstelle ermöglicht Privilegieneskalation
Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux (NetworkManager) ausnutzen, um seine Privilegien zu erhöhen. Weiterlesen
PaperCut Issues Second Emergency Patch as Researchers Break Fix for Exploited Zero-Days
PaperCut released a second emergency patch last Friday, for two vulnerabilities in its NG and MF print management servers that attackers are already exploiting, after security researchers demonstrated that the vendor's first fix could
[NEU] [niedrig] NetApp StorageGRID: Schwachstelle ermöglicht Denial of Service
Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in NetApp StorageGRID ausnutzen, um einen Denial of Service Angriff durchzuführen. Weiterlesen
[NEU] [mittel] ffmpeg: Schwachstelle ermöglicht Codeausführung und DoS
Ein Angreifer aus einem angrenzenden Netzwerk kann eine Schwachstelle in ffmpeg ausnutzen, um möglicherweise beliebigen Code auszuführen oder einen Denial-of-Service-Zustand zu verursachen. Weiterlesen
[NEU] [mittel] Red Hat Enterprise Linux (iperf3): Schwachstelle ermöglicht Denial of Service
Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen. Weiterlesen
[NEU] [mittel] Red Hat Enterprise Linux (xmlrpc-c): Schwachstelle ermöglicht Cross-Site Scripting
Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen. Weiterlesen
Elon Musk warnt vor KI-<b>Hacking</b> auf Superniveau bis Ende 2027 - klamm.de
Die Schwachstelle, die die KI-Hacking-Debatte neu entfachte. JFrog veröffentlichte am 28. August die Schwachstelle CVE-2026-82329. Diese erhielt auf ... Weiterlesen
Root-Sicherheitslücke bedroht cPanel/WHM
In aktuellen Versionen haben die Entwickler der Webhosting-Control-Panel-Software cPanel/WHM eine Schwachstelle geschlossen. Weiterlesen
Root-Sicherheitslücke bedroht cPanel/WHM
In aktuellen Versionen haben die Entwickler der Webhosting-Control-Panel-Software cPanel/WHM eine Schwachstelle geschlossen. Weiterlesen
Composer Path Traversal Flaw Lets Malicious Packages Expose Sensitive Files
A newly disclosed vulnerability in Composer could allow malicious or compromised PHP packages to alter permissions on files located outside their intended installation directory, potentially exposing sensitive data on shared and multi-tenan
[UPDATE] [mittel] GNU Emacs TRAMP: Schwachstelle ermöglicht Codeausführung
Ein lokaler Angreifer kann eine Schwachstelle in GNU Emacs TRAMP ausnutzen, um beliebigen Programmcode auszuführen. Weiterlesen
[UPDATE] [mittel] PAM: Schwachstelle ermöglicht Offenlegung von Informationen
Ein entfernter, anonymer Angreifer kann eine Schwachstelle in PAM ausnutzen, um Informationen offenzulegen. Weiterlesen
Exchange-Sicherheitslücke: 85 Prozent der On-Prem-Server in Deutschland anfällig
Ein Proof-of-Concept-Exploit für eine hochriskante Exchange-Lücke ist öffentlich. 85 Prozent der On-Premises-Server sind anfällig. Weiterlesen
Exchange-Sicherheitslücke: 85 Prozent der On-Prem-Server in Deutschland anfällig
Ein Proof-of-Concept-Exploit für eine hochriskante Exchange-Lücke ist öffentlich. 85 Prozent der On-Premises-Server sind anfällig. Weiterlesen
GitLab-Lücke CVE-2026-19478: CVSS 9,4 sofort ausgenutzt - Tech Insider
... Cybersicherheit betont – ein Hinweis darauf, dass die langfristige Marktbewertung stärker von der Produktstrategie als von einzelnen CVE-Meldungen ... Weiterlesen
CVE-2026-82485 | A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/pro_edit.php. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/pro_edit.php. Such manipulation of the argument ID leads to sql injection. The atta
CVE-2026-82484 | A flaw has been found in itsourcecode Sales and Inventory System 1.0. Affected is an unknown function of the file /pages/emp_searchfrm.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
A flaw has been found in itsourcecode Sales and Inventory System 1.0. Affected is an unknown function of the file /pages/emp_searchfrm.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The
Multiple Integer Overflows in U-Boot Filesystem Parsing (CVE-2025-70290 through CVE-2025-70293)
Posted by t.preissl via Fulldisclosure on Aug 29-----BEGIN SECURITY ADVISORY----- Title: Multiple Integer Overflows in U-Boot Filesystem Handling Author: Timo Preißl &lt;t.preissl () proton me&gt; Date: 2026-02-11 CVEs: CVE-2025-702
[ADVISORY] Multiple Integer Overflows in U-Boot Filesystem Parsing (CVE-2025-70290 through CVE-2025-70293)
Posted by t.preissl via Fulldisclosure on Aug 29-----BEGIN SECURITY ADVISORY----- Title: Multiple Integer Overflows in U-Boot Filesystem Handling Author: Timo Preißl &lt;t.preissl () proton me&gt; Date: 2026-02-11 CVEs: CVE-2025-702
CVE-2026-82483 | A vulnerability was detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This impacts an unknown function of the file db_input.php of the component Hidden Album Update Endpoint. The manipulation results in cross site scripting. The attack can be launched remotely. The exploit is now public and may be used. Upgrading to version 1.6.29 will fix this issue. It is recommended to upgrade the affected component.
A vulnerability was detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This impacts an unknown function of the file db_input.php of the component Hidden Album Update Endpoint. The manipulation results in cross site script
CVE-2026-82482 | A security vulnerability has been detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This affects an unknown function of the file profile.php of the component edit_profile Endpoint. The manipulation of the argument Biography leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 1.6.29 mitigates this issue. Upgrading the affected component is recomme
A security vulnerability has been detected in coppermine-gallery Coppermine Photo Gallery up to 1.6.28. This affects an unknown function of the file profile.php of the component edit_profile Endpoint. The manipulation of the argument Biogra
CVE-2026-82480 | A security flaw has been discovered in NASA cFS up to 7.0.1. The affected element is the function CFE_SB_GetUserDataLength of the file src/cFS/cfe/modules/sb/fsw/src/cfe_sb_util.c of the component cFE Software Bus. Performing a manipulation of the argument TotalMsgSize/HdrSize results in integer underflow. It is possible to initiate the attack remotely. The vendor was contacted early about this disclosure but did not respond in any way.
A security flaw has been discovered in NASA cFS up to 7.0.1. The affected element is the function CFE_SB_GetUserDataLength of the file src/cFS/cfe/modules/sb/fsw/src/cfe_sb_util.c of the component cFE Software Bus. Performing a manipulation
CVE-2026-82479 | A vulnerability was identified in NASA cFS up to 7.0.1. Impacted is the function OS_read of the file modules/protocol/tcp/fsw/src/sbn_tcp_if.c of the component SBN TCP Module. Such manipulation of the argument MsgSz leads to buffer overflow. The attack must be carried out from within the local network. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was identified in NASA cFS up to 7.0.1. Impacted is the function OS_read of the file modules/protocol/tcp/fsw/src/sbn_tcp_if.c of the component SBN TCP Module. Such manipulation of the argument MsgSz leads to buffer overflow
CVE-2026-15980 | The MyHome Core plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 4.4.5. This is due to missing authorization in the send_link() AJAX handler and improper token validation in the activate() function. This makes it possible for unauthenticated attackers to generate an activation token for an unconfirmed user account and obtain a valid authentication cookie for that account, including administrators. Successful ex
The MyHome Core plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 4.4.5. This is due to missing authorization in the send_link() AJAX handler and improper token validation in the activate() fu
CVE-2026-82478 | A vulnerability was determined in NASA Trick 19.6.0. This issue affects the function JSONVariableServerThread::parse_request of the file trick_source/sim_services/JSONVariableServer/JSONVariableServerThread.cpp of the component TCP Socket Handler. This manipulation causes stack-based buffer overflow. The attack is possible to be carried out remotely. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was determined in NASA Trick 19.6.0. This issue affects the function JSONVariableServerThread::parse_request of the file trick_source/sim_services/JSONVariableServer/JSONVariableServerThread.cpp of the component TCP Socket H