Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
CVE-2026-77008 | HEL Online Classroom Plugin up to 1.0.3 on WordPress access control (EUVD-2026-68055)
A vulnerability, which was classified as critical, has been found in HEL Online Classroom Plugin up to 1.0.3 on WordPress. This impacts an unknown function. Performing a manipulation results in improper access controls. This vulnerability i
CVE-2026-77007 | HEL Online Classroom Plugin up to 1.0.3 on WordPress REST API Routes information disclosure (EUVD-2026-68054)
A vulnerability classified as problematic was found in HEL Online Classroom Plugin up to 1.0.3 on WordPress. This affects an unknown function of the component REST API Routes. Such manipulation leads to information disclosure. This vulnerab
CVE-2026-77704 | Booking for Appointments and Events Calendar Plugin authorization (EUVD-2026-68058)
A vulnerability, which was classified as problematic, was found in Booking for Appointments and Events Calendar Plugin up to 2.4.8 on WordPress. Affected is an unknown function. Executing a manipulation can lead to incorrect authorization.
CVE-2026-77012 | 数据采集采集和发布 Plugin up to 1.0.0 on WordPress server-side request forgery (EUVD-2026-68057)
A vulnerability was found in 数据采集采集和发布 Plugin up to 1.0.0 on WordPress. It has been rated as critical. Affected by this issue is some unknown functionality. This manipulation causes server-side request forgery. This vulnerability is handled
CVE-2026-77010 | HEL Online Classroom Plugin up to 1.0.3 on WordPress REST API Routes access control (EUVD-2026-68056)
A vulnerability was found in HEL Online Classroom Plugin up to 1.0.3 on WordPress. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component REST API Routes. The manipulation results in im
CVE-2026-77786 | Rank Math SEO Plugin up to 1.0.276 on WordPress authorization (EUVD-2026-68059)
A vulnerability has been found in Rank Math SEO Plugin up to 1.0.276 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect authorization. This vulnerability
CVE-2026-18234 | MStore API Plugin up to 4.21.0 on WordPress authorization (EUVD-2026-68048)
A vulnerability labeled as critical has been found in MStore API Plugin up to 4.21.0 on WordPress. This issue affects some unknown processing. Executing a manipulation can lead to missing authorization. The identification of this vulnerabil
CVE-2026-18233 | MStore API Plugin up to 4.21.0 on WordPress authorization (EUVD-2026-68047)
A vulnerability identified as problematic has been detected in MStore API Plugin up to 4.21.0 on WordPress. This vulnerability affects unknown code. Performing a manipulation results in missing authorization. This vulnerability was named CV
CVE-2026-82478 | NASA Trick 19.6.0 TCP Socket JSONVariableServerThread.cpp parse_request stack-based overflow (EUVD-2026-68148)
A vulnerability, which was classified as critical, has been found in NASA Trick 19.6.0. This issue affects the function JSONVariableServerThread::parse_request of the file trick_source/sim_services/JSONVariableServer/JSONVariableServerThrea
CVE-2026-19430 | Catfolders Document Gallery Pro Plugin up to 2.0.6 on WordPress REST API Routes authorization (EUVD-2026-68049)
A vulnerability marked as problematic has been reported in Catfolders Document Gallery Pro Plugin up to 2.0.6 on WordPress. Impacted is an unknown function of the component REST API Routes. The manipulation leads to missing authorization. T
CVE-2026-15980 | TangibleWP MyHome Core Plugin up to 4.4.5 on WordPress AJAX Handler/Token Validation send_link/activate improper authorization (EUVD-2026-68149)
A vulnerability described as critical has been identified in TangibleWP MyHome Core Plugin up to 4.4.5 on WordPress. This affects the function send_link/activate of the component AJAX Handler/Token Validation. The manipulation results in im
CVE-2026-82480 | NASA cFS up to 7.0.1 cFE Software Bus cfe_sb_util.c CFE_SB_GetUserDataLength TotalMsgSize/HdrSize integer underflow (EUVD-2026-68151)
A vulnerability has been found in NASA cFS up to 7.0.1 and classified as critical. The affected element is the function CFE_SB_GetUserDataLength of the file src/cFS/cfe/modules/sb/fsw/src/cfe_sb_util.c of the component cFE Software Bus. Per
CVE-2026-82479 | NASA cFS up to 7.0.1 SBN TCP sbn_tcp_if.c OS_read MsgSz buffer overflow (EUVD-2026-68150)
A vulnerability, which was classified as critical, was found in NASA cFS up to 7.0.1. Impacted is the function OS_read of the file modules/protocol/tcp/fsw/src/sbn_tcp_if.c of the component SBN TCP Module. Such manipulation of the argument
CVE-2026-80717 | Linux Kernel up to 7.1.7 sctp sctp_verify_param out-of-bounds (EUVD-2026-67452 / WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 7.1.7. It has been rated as problematic. This affects the function sctp_verify_param of the component sctp. This manipulation causes out-of-bounds read. This vulnerability appears as CVE-2026-
CVE-2026-80716 | Linux Kernel up to 7.1.7 ALSA PCM snd_pcm_drain use after free (EUVD-2026-67451 / WID-SEC-2026-3075)
A vulnerability labeled as critical has been found in Linux Kernel up to 7.1.7. The affected element is the function snd_pcm_drain of the component ALSA PCM. Such manipulation leads to use after free. This vulnerability is traded as CVE-202
CVE-2026-80714 | Linux Kernel up to 7.1.7 ipvs ip_vs_bind_dest flags use after free (EUVD-2026-67449 / WID-SEC-2026-3075)
A vulnerability identified as very critical has been detected in Linux Kernel up to 7.1.7. Impacted is the function ip_vs_bind_dest of the component ipvs. This manipulation of the argument flags causes use after free. This vulnerability app
CVE-2026-80715 | Linux Kernel up to 7.1.7 igc igc_down resource consumption (WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 7.1.7. It has been declared as problematic. The impacted element is the function igc_down of the component igc. The manipulation results in resource consumption. This vulnerability is reported
CVE-2026-80713 | Linux Kernel up to 7.1.7 io_uring __io_uring_free privileges management (EUVD-2026-67448 / WID-SEC-2026-3075)
A vulnerability categorized as very critical has been discovered in Linux Kernel up to 7.1.7. This issue affects the function __io_uring_free of the component io_uring. The manipulation results in improper privilege management. This vulnera
CVE-2026-80712 | Linux Kernel up to 6.18.43/7.1.7 spi-qpic-snand qcom_spi_send_cmdaddr scratchbuf off-by-one (EUVD-2026-67447 / WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 6.18.43/7.1.7. It has been classified as very critical. Affected by this vulnerability is the function qcom_spi_send_cmdaddr of the component spi-qpic-snand. This manipulation of the argument
CVE-2026-80711 | Linux Kernel up to 6.12.102/6.18.43/7.1.7 max17040 max17040_get_property uninitialized pointer (WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 6.12.102/6.18.43/7.1.7. It has been rated as problematic. This vulnerability affects the function max17040_get_property of the component max17040. The manipulation leads to uninitialized point
CVE-2026-80710 | Linux Kernel up to 6.6.150/6.12.102/6.18.43/7.1.7 dasd dasd_eckd_check_device_format buffer overflow (EUVD-2026-67445 / WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 6.6.150/6.12.102/6.18.43/7.1.7. It has been classified as very critical. The affected element is the function dasd_eckd_check_device_format of the component dasd. The manipulation leads to buf
CVE-2026-80709 | Linux Kernel up to 7.1.7 s390/zcrypt heap-based overflow (EUVD-2026-67444 / WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 6.1.182/6.6.150/6.12.102/6.18.43/7.1.7 and classified as very critical. Impacted is an unknown function of the component s390/zcrypt. Executing a manipulation can lead to heap-based buffer ove
CVE-2026-80708 | Linux Kernel up to 7.1.7 zcrypt cca_clr2cipherkey information disclosure (WID-SEC-2026-3075)
A vulnerability was found in Linux Kernel up to 7.1.7. It has been declared as problematic. This affects the function cca_clr2cipherkey of the component zcrypt. Executing a manipulation can lead to information disclosure. This vulnerability
CVE-2026-48338 | Adobe ColdFusion path traversal
A vulnerability was found in Adobe ColdFusion. It has been rated as problematic. This impacts an unknown function. Performing a manipulation results in path traversal. This vulnerability was named CVE-2026-48338. The attack may be initiated
CVE-2026-48344 | Adobe Creative Cloud Desktop up to 6.9.1.1 toctou
A vulnerability was found in Adobe Creative Cloud Desktop up to 6.9.1.1. It has been classified as problematic. Impacted is an unknown function. This manipulation causes time-of-check time-of-use. This vulnerability appears as CVE-2026-4834
CVE-2026-48332 | Adobe ColdFusion 2023/2025 server-side request forgery
A vulnerability described as problematic has been identified in Adobe ColdFusion 2023/2025. This vulnerability affects unknown code. Such manipulation leads to server-side request forgery. This vulnerability is listed as CVE-2026-48332. The
CVE-2026-48329 | Adobe ColdFusion Session Expiration session expiration
A vulnerability identified as problematic has been detected in Adobe ColdFusion. Affected by this vulnerability is an unknown functionality of the component Session Expiration. The manipulation leads to session expiration. This vulnerabilit
CVE-2026-48328 | Adobe ColdFusion 2023/2025 input validation
A vulnerability categorized as problematic has been discovered in Adobe ColdFusion 2023/2025. Affected is an unknown function. Executing a manipulation can lead to improper input validation. The identification of this vulnerability is CVE-2
CVE-2026-48371 | Adobe Commerce Form Field cross site scripting
A vulnerability was found in Adobe Commerce. It has been classified as problematic. This affects an unknown function of the component Form Field. Performing a manipulation results in cross site scripting. This vulnerability is reported as C
CVE-2026-48308 | Adobe Premiere Pro Input Validation input validation
A vulnerability classified as problematic has been found in Adobe Premiere Pro. This affects an unknown part of the component Input Validation. Performing a manipulation results in improper input validation. This vulnerability is identified
CVE-2026-48272 | Adobe Creative Cloud Desktop up to 6.9.1.1 Search Path uncontrolled search path
A vulnerability was found in Adobe Creative Cloud Desktop up to 6.9.1.1 and classified as critical. This issue affects some unknown processing of the component Search Path. The manipulation results in uncontrolled search path. This vulnerab
CVE-2026-48270 | Adobe Premiere Pro File out-of-bounds write
A vulnerability has been found in Adobe Premiere Pro and classified as problematic. This vulnerability affects unknown code of the component File Handler. The manipulation leads to out-of-bounds write. This vulnerability is documented as CV
CVE-2026-48269 | Adobe Premiere Pro File heap-based overflow
A vulnerability, which was classified as critical, was found in Adobe Premiere Pro. This affects an unknown part of the component File Handler. Executing a manipulation can lead to heap-based buffer overflow. This vulnerability is registere
CVE-2026-47976 | Adobe Media Encoder out-of-bounds write
A vulnerability classified as problematic was found in Adobe Media Encoder. Affected by this vulnerability is an unknown functionality. Such manipulation leads to out-of-bounds write. This vulnerability is listed as CVE-2026-47976. The atta
CVE-2026-47979 | Adobe Media Encoder out-of-bounds
A vulnerability, which was classified as problematic, has been found in Adobe Media Encoder. Affected by this issue is some unknown functionality. Performing a manipulation results in out-of-bounds read. This vulnerability is cataloged as C
CVE-2026-47971 | Adobe Media Encoder stack-based overflow
A vulnerability classified as problematic has been found in Adobe Media Encoder. Affected is an unknown function. This manipulation causes stack-based buffer overflow. This vulnerability is tracked as CVE-2026-47971. The attack is restricte
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal
A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur
Critical Gogs Path Traversal Flaw Enables Remote Code Execution via Git Hooks
A critical path traversal vulnerability in Gogs, the self-hosted Git service, could let authenticated attackers achieve remote code execution by planting malicious Git hooks outside the intended repository storage directory. Tracked as CVE-
CVE-2021-41259 | DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.
U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the
U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the
Unitree G1 EDU: Zwei RCE-Ketten per Chat-Interface und BLE bedrohen Root-Rechte
LONDON (IT BOLTWISE) – Zwei getrennte Root-Remote-Code-Execution-Ketten gefährden offenbar die Unitree G1 EDU. Eine der Routen nutzt einen netznahen Weg über chat_go und bashrunner, die andere startet über BLE-Nähe und führt später bis in d
ZBT-Router: Zwei neue Firmware-Implants geben Root-Zugriff ohne Authentifizierung
LONDON (IT BOLTWISE) – Zwei zuvor undokumentierte Firmware-Implants in ZBT-Routern ermöglichen einem Angreifer ohne Authentifizierung Root-Rechte auf betroffenen Geräten. Die Komponenten SPEAKINGSTONE und DARKLANTERN tragen die CVE-2026-742
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. W
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. W
CVE-2026-5953 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.
CVE-2026-5800 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 28082026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 280820
CVE-2026-82324 | A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlanes) is zero. This causes a row size mismatch that bypasses memory bounds checking, resulting in heap out-of-bounds reads. This issue can result in an application crash, leading to a denial of service or a limited informatio
A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlan
CVE-2026-15603 | morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), and U+2029 (Paragraph Separator). An unauthenticated remote client can place these characters in an attacker-controlled log token, for example a Basic auth username surfaced through the remote-user token, so that Unicode-awar
morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), an
CVE-2026-19412 | This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with access to the local network could exploit this vulnerability by obtaining the hardcoded authentication information from the firmware. Successful exploitation of this vulnerability could allow the attacker to gain unauthorize
This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with acces
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover
A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig
CVE-2026-13761 | Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
CVE-2026-58107 | CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can submit a highly compressed payload that expands to a significantly larger byte sequence. Because the entire decompressed output is materialized in memory before being written to a temporary file, a sufficiently large payload
CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can s
CVE-2026-58106 | CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size passed down is the full PATH_MAX. safe_strcpy() is strncpy(), which NUL-pads the destination out to the whole n, so this site writes 4096 bytes into the 4094 that remain — a 2-byte stack overflow on every invocation, indepe
CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size