Windows Tipps & SecurityNighthawk M7 Pro im Test: Flexibler, aber teurer 5G-Router(21.09.2026 um 10:30 Uhr)
Sichere ProgrammierungNeue Gmail-Funktion: So sparst du jetzt Zeit bei Einmalcodes(21.09.2026 um 10:00 Uhr)
Sichere ProgrammierungYour GIF exporter is fine — the container is the problem(21.09.2026 um 10:01 Uhr)
Sichere ProgrammierungCSS, Motion, or GSAP? I Choose by Who Owns the Animation(21.09.2026 um 10:12 Uhr)
Windows Tipps & SecurityNighthawk M7 Pro im Test: Flexibler, aber teurer 5G-Router(21.09.2026 um 10:30 Uhr)
Sichere ProgrammierungNeue Gmail-Funktion: So sparst du jetzt Zeit bei Einmalcodes(21.09.2026 um 10:00 Uhr)
Sichere ProgrammierungYour GIF exporter is fine — the container is the problem(21.09.2026 um 10:01 Uhr)
Sichere ProgrammierungCSS, Motion, or GSAP? I Choose by Who Owns the Animation(21.09.2026 um 10:12 Uhr)
Cybersecurity News & Diskussionsportal
⚡ tsecurity.de Intelligence

Reverse Engineering

Sicherheitslücken (CVE) VulDB Updates
CVE-2026-69258 | FlowiseAI Flowise up to 3.1.2 Prediction Endpoint index.ts overrideConfig injection

A vulnerability was found in FlowiseAI Flowise up to 3.1.2. It has been declared as critical.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
VulDB UpdatesCVE-2026-69259 | FlowiseAI Flowise up to 3.1.2 SQLite Record Manager SQLiteRecordManager.ts additionalConfig sql injectionvor 6 TagenVulDB UpdatesCVE-2026-69257 | FlowiseAI Flowise up to 3.1.2 HTTP Security httpSecurity.ts isDeniedIP incomplete blacklistvor 6 TagenVulDB UpdatesCVE-2026-69256 | FlowiseAI Flowise up to 3.1.2 CSVAgent CSVAgent.ts pandas.read_pickle customReadCSVFunc deserializationvor 6 TagenVulDB UpdatesCVE-2026-69255 | FlowiseAI Flowise up to 3.1.2 CSVAgent CSVAgent.ts validatePythonCodeForDataFrame os command injectionvor 6 TagenVulDB UpdatesCVE-2026-69254 | FlowiseAI Flowise up to 3.1.2 JavaScript Code Execution utils.ts executeJavaScriptCode nodeVMOptions command injectionvor 6 TagenVulDB UpdatesCVE-2026-69253 | FlowiseAI Flowise up to 3.1.2 AgentAsTool/ChatflowTool/ExecuteFlow isValidURL baseURL code injectionvor 6 TagenVulDB UpdatesCVE-2026-69252 | FlowiseAI Flowise up to 3.1.2 File Management /api/v1/files getAllFiles/deleteFile path permissionvor 6 TagenVulDB UpdatesCVE-2026-69250 | FlowiseAI Flowise up to 3.1.2 OAuth2 Token Refresh Endpoint server-side request forgeryvor 6 TagenVulDB UpdatesCVE-2026-69251 | FlowiseAI Flowise/Flowise Components up to 3.1.2 Record Manager/Agent Memory MySQLrecordManager.ts additionalConfig code injectionvor 6 TagenVulDB UpdatesCVE-2026-69263 | FlowiseAI Flowise up to 3.1.2 MCP Server core.ts os command injectionvor 6 TagenVulDB UpdatesCVE-2026-69264 | FlowiseAI Flowise up to 3.1.2 CSVAgent validatePythonCodeForDataFrame csvFile os command injectionvor 6 TagenVulDB UpdatesCVE-2026-70472 | FlowiseAI Flowise up to 3.1.2 openai-assistants-vector-store credential permissionvor 6 TagenVulDB UpdatesCVE-2026-70471 | FlowiseAI Flowise up to 3.1.2 Code Execution Sandbox utils.ts vars privileges managementvor 6 Tagen
Sicherheitslücken (CVE) Category: Threat Research
Cisco Secure Email Gateway vulnerability (CVE-2026-76461) in active exploitation

Categories: Threat ResearchTags: advisory, vulnerability, Cisco

vor 6 Tagen 1 Min
0
Weiterlesen ↗
VulDB UpdatesCVE-2026-76461 | Cisco AsyncOS up to 16.0.4-016 Email Parsing sql injectionvor 6 Tagen
Sicherheitslücken (CVE) Security Affairs
ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up

Frontier AI is compressing the attack lifecycle from vulnerability discovery to exploitation, forcing defenders to detect, patch and respond at…

IT Security Nachrichten 65%
vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) darkreading
Maximum Severity GitLab Flaw Puts Supply Chains at Risk

CVE-2026-85706 is a path traversal vulnerability with a 10 out of 10 CVSS score, affecting both GitLab Community Edition and Enterprise Edition…

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Cyber Security Advisories
Multiple Vulnerabilities in Mikrotik Routers Could Allow for Admin Hijacking

Multiple vulnerabilities have been discovered in MikroTik Routers, the most severe of which could allow for admin hijacking.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-79573 | L-ONE 1.0.0 Attachment GetBusinessUploadList busid/id/taskid sql injection

A vulnerability classified as critical has been found in L-ONE 1.0.0.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-90602 | Anil-matcha Open-Generative-AI up to 1.0.11/2.0.0 Studio Components ImageStudio.js renderHistory cross site scripting (Issue 309 / EUVD-2026-77131)

A vulnerability marked as problematic has been reported in Anil-matcha Open-Generative-AI up to 1.0.11/2.0.0.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-71807 | RuoYi-Cloud-Plus up to 2.6.2 ruoyi-workflow module FlwTaskController taskId privileges management (EUVD-2026-75208)

A vulnerability classified as critical has been found in RuoYi-Cloud-Plus up to 2.6.2.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) «Hacker News» 🗞️🦾 IT BOLTWI…
Red Heron nutzt Gitea-RCE und Rootkit SIXZUT für 13 kompromittierte Ziele

LONDON (IT BOLTWISE) – Ein mutmaßlich China-gebundenes Akteurscluster soll eine neu offengelegte Schwachstelle in Gitea (CVE-2026-60004) schnell zu…

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-75171 | HubCore 14.1.1 HUBCOREID session cookie handling privileges management

A vulnerability, which was classified as critical, has been found in HubCore 14.1.1.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) IT Security News
Wordfence Argus Identifies Two Critical Unauthenticated Vulnerability Chains Leading to Remote Code Execution in The Events Calendar Plugin

On August 21 and August 22, 2026, Wordfence Argus, created by the Wordfence Threat Intelligence team, identified two independent critical…

🛡️ Security Fix
vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Post malware and hostile se…
Full intrusion toolkit recovered from an open directory: FortiGate/F5 exploits, PwnKit, Ghostcat, MeshCentral

The exposed directory held the operator's complete kit across 30 subdirectories.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Reverse Engineering Schneier on Security
Using AI for Weapons Development

Last week, Anthropic released a long and detailed document describing current misuses of their Claude models.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-90961 | MISP up to 2.5.45 LdapAuth/LinOTPAuth _checkFields email/password hard-coded password (0ee058548 / EUVD-2026-77473)

A vulnerability labeled as critical has been found in MISP up to 2.5.45.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-90941 | novel-plus up to 5.3.3 BookController bookId/bookName authorization (EUVD-2026-77485)

A vulnerability, which was classified as problematic, has been found in novel-plus up to 5.3.3.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Cyber Security News
AWS Systems Manager Agent Vulnerability Allows Attackers to Bypass Port-Forwarding Restrictions

A critical vulnerability in the AWS Systems Manager Agent could let authenticated attackers bypass remote-host port-forwarding restrictions and…

🛡️ Security Fix
vor 6 Tagen 1 Min
0
Weiterlesen ↗
Reverse Engineering Reverse Engineering
Technical Analysis of Suno internals post-September 26 and a working tool to assist with curation

submitted by /u/SolidAlternative1646 [link] [comments]

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) eSecurity Planet
OpenAI Agents Linked to 2,000 RubyGems Packages, Alleged RubyDoc RCE

Researchers have linked internal OpenAI agents to a May campaign that flooded RubyGems with malicious packages and allegedly used RubyDoc.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) «Hacker News» 🗞️🦾 IT BOLTWI…
KI-Ära im Security-Validation: CVSS reicht nicht mehr

LONDON (IT BOLTWISE) – In der ersten Hälfte 2026 wurden 35.853 CVEs veröffentlicht, während nur 495 davon als bereits ausgenutzt galten.

vor 6 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) BSI Warn- und Informationsd…
[NEU] [mittel] Red Hat Certificate System for RHEL (Dogtag PKI): Schwachstelle ermöglicht Offenlegung von Informationen

Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Certificate System und Red Hat Enterprise Linux ausnutzen, um Informationen…

🛡️ Security Fix
vor 6 Tagen 1 Min
0
Weiterlesen ↗
Weitere 36 Beiträge laden
Seite 8 von 10 • Gesamt: 328 Artikel
Threat Hunter Status-Update verfassen
Community Stream
News-Deck Reverse Engineering 📖 0 · ⏭ 0 · 🗳️ 0

Karten werden geladen …

Hoch = in der Vorschau lesen · Rechts = vor · Links/Runter = zurück · Enter/Karte tippen = Vorschau · V = Voting