Sichere ProgrammierungPlanning a DEX Product Without Starting With Smart Contracts(21.09.2026 um 15:26 Uhr)
Malware / Trojaner / VirenInside BambooToken’s Linux implant: shell and file control over MQTT(21.09.2026 um 12:37 Uhr)
Linux Tipps & HardeningVoid Linux (base) as a server distro?(21.09.2026 um 14:13 Uhr)
IT Security VideoBlack Hat Stories | Ryan & Isabella Barnett(21.09.2026 um 15:30 Uhr)
IT Security NachrichtenSuccess of Trump-Xi summit lies in what happens afterwards(21.09.2026 um 14:30 Uhr)
Sichere ProgrammierungPlanning a DEX Product Without Starting With Smart Contracts(21.09.2026 um 15:26 Uhr)
Malware / Trojaner / VirenInside BambooToken’s Linux implant: shell and file control over MQTT(21.09.2026 um 12:37 Uhr)
Linux Tipps & HardeningVoid Linux (base) as a server distro?(21.09.2026 um 14:13 Uhr)
IT Security VideoBlack Hat Stories | Ryan & Isabella Barnett(21.09.2026 um 15:30 Uhr)
IT Security NachrichtenSuccess of Trump-Xi summit lies in what happens afterwards(21.09.2026 um 14:30 Uhr)
Cybersecurity News & Diskussionsportal
⚡ tsecurity.de Intelligence

Sicherheitslücken (CVE)

🚨
BioStar • CVE-2026-94142
CVE-2026-94142 | A security vulnerability has been detected in BioStar Temperature Monitor Utility 1.2.1806.2200. Affected by this vulnerability is the function sub_1105C of the file BS_HWMIO64_W10.sys of the component IOCTL Handler. Such manipulation of the argument PhysicalAddress leads to write-what-where condition. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did
Advisory ansehen ➔
Sicherheitslücken (CVE) Cyber Security News
Critical Microsoft Azure AI Foundry Vulnerability Allows Attackers to Escalate Privileges

Microsoft has patched a maximum-severity security flaw in Azure AI Foundry, its enterprise platform for building and managing generative AI…

🛡️ Security Fix
vor 2 Tagen 1 Min
0
Weiterlesen ↗
The Hacker NewsMicrosoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalationvor 3 Tagen
Sicherheitslücken (CVE) KitPloit
libextractor-ole2-rce

PoC for a Critical stack-based buffer overflow in GNU libextractor ≤ 1.14. A malicious .

vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) GBHackers Security
Over 100,000 WordPress Sites Exposed to RCE Through Tutor LMS Vulnerability

More than 100,000 WordPress sites using the Tutor LMS e-learning plugin were exposed to a high-severity remote code execution vulnerability that…

🛡️ Security Fix
vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) IT Security News
Critical pgAdmin Authentication Bypass Lets Attackers Login as Administrator Without Credentials

A critical vulnerability in pgAdmin 4 could allow unauthenticated remote attackers to impersonate arbitrary users, including existing administrator…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
The Hacker NewsCritical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Rootvor 3 TagenHackers Online ClubCritical Cisco ISE Authentication Bypass (CVE-2026-76460) Under Active Exploitationvor 3 Tagen
Sicherheitslücken (CVE) The Cyber Express
Cisco ISE Vulnerability With CVSS 10.0 Score Under Active Attack

Cisco has released a fix for a maximum-severity flaw in its Identity Services Engine (ISE) platform after confirming the bug was already being…

🛡️ Security Fix
vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Help Net Security
Zero-click RCE vulnerability hit four major AI coding agents, two remain unpatched

Four major AI coding agents, Claude Code, Codex, GitHub Copilot and Gemini CLI, all share the same zero-click RCE vulnerability, one that could give…

🛡️ Security Fix
vor 3 Tagen 1 Min
0
Weiterlesen ↗
IT Security NewsAI coding agents’ 0-click RCE flaw could hand attackers keys to the kingdomvor 3 Tagenwww.theregister.comAI coding agents' 0-click RCE flaw could hand attackers keys to the kingdomvor 3 Tagen
Sicherheitslücken (CVE) Cyber Security News
Plugin4Shell Zero-Click RCE Hits Claude Code, Codex, Copilot and Gemini CLI

Plugin4Shell is a high-severity, zero-click remote code execution vulnerability affecting major AI coding agents, including Anthropic Claude Code…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) SecurityWeek
Critical Orkes Conductor Vulnerability Exploited in Attacks

CVE-2026-58138 is an unauthenticated remote code execution vulnerability that attackers can exploit via inline workflow definitions.

🛡️ Security Fix
vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Security Affairs
Check Point Fixes Critical CVE-2026-91843 Allowing Root Code Execution

Check Point fixed CVE-2026-91843, a critical flaw that could let attackers run code as root on Security Management and Log Servers with no login…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) CSO Online
Cisco patches max-severity ISE flaw, the second critical zero-day this week

Cisco released patches for an actively exploited authentication bypass vulnerability in its Cisco Identity Services Engine (ISE) platform, which is…

🛡️ Security Fix
vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) «Hacker News» 🗞️🦾 IT BOLTWI…
Kritische Flaw in Docker Sandboxes: Escape auf macOS über virtio-fs

LONDON (IT BOLTWISE) – Docker warnt vor zwei Lücken in Docker Sandboxes, darunter eine als „Critical“ bewertete Schwachstelle (CVE-2026-77179) auf…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
The Hacker NewsCritical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Filesvor 3 TagenCyber Security NewsCritical Docker Sandbox Vulnerabilities Enable Malicious Guests to Escape Isolated microVM Workspacesvor 4 Tagen
Sicherheitslücken (CVE) «Hacker News» 🗞️🦾 IT BOLTWI…
Unbound 1.26.1 schließt kritische DNSSEC-Validator-Lücke mit RCE-Potenzial

LONDON (IT BOLTWISE) – Unbound schließt mit dem Update auf Version 1.26.1 eine kritische Heap-Overflow-Lücke im DNSSEC-Validator.

vor 3 Tagen 1 Min
0
Weiterlesen ↗
The Hacker NewsCritical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zonevor 4 Tagen
Sicherheitslücken (CVE) DEV Community
The Events Calendar: Two Unauthenticated RCE Chains via Unapproved Comments

1. Basic Information Original Title: Wordfence Argus Identifies Two Critical Unauthenticated Vulnerability Chains Leading to Remote Code Execution in…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) DEV Community
A Prompt Injection Turned Into a Shell: Inside Semantic Kernel's Two RCE CVEs

Two ordinary agent-framework conveniences, a filterable vector search and a file-download tool, turned into remote code execution once an LLM's…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Vulnerability definition fe…
Cross-Site Request Forgery in WooCommerce Product and Term Ordering

The WooCommerce admin AJAX handlers WC_AJAX::product_ordering() and WC_AJAX::term_ordering() changed the menu_order of products and taxonomy terms…

vor 3 Tagen 1 Min
0
Weiterlesen ↗
Vulnerability definitio…Stored Cross-Site Scripting in WooCommerce Order Notes REST API v4vor 3 Tagen
Sicherheitslücken (CVE) Cyber Security News
Cisco Warns of Critical ISE 0-Day Vulnerability Exploited in Attacks

Cisco has issued an urgent security advisory for a critical zero-day vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive…

🛡️ Security Fix
vor 4 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-13585 | ASUS System Control Interface/Business Manager Driver allocation of resources

A vulnerability labeled as problematic has been found in ASUS System Control Interface and Business Manager.

vor 4 Tagen 1 Min
0
Weiterlesen ↗
Weitere 36 Beiträge laden
Seite 2 von 6 • Gesamt: 195 Artikel
Threat Hunter Status-Update verfassen
Community Stream
News-Deck Sicherheitslücken (CVE) 📖 0 · ⏭ 0 · 🗳️ 0

Karten werden geladen …

Hoch = in der Vorschau lesen · Rechts = vor · Links/Runter = zurück · Enter/Karte tippen = Vorschau · V = Voting