Sichere ProgrammierungPlanning a DEX Product Without Starting With Smart Contracts(21.09.2026 um 15:26 Uhr)
Malware / Trojaner / VirenInside BambooToken’s Linux implant: shell and file control over MQTT(21.09.2026 um 12:37 Uhr)
Linux Tipps & HardeningVoid Linux (base) as a server distro?(21.09.2026 um 14:13 Uhr)
IT Security VideoBlack Hat Stories | Ryan & Isabella Barnett(21.09.2026 um 15:30 Uhr)
IT Security NachrichtenSuccess of Trump-Xi summit lies in what happens afterwards(21.09.2026 um 14:30 Uhr)
Sichere ProgrammierungPlanning a DEX Product Without Starting With Smart Contracts(21.09.2026 um 15:26 Uhr)
Malware / Trojaner / VirenInside BambooToken’s Linux implant: shell and file control over MQTT(21.09.2026 um 12:37 Uhr)
Linux Tipps & HardeningVoid Linux (base) as a server distro?(21.09.2026 um 14:13 Uhr)
IT Security VideoBlack Hat Stories | Ryan & Isabella Barnett(21.09.2026 um 15:30 Uhr)
IT Security NachrichtenSuccess of Trump-Xi summit lies in what happens afterwards(21.09.2026 um 14:30 Uhr)
Cybersecurity News & Diskussionsportal
⚡ tsecurity.de Intelligence

Sicherheitslücken (CVE)

🚨
BioStar • CVE-2026-94142
CVE-2026-94142 | A security vulnerability has been detected in BioStar Temperature Monitor Utility 1.2.1806.2200. Affected by this vulnerability is the function sub_1105C of the file BS_HWMIO64_W10.sys of the component IOCTL Handler. Such manipulation of the argument PhysicalAddress leads to write-what-where condition. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did
Advisory ansehen ➔
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-81159 | Drupal Commerce CyberSource Plugin up to 1.9.x excessive authentication

A vulnerability has been found in Drupal Commerce CyberSource Plugin up to 1.9.x and classified as problematic.

vor 4 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Cyber Security News
Critical Docker Sandboxes Flaw Lets Malicious Guests Escape Isolation and Access Host Files

Docker has released security fixes for two serious vulnerabilities in Docker Sandboxes that could allow a malicious guest environment to break…

vor 4 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) GBHackers Security
Jenkins Patches 20 Plugin Flaws Leading to RCE, XSS and Credential Theft

Jenkins has released security updates addressing 20 vulnerabilities across 13 plugins, including multiple high-severity flaws that could allow…

IT Security Nachrichten 75%
vor 4 Tagen 1 Min
0
Weiterlesen ↗
Cyber Security NewsJenkins Fixes 20 Plugin Vulnerabilities Enabling RCE, Sandbox Bypass and Credential Theftvor 4 Tagen
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-25294 | Qualcomm Snapdragon CCW up to XRV9209 resource consumption (EUVD-2026-81333)

A vulnerability marked as critical has been reported in Qualcomm Snapdragon CCW, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon MC…

vor 4 Tagen 1 Min
0
Weiterlesen ↗
VulDB UpdatesCVE-2026-92596 | Nodemailer up to 9.0.x Addressparser resource consumption (EUVD-2026-81296)vor 4 TagenVulDB UpdatesCVE-2026-73446 | Arista EOS up to 4.36.1F Broadcast Interface resource consumption (WID-SEC-2026-3287)vor 4 TagenVulDB UpdatesCVE-2026-57173 | vllm-project vLLM up to 0.23.x Audio Decoder /v1/chat/completions AudioMediaIO.load_bytes resource consumption (EUVD-2026-80880)vor 4 TagenVulDB UpdatesCVE-2026-85501 | NLnet Labs Unbound up to 1.26.0 DNSSEC Validation resource consumption (WID-SEC-2026-3392)vor 4 TagenVulDB UpdatesCVE-2026-80225 | NLnet Labs Unbound up to 1.26.0 TCP/DoT Reading Procedure resource consumption (WID-SEC-2026-3392)vor 4 TagenVulDB UpdatesCVE-2026-77860 | NLnet Labs Unbound up to 1.26.0 serve-expired resource consumption (WID-SEC-2026-3392)vor 4 TagenVulDB UpdatesCVE-2026-73458 | Arista EOS up to 4.33.8M/4.34.7M/4.35.5M/4.36.1F Bidirectional Forwarding Detection resource consumption (CNNVD-2026-99454354)vor 4 TagenVulDB UpdatesCVE-2026-58227 | Erlang OTP prior 27.3.4.15/28.5.0.4/29.0.4 Certificate ssl_certificate:handle_incomplete_chain/5 resource consumption (Nessus ID 346027)vor 4 TagenVulDB UpdatesCVE-2026-28617 | Google Android 15/16/16-qpr2/17 WifiNetworkSuggestionsManager WifiNetworkSuggestionsManager.java resource consumptionvor 5 TagenVulDB UpdatesCVE-2026-28596 | Google Android 14/15/16/16-qpr2 GameManagerService.java parseInterventionFromXml resource consumptionvor 5 Tagen
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-63127 | Model Context Protocol RMCP SDK up to 1.x OAuth Implementation auth.rs discover_oauth_server_via_resource_metadata improper authorization (EUVD-2026-80824)

A vulnerability classified as problematic was found in Model Context Protocol RMCP SDK up to 1.x.

vor 4 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) DEV Community
CVE-2026-16723: Pre-Auth RCE in Fastjson 1.x via the @JSONType Trust Branch

Overview CVE ID CVE-2026-16723 Affected Fastjson 1.2.68 – 1.2.83 (every 1.

vor 4 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-59245 | Apache Airflow up to 3.7.1 FAB Auth Manager resource_name dag_id permission

A vulnerability was found in Apache Airflow up to 3.7.1 and classified as problematic.

vor 4 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Cyber Security News
CISA Warns of Critical ScreenConnect Vulnerability Actively Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical ConnectWise ScreenConnect vulnerability, tracked as…

🛡️ Security Fix
vor 4 Tagen 1 Min
0
Weiterlesen ↗
BleepingComputerCritical ScreenConnect flaw now actively exploited in attacksvor 5 Tagen
Sicherheitslücken (CVE) Cyber Security News
Critical Issabel PBX Command Execution Vulnerability Exploited in the Wild

A critical vulnerability in the Issabel Framework, which supports Issabel PBX deployments, is being actively exploited in the wild.

🛡️ Security Fix
vor 5 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) Latest from TechRadar
Third-party WooCommerce plugin hits WordPress sites with PHP backdoor abusing recently patched vulnerability

Defiant warned of active exploitation of WooCommerce Wholesale Lead Capture Plugin flaw (CVE‑2026‑27540)Critical unauthenticated file‑upload bug lets…

🛡️ Security Fix
vor 5 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) SecurityWeek
Unauthenticated RCE Flaws Could Expose 200,000+ WordPress Sites to Takeover

Vulnerabilities in The Events Calendar can provide attackers with remote code execution capabilities.

vor 5 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-28623 | Google Android 16/16-qPR2/17 Bluetooth BleRssiRangingCapabilities.java writeToParcel permission

A vulnerability marked as problematic has been reported in Google Android 16/16-qPR2/17.

vor 5 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) VulDB Updates
CVE-2026-73439 | Arista EOS up to 4.33.8M/4.34.6M/4.35.5M/4.36.0.1F gNSI Pathz Policy Enforcement privileges management (EUVD-2026-80252)

A vulnerability was found in Arista EOS up to 4.33.8M/4.34.6M/4.35.5M/4.36.0.1F. It has been declared as very critical.

vor 5 Tagen 1 Min
0
Weiterlesen ↗
Sicherheitslücken (CVE) DEV Community
CVE-2026-42167: ProFTPD mod_sql RCE and How to Analyze the Exploit-DB PoC

A public exploit for CVE-2026-42167, a ProFTPD mod_sql vulnerability, is now available on Exploit-DB. The vulnerability has a CVSS v3.1 score of 8.

vor 5 Tagen 1 Min
0
Weiterlesen ↗
Weitere 36 Beiträge laden
Seite 3 von 6 • Gesamt: 195 Artikel
Threat Hunter Status-Update verfassen
Community Stream
News-Deck Sicherheitslücken (CVE) 📖 0 · ⏭ 0 · 🗳️ 0

Karten werden geladen …

Hoch = in der Vorschau lesen · Rechts = vor · Links/Runter = zurück · Enter/Karte tippen = Vorschau · V = Voting