ARTIKEL SUCHE
Threat Feed QueryDurchsuche alle aggregierten Security-Artikel nach Schlagworten, CVE-IDs und Quellen.
Gemini MCP Tool 0-day Vulnerability Allows Remote Attackers to Execute Arbitrary Code
A critical zero‑day vulnerability in Gemini MCP Tool exposes users to…
CVE-2026-27197 - Sentry: Improper Authentication on SAML SSO process allows user identity linking
…Versions 21.12.0 through 26.1.0 have a critical vulnerability…
CVE-2026-30843 - Wekan has Cross-Board IDOR in Custom Fields Update Endpoints
…Versions 8.32 and 8.33 have a critical Insecure Direct Object…
CVE-2026-24448 - "MR-GM5L-S1 and MR-GM5A-L1 Hard-Coded Credentials Vulnerability"
…9.8 | CRITICAL Visit the link for more details, such as...
CVE-2026-39323 - ChurchCRM has a SQL Injection in PropertyTypeEditor.php with Cross-Page Data Exposure
…Prior to 7.1.0, a critical SQL injection vulnerability exists in…
VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXi
…a ransomware due to a critical flaw in its encryption implementation across…
CVE-2026-7321 - Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component
…9.6 | CRITICAL Visit the link for more...
CVE-2026-5788 - Ivanti EPMM Improper Access Control Remote Code Execution
…9.8 | CRITICAL ...
Hackers Exploit Ghost CMS CVE-2026-26980 to Poison 700 Websites With ClickFix Malware
A critical SQL injection flaw in Ghost CMS has been weaponized by…
[High] CVE-2026-11643 – Use after free in Proxy in Google Chrome prior to 149.0.7827.103 allowed a remot...
…network traffic. (Chromium security severity: Critical) CVSS: 8.1 · CWE: CWE-416…
CVE-2026-49763 - WordPress Integration for Contact Form 7 HubSpot plugin <= 1.3.7 - PHP Object Injection vulnerability
…9.8 | CRITICAL Visit the link for more details, such as CVSS…
CVE-2026-54806 - WordPress WP Activity Log plugin <= 5.6.3.1 - PHP Object Injection vulnerability
…9.8 | CRITICAL Visit the link for more details, such as CVSS…
CVE-2026-52705 - WordPress SigmaForms Pro – AI Generated Forms plugin <= 1.4.5 - Arbitrary File Upload vulnerability
…9.0 | CRITICAL Visit the link for more details, such as CVSS…
CVE-2026-56057 - WordPress Uncanny Automator Pro plugin <= 7.3.0.6 - PHP Object Injection vulnerability
…9.8 | CRITICAL Visit the link for more details, such as CVSS…
CVE-2026-56290 - Joomla Extension - joomlack.fr - Unauthenticated file upload in Page Builder CK extension < 3.6.0
…10.0 | CRITICAL Visit the...
Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth
A critical vulnerability in Progress Kemp LoadMaster can let an unauthenticated attacker…
CVE-2026-54769 - Langroid: Sandbox Escape to Remote Code Execution via Incomplete `eval()` Mitigation in TableChatAgent
…Versions prior to 0.65.2 are vulnerable to a critical Sandbox…
CVE-2026-63048 - Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2
…9.4 | CRITICAL Visit the link for more details, such as CVSS…
GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier
…half at every severity level. Critical findings will drop from $20,000…
CVE-2026-12946 - Remote Code Execution in CUGA Component CodeAgent
…9.9 | CRITICAL Visit the link...