ARTIKEL SUCHE
Threat Feed QueryDurchsuche alle aggregierten Security-Artikel nach Schlagworten, CVE-IDs und Quellen.
CVE-2026-12281 - Shibboleth < 2.5.4 - Unauthenticated Administrator Account Creation via Identity Header Spoofing
CVE ID :CVE-2026-12281 Published : July 15, 2026, 6:16 a…
CVE-2026-18248 - @fastify/aws-lambda vulnerable to Lambda event spoofing via client-controlled x-apigateway-event header
CVE ID :CVE-2026-18248 Published : Aug. 3, 2026, 3:20 p…
CVE-2026-84353 - Google Chrome Shared Tab Groups Use-After-Free Vulnerability
CVE ID :CVE-2026-84353 Published : Sept. 2, 2026, 12:18 a…
CVE-2026-40575 - OAuth2 Proxy has an Authentication Bypass via X-Forwarded-Uri Header Spoofing
CVE ID :CVE-2026-40575 Published : April 22, 2026, 12:16 a…
CVE-2026-10140 - Cross-Tenant API Key Reuse and Billing Fraud in Langflow Voice Mode Subsystem
CVE ID :CVE-2026-10140 Published : June 30, 2026, 7:55 p…
CVE-2026-76356 - Authentication Bypass through IP Address Spoofing in the Automation Broker in Splunk SOAR
CVE ID :CVE-2026-76356 Published : Aug. 19, 2026, 10:17 p…
CVE-2026-91039 - dynamic_oidc identities are not namespaced by connection in ash_authentication, allowing cross-connection account takeover
CVE ID :CVE-2026-91039 Published : Sept. 17, 2026, 3:19 p…
CVE-2026-100390 - Zoraxy 3.2.3 through 3.3.4 Client IP Spoofing via X-Forwarded-For IPv6
CVE ID :CVE-2026-100390 Published : Sept. 25, 2026, 9:17 p…
CVE-2026-96838 - WordPress Blacklist Manager – WooCommerce Anti-Fraud, Blacklist & Checkout Verification plugin <= 2.3.1 - Cross Site Request Forgery (CSRF) vulnerability
CVE ID :CVE-2026-96838 Published : 30. September 2026 13:17 | 1…
ThreatsDay Bulletin: AI Voice Cloning Exploit, Wi-Fi Kill Switch, PLC Vulns, and 14 More Stories
The internet never stays quiet. Every week, new hacks, scams, and security…
ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More Stories
The internet never stays quiet. Every week, new hacks, scams, and security…
CVE-2026-28474 - OpenClaw Nextcloud Talk < 2026.2.6 - Allowlist Bypass via actor.name Display Name Spoofing
CVE ID : CVE-2026-28474 Published : March 5, 2026, 10:16 p…
[Unknown] CVE-2026-11261 – Inappropriate implementation in PDF in Google Chrome prior to 149.0.7827.53 allo...
Unknown CVE-2026-11261 Inappropriate implementation in PDF in Google Chrome prior…
CVE-2026-40487 - Postiz Has Unrestricted File Upload via MIME Type Spoofing that Leads to Stored XSS
CVE ID :CVE-2026-40487 Published : April 18, 2026, 2:16 a…
ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New Stories
Bad week. Turns out the easiest way to get hacked in 2026…
CVE-2026-48788 - Remark42: Cross-Site Scripting (XSS) on /api/v1/img via content-type spoofing
CVE ID :CVE-2026-48788 Published : June 16, 2026, 10:29 p…
CVE-2026-55641 - 9router: Unauthenticated `/v1` proxy access via `Host`-header spoofing → open AI relay + SSRF
CVE ID :CVE-2026-55641 Published : July 10, 2026, 5:16 p…
CVE-2026-14321 - Divi Dash < 1.0.7 - Unauthenticated Denial of Service via IP Address Spoofing
CVE ID :CVE-2026-14321 Published : Sept. 23, 2026, 6:17 a…
[Unknown] CVE-2026-11286 – Insufficient validation of untrusted input in Wallet in Google Chrome prior to 1...
Unknown CVE-2026-11286 Insufficient validation of untrusted input in Wallet in…
CVE-2026-18847 - IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE ID :CVE-2026-18847 Published : Aug. 12, 2026, 5:17 p…