Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

32057 risultati

VulnerabilitàAlta
CVE-2026-25277 - Buffer Copy Without Checking Size of Input in Secure Processor

CVE ID :CVE-2026-25277 Published : June 1, 2026, 11:16 p.m. | 3 hours, 16 minutes ago Description :Memory corruption while using Strongbox due to buffer overflow. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24782 - Kiteworks Secure Data Forms has a SQL Injection vulnerability

CVE ID :CVE-2026-24782 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0,ultiple SQL Injection vulnerabilities in Kiteworks Secure Data Forms could be exploited by an authenticated attacker with the FormBuilder role to retrieve information on or modify other users' form definitions and some global configuration parameters. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 7.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-25258 - Out-of-bounds Read in DSP Service

CVE ID :CVE-2026-25258 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Memory corruption while processing IOCTL calls for escape operations. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-25276 - Improper Validation of Array Index in Secure Processor

CVE ID :CVE-2026-25276 Published : June 1, 2026, 11:16 p.m. | 3 hours, 16 minutes ago Description :Memory corruption while using Strongbox due to missing bounds check. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-25260 - Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service

CVE ID :CVE-2026-25260 Published : June 1, 2026, 11:16 p.m. | 3 hours, 16 minutes ago Description :Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-25259 - Out-of-bounds Write in DSP Service

CVE ID :CVE-2026-25259 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Memory corruption while processing multiple IOCTL command for escape operations. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24092 (CVSS 7.2)

Memory Corruption when processing fastboot commands to set display mode.

NVD (NIST)01 giu 2026
VulnerabilitàAlta
CVE-2026-24752 - Kiteworks Secure Data Forms Vulnerable to Cross-site Scripting

CVE ID :CVE-2026-24752 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Data Forms could allow an external attacker to trick a user into executing arbitrary JavaScript code. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24756 - Kiteworks Secure Data Forms is vulnerable to Authorization Bypass Through User-Controlled Key

CVE ID :CVE-2026-24756 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerability in Kiteworks Secure Data Forms allows an authenticated user to modify resources belonging to other users due to insufficient authorization checks on resource ownership. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 4.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24755 - Kiteworks Secure Data Forms is vulnerable to Authorization Bypass Through User-Controlled Key

CVE ID :CVE-2026-24755 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerability in Kiteworks Secure Data Forms allows an authenticated user to modify permissions on resources belonging to other users due to insufficient authorization checks on resource ownership. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24754 - Kiteworks Secure Data Forms Vulnerable to Cross-site Scripting

CVE ID :CVE-2026-24754 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, a stored XSS vulnerability in Kiteworks Secure Data Forms could allow an authenticated attacker to execute arbitrary JavaScript code in other users' sessions. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026
VulnerabilitàAlta
CVE-2026-24753 - Kiteworks Secure Data Forms is vulnerable to Authorization Bypass Through User-Controlled Key

CVE ID :CVE-2026-24753 Published : June 1, 2026, 11:16 p.m. | 1 hour, 16 minutes ago Description :Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerability in Kiteworks Secure Data Forms allows an authenticated user to modify resources belonging to other users due to insufficient authorization checks on resource ownership. Upgrade Kiteworks to version 9.3.0 or later to receive a patch. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE01 giu 2026

Pagina 1039 di 2672

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.