Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

35343 risultati

News
Apache CXF LDAP Injection Vulnerability Let Attacker Retrieve Arbitrary Certificates

Apache CXF LDAP Injection Vulnerability Let Attacker Retrieve Arbitrary Certificates A newly disclosed vulnerability in Apache CXF, tracked as CVE-2026-44930, is raising concerns among enterprise users relying on its XKMS (XML Key Management Specification) services. The flaw, classifi ... Read more Published Date: May 26, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-44930

CVEfeed Newsroom26 mag 2026
News
ConnectWise Automate Vulnerability Let Attackers Bypass Security Checks

ConnectWise Automate Vulnerability Let Attackers Bypass Security Checks ConnectWise has disclosed a high-impact security vulnerability in its Automate platform that could allow attackers to bypass critical security checks and execute malicious code under specific conditio ... Read more Published Date: May 26, 2026 (1 day, 17 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-9089

CVEfeed Newsroom26 mag 2026
News
Critical Ghost CMS Vulnerability Exploited to Hack 700+ Websites

Critical Ghost CMS Vulnerability Exploited to Hack 700+ Websites A critical Ghost CMS vulnerability identified as CVE-2026-26980 has been exploited in a widespread cyber campaign that compromised more than 700 websites, including platforms associated with major ins ... Read more Published Date: May 26, 2026 (1 day, 17 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-45498 CVE-2026-41091 CVE-2026-26980

CVEfeed Newsroom26 mag 2026
VulnerabilitàAlta
CVE-2026-44410 - Function Abusement Vulnerability in ZTE ZXUniPOS NDS-LTE

CVE ID :CVE-2026-44410 Published : May 26, 2026, 10:16 a.m. | 4 hours, 15 minutes ago Description :This vulnerability stems from a business logic flaw.Attackers can exploit legitimate application functions in unintended and abnormal ways, deviating from the designer's expectations, to carry out malicious attacks. Severity: 3.8 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-25104 - MediaArea MediaInfoLib LXF Parsing Heap Overflow

CVE ID :CVE-2026-25104 Published : May 26, 2026, 8:41 a.m. | 3 hours, 50 minutes ago Description :MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-25713 - MediaArea MediaInfoLib Heap Buffer Overflow

CVE ID :CVE-2026-25713 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-24590 - WordPress Paid Videochat Turnkey Site plugin <= 7.3.23 - Broken Access Control vulnerability

CVE ID :CVE-2026-24590 Published : May 26, 2026, 8:24 a.m. | 4 hours, 7 minutes ago Description :Missing Authorization vulnerability in VideoWhisper.Com Paid Videochat Turnkey Site allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Paid Videochat Turnkey Site: from n/a through 7.3.23. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-24638 - WordPress RepairBuddy plugin <= 4.1121 - Broken Access Control vulnerability

CVE ID :CVE-2026-24638 Published : May 26, 2026, 8:21 a.m. | 4 hours, 10 minutes ago Description :Missing Authorization vulnerability in Webful Creations RepairBuddy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RepairBuddy: from n/a through 4.1121. Severity: 4.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-27427 - WordPress Geo Mashup plugin <= 1.13.18 - Cross Site Scripting (XSS) vulnerability

CVE ID :CVE-2026-27427 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dylan Kuhn Geo Mashup allows Stored XSS. This issue affects Geo Mashup: from n/a through 1.13.18. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-39642 - WordPress Nyla theme <= 1.7 - Arbitrary Shortcode Execution vulnerability

CVE ID :CVE-2026-39642 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in SpabRice Nyla allows Code Injection. This issue affects Nyla: from n/a through 1.7. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
VulnerabilitàAlta
CVE-2026-39661 - WordPress SW Core plugin <= 1.7.18 - Local File Inclusion vulnerability

CVE ID :CVE-2026-39661 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Magentech SW Core allows PHP Local File Inclusion. This issue affects SW Core: from n/a through 1.7.18. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 mag 2026
News
PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw

PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw PuTTY 0.84 has been released with fixes for multiple minor security flaws, including issues that could trigger SSH key exchange crashes and a Telnet prompt spoofing weakness. While these vulnerabiliti ... Read more Published Date: May 26, 2026 (1 day, 18 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-4115

CVEfeed Newsroom26 mag 2026

Pagina 1422 di 2946

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.