News & Sicurezza
Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.
35343 risultati
Apache CXF LDAP Injection Vulnerability Let Attacker Retrieve Arbitrary Certificates A newly disclosed vulnerability in Apache CXF, tracked as CVE-2026-44930, is raising concerns among enterprise users relying on its XKMS (XML Key Management Specification) services. The flaw, classifi ... Read more Published Date: May 26, 2026 (1 day, 23 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-44930
ConnectWise Automate Vulnerability Let Attackers Bypass Security Checks ConnectWise has disclosed a high-impact security vulnerability in its Automate platform that could allow attackers to bypass critical security checks and execute malicious code under specific conditio ... Read more Published Date: May 26, 2026 (1 day, 17 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-9089
Critical Ghost CMS Vulnerability Exploited to Hack 700+ Websites A critical Ghost CMS vulnerability identified as CVE-2026-26980 has been exploited in a widespread cyber campaign that compromised more than 700 websites, including platforms associated with major ins ... Read more Published Date: May 26, 2026 (1 day, 17 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-45498 CVE-2026-41091 CVE-2026-26980
CVE ID :CVE-2026-44410 Published : May 26, 2026, 10:16 a.m. | 4 hours, 15 minutes ago Description :This vulnerability stems from a business logic flaw.Attackers can exploit legitimate application functions in unintended and abnormal ways, deviating from the designer's expectations, to carry out malicious attacks. Severity: 3.8 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-25104 Published : May 26, 2026, 8:41 a.m. | 3 hours, 50 minutes ago Description :MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-25713 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-24590 Published : May 26, 2026, 8:24 a.m. | 4 hours, 7 minutes ago Description :Missing Authorization vulnerability in VideoWhisper.Com Paid Videochat Turnkey Site allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Paid Videochat Turnkey Site: from n/a through 7.3.23. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-24638 Published : May 26, 2026, 8:21 a.m. | 4 hours, 10 minutes ago Description :Missing Authorization vulnerability in Webful Creations RepairBuddy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RepairBuddy: from n/a through 4.1121. Severity: 4.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-27427 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dylan Kuhn Geo Mashup allows Stored XSS. This issue affects Geo Mashup: from n/a through 1.13.18. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-39642 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in SpabRice Nyla allows Code Injection. This issue affects Nyla: from n/a through 1.7. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-39661 Published : May 26, 2026, 9:16 a.m. | 5 hours, 15 minutes ago Description :Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Magentech SW Core allows PHP Local File Inclusion. This issue affects SW Core: from n/a through 1.7.18. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw PuTTY 0.84 has been released with fixes for multiple minor security flaws, including issues that could trigger SSH key exchange crashes and a Telnet prompt spoofing weakness. While these vulnerabiliti ... Read more Published Date: May 26, 2026 (1 day, 18 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-4115
Pagina 1422 di 2946