News & Sicurezza
Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.
37770 risultati
Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code Execution Google has addressed a maximum severity security flaw in Gemini CLI -- the "@google/gemini-cli" npm package and the "google-github-actions/run-gemini-cli" GitHub Actions workflow -- that could have al ... Read more Published Date: Apr 30, 2026 (1 day, 19 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-33626 CVE-2026-32202 CVE-2026-3854 CVE-2026-26268
SonicWall SonicOS Vulnerabilities Allow Attackers to Bypass Access Controls and Crash Firewall SonicWall has released a security advisory addressing three vulnerabilities in its SonicOS software. Discovered by the Advanced Research Team at CrowdStrike, these flaws could allow attackers to bypas ... Read more Published Date: Apr 30, 2026 (1 day, 7 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-0206 CVE-2026-0205 CVE-2026-0204
cPanel 0-Day Authentication Bypass Vulnerability Actively Exploited in the Wild — PoC Released A critical authentication bypass vulnerability in cPanel & WHM has been confirmed to be actively exploited in the wild, sending shockwaves through the global web hosting industry. The flaw, tracked as ... Read more Published Date: Apr 30, 2026 (1 day, 7 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-41940
CVE-2026-41940: Critical cPanel Authentication Bypass Exposes Hosting Systems A newly disclosed security issue, tracked as CVE-2026-41940, has raised significant concerns across the web hosting ecosystem, particularly for systems running cPanel and WebHost Manager (WHM). The fl ... Read more Published Date: Apr 30, 2026 (1 day, 8 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-41940 CVE-2026-3854
CVE ID :CVE-2026-6868 Published : April 30, 2026, 5:04 a.m. | 1 hour, 13 minutes ago Description :HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-7378 Published : April 30, 2026, 5:04 a.m. | 1 hour, 13 minutes ago Description :Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-7379 Published : April 30, 2026, 5:04 a.m. | 1 hour, 13 minutes ago Description :Memory leak in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-7375 Published : April 30, 2026, 5:04 a.m. | 1 hour, 14 minutes ago Description :UDS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-7376 Published : April 30, 2026, 5:04 a.m. | 1 hour, 14 minutes ago Description :Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2025-13030 Published : April 30, 2026, 5 a.m. | 1 hour, 18 minutes ago Description :All versions of the package django-mdeditor are vulnerable to Missing Authentication for Critical Function in the image upload endpoint. An attacker can upload malicious files and achieve arbitrary code execution since this endpoint lacks authentication protection and proper sanitisation of file names. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
A flaw has been found in Tenda 4G300 US_4G300V1.0Mt_V1.01.42_CN_TDC01. Affected is the function sub_427C3C of the file /goform/SafeMacFilter. This manipulation of the argument page causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been published and may be used.
CVE ID :CVE-2026-7470 Published : April 30, 2026, 3:16 a.m. | 3 hours, 2 minutes ago Description :A flaw has been found in Tenda 4G300 US_4G300V1.0Mt_V1.01.42_CN_TDC01. Affected is the function sub_427C3C of the file /goform/SafeMacFilter. This manipulation of the argument page causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been published and may be used. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Pagina 1986 di 3148