Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

45464 risultati

VulnerabilitàAlta
CVE-2026-33850 - Out-of-bounds Write in WujekFoliarz DualSenseY-v2

CVE ID :CVE-2026-33850 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Out-of-bounds Write vulnerability in WujekFoliarz DualSenseY-v2.This issue affects DualSenseY-v2: before 54. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
VulnerabilitàAlta
CVE-2026-33851 - Improper Restriction of Operations within the Bounds of a Memory Buffer in joncampbell123 doslib

CVE ID :CVE-2026-33851 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in joncampbell123 doslib.This issue affects doslib: before doslib-20250729. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
VulnerabilitàAlta
CVE-2026-33856 - Missing Release of Memory after Effective Lifetime in MolotovCherry Android-ImageMagick7

CVE ID :CVE-2026-33856 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
VulnerabilitàAlta
CVE-2026-33855 - Integer Overflow or Wraparound in MolotovCherry Android-ImageMagick7

CVE ID :CVE-2026-33855 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Integer Overflow or Wraparound vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
VulnerabilitàAlta
CVE-2026-33848 - Improper Restriction of Operations within the Bounds of a Memory Buffer in linkingvision rapidvms

CVE ID :CVE-2026-33848 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This issue affects rapidvms: before PR#96. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
VulnerabilitàAlta
CVE-2026-33847 - Improper Restriction of Operations within the Bounds of a Memory Buffer in linkingvision rapidvms

CVE ID :CVE-2026-33847 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This issue affects rapidvms: before PR#96. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
News
Attackers are handing off access in 22 seconds, Mandiant finds

Attackers are handing off access in 22 seconds, Mandiant finds Exploits remain the leading entry point for attackers for the sixth consecutive year, according to Mandiant’s M-Trends 2026 report, which draws on more than 500,000 hours of incident response work con ... Read more Published Date: Mar 24, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-21992 CVE-2025-61882 CVE-2025-53779 CVE-2025-53771 CVE-2025-53770 CVE-2025-31324

CVEfeed Newsroom24 mar 2026
News
High-Severity Spring Cloud Config Flaw Triggers File Leaks and SSRF

High-Severity Spring Cloud Config Flaw Triggers File Leaks and SSRF A significant security flaw has been identified in Spring Cloud Config, a popular framework used to provide server and client-side support for externalized configuration in distributed systems. The vu ... Read more Published Date: Mar 24, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-22739 CVE-2026-22737 CVE-2025-41243 CVE-2025-32432 CVE-2024-38819

CVEfeed Newsroom24 mar 2026
News
Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks

Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks Citrix has released security updates to address two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical flaw that could be exploited to leak sensitive data from the applicatio ... Read more Published Date: Mar 24, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-4368 CVE-2026-3055 CVE-2025-12101 CVE-2025-7775 CVE-2025-6543 CVE-2025-5777 CVE-2023-4966

CVEfeed Newsroom24 mar 2026
VulnerabilitàAlta
CVE-2026-4749 - NVD-CWE-noinfo in albfan miraclecast

CVE ID :CVE-2026-4749 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :NVD-CWE-noinfo vulnerability in albfan miraclecast.This issue affects miraclecast: before v1.0. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE24 mar 2026
VulnerabilitàAlta
CVE-2026-4662 (CVSS 7.5)

The JetEngine plugin for WordPress is vulnerable to SQL Injection via the `listing_load_more` AJAX action in all versions up to, and including, 3.8.6.1. This is due to the `filtered_query` parameter being excluded from the HMAC signature validation (allowing attacker-controlled input to bypass security checks) combined with the `prepare_where_clause()` method in the SQL Query Builder not sanitizing the `compare` operator before concatenating it into SQL statements. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database, provided the site has a JetEngine Listing Grid with Load More enabled that uses a SQL Query Builder query.

NVD (NIST)24 mar 2026
VulnerabilitàAlta
CVE-2026-4640 (CVSS 7.5)

Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to execute certain functions to obtain sensitive information.

NVD (NIST)24 mar 2026

Pagina 3179 di 3789

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.