News & Sicurezza
Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.
45464 risultati
CVE ID :CVE-2026-33850 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Out-of-bounds Write vulnerability in WujekFoliarz DualSenseY-v2.This issue affects DualSenseY-v2: before 54. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-33851 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in joncampbell123 doslib.This issue affects doslib: before doslib-20250729. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-33856 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-33855 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Integer Overflow or Wraparound vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-33848 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This issue affects rapidvms: before PR#96. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-33847 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This issue affects rapidvms: before PR#96. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Attackers are handing off access in 22 seconds, Mandiant finds Exploits remain the leading entry point for attackers for the sixth consecutive year, according to Mandiant’s M-Trends 2026 report, which draws on more than 500,000 hours of incident response work con ... Read more Published Date: Mar 24, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-21992 CVE-2025-61882 CVE-2025-53779 CVE-2025-53771 CVE-2025-53770 CVE-2025-31324
High-Severity Spring Cloud Config Flaw Triggers File Leaks and SSRF A significant security flaw has been identified in Spring Cloud Config, a popular framework used to provide server and client-side support for externalized configuration in distributed systems. The vu ... Read more Published Date: Mar 24, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-22739 CVE-2026-22737 CVE-2025-41243 CVE-2025-32432 CVE-2024-38819
Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks Citrix has released security updates to address two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical flaw that could be exploited to leak sensitive data from the applicatio ... Read more Published Date: Mar 24, 2026 (1 day, 6 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-4368 CVE-2026-3055 CVE-2025-12101 CVE-2025-7775 CVE-2025-6543 CVE-2025-5777 CVE-2023-4966
CVE ID :CVE-2026-4749 Published : March 24, 2026, 6:16 a.m. | 3 hours, 36 minutes ago Description :NVD-CWE-noinfo vulnerability in albfan miraclecast.This issue affects miraclecast: before v1.0. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
The JetEngine plugin for WordPress is vulnerable to SQL Injection via the `listing_load_more` AJAX action in all versions up to, and including, 3.8.6.1. This is due to the `filtered_query` parameter being excluded from the HMAC signature validation (allowing attacker-controlled input to bypass security checks) combined with the `prepare_where_clause()` method in the SQL Query Builder not sanitizing the `compare` operator before concatenating it into SQL statements. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database, provided the site has a JetEngine Listing Grid with Load More enabled that uses a SQL Query Builder query.
Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to execute certain functions to obtain sensitive information.
Pagina 3179 di 3789