Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

14278 risultati

VulnerabilitàAlta
CVE-2026-31061 - UTT Aggressive HiPER 810G Buffer Overflow Vulnerability

CVE ID :CVE-2026-31061 Published : April 6, 2026, 3:17 p.m. | 38 minutes ago Description :UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the timestart parameter of the ConfigAdvideo function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
VulnerabilitàAlta
CVE-2026-31063 - UTT Aggressive HiPER 1200GW Buffer Overflow DoS

CVE ID :CVE-2026-31063 Published : April 6, 2026, 3:17 p.m. | 38 minutes ago Description :UTT Aggressive HiPER 1200GW v2.5.3-170306 was discovered to contain a buffer overflow in the pools parameter of the formArpBindConfig function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
VulnerabilitàAlta
CVE-2026-31062 - UTT Aggressive FTP Form Buffer Overflow

CVE ID :CVE-2026-31062 Published : April 6, 2026, 3:17 p.m. | 38 minutes ago Description :UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the filename parameter of the formFtpServerDirConfig function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
News
Keycloak Under Siege: Patch Now to Stop Token Theft and Account Takeovers

Keycloak Under Siege: Patch Now to Stop Token Theft and Account Takeovers The popular open-source identity and access management solution Keycloak has released a critical security update, version 26.5.7, addressing a series of vulnerabilities that could allow attackers to b ... Read more Published Date: Apr 06, 2026 (1 day, 2 hours ago) Vulnerabilities has been mentioned in this article. CVE-2026-35616 CVE-2026-34838 CVE-2026-4636 CVE-2026-3872 CVE-2026-5281 CVE-2026-3502 CVE-2026-33032 CVE-2026-3429 CVE-2026-21962 CVE-2026-1002 CVE-2025-5777

CVEfeed Newsroom06 apr 2026
News
CVE-2026-34838 (CVSS 10): Critical RCE Flaw Uncovered in GroupOffice CRM

CVE-2026-34838 (CVSS 10): Critical RCE Flaw Uncovered in GroupOffice CRM In a significant discovery for enterprises and public sector organizations, a critical security vulnerability has been unmasked in GroupOffice, the popular open-source CRM and groupware suite. The fla ... Read more Published Date: Apr 06, 2026 (1 day ago) Vulnerabilities has been mentioned in this article. CVE-2026-34982 CVE-2026-35616 CVE-2026-34838 CVE-2026-5281 CVE-2026-24164 CVE-2026-3502 CVE-2026-33032 CVE-2025-33244 CVE-2026-4681 CVE-2026-21962

CVEfeed Newsroom06 apr 2026
VulnerabilitàAlta
CVE-2026-3524 - Authorization Bypass in Mattermost Legal Hold Plugin Due to Missing Return After Permission Check

CVE ID :CVE-2026-3524 Published : April 6, 2026, 1:17 p.m. | 38 minutes ago Description :Mattermost Plugin Legal Hold versions Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
News
Critical RCE and SQLi Flaws Shatter mbCONNECT24 Industrial Security

Critical RCE and SQLi Flaws Shatter mbCONNECT24 Industrial Security In a significant alert for the industrial automation sector, CERT@VDE has disclosed a series of high-severity vulnerabilities affecting the mbCONNECT24 and mymbCONNECT24 remote service platforms. Thes ... Read more Published Date: Apr 06, 2026 (1 day, 1 hour ago) Vulnerabilities has been mentioned in this article.

CVEfeed Newsroom06 apr 2026
VulnerabilitàAlta
CVE-2026-5659 - pytries datrie trie File datrie.pyx Trie.__setstate__ deserialization

CVE ID :CVE-2026-5659 Published : April 6, 2026, 1 p.m. | 55 minutes ago Description :A vulnerability was found in pytries datrie up to 0.8.3. The affected element is the function Trie.load/Trie.read/Trie.__setstate__ of the file src/datrie.pyx of the component trie File Handler. The manipulation results in deserialization. The attack can be launched remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
News
⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and More

⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and More This week had real hits. The key software got tampered with. Active bugs showed up in the tools people use every day. Some attacks didn’t even need much effort because the path was already there. One ... Read more Published Date: Apr 06, 2026 (1 day, 2 hours ago) Vulnerabilities has been mentioned in this article.

CVEfeed Newsroom06 apr 2026
VulnerabilitàAlta
CVE-2026-5650 - code-projects Online Application System for Admission oas.sql sensitive information

CVE ID :CVE-2026-5650 Published : April 6, 2026, 12:16 p.m. | 1 hour, 39 minutes ago Description :A vulnerability was found in code-projects Online Application System for Admission 1.0. Impacted is an unknown function of the file /enrollment/database/oas.sql. Performing a manipulation results in insecure storage of sensitive information. The attack is possible to be carried out remotely. The exploit has been made public and could be used. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
News
Whitespace Flaw Re-Opens Critical JWT “Algorithm Confusion” Bypass

Whitespace Flaw Re-Opens Critical JWT “Algorithm Confusion” Bypass Security researchers have disclosed two major vulnerabilities within fast-jwt, a high-performance library used to implement JSON Web Tokens (JWT). The flaws reveal that even minor oversights in code l ... Read more Published Date: Apr 06, 2026 (1 day, 2 hours ago) Vulnerabilities has been mentioned in this article.

CVEfeed Newsroom06 apr 2026
News
Apache Traffic Server Vulnerabilities Let Attackers Trigger DoS Attack

Apache Traffic Server Vulnerabilities Let Attackers Trigger DoS Attack The Apache Software Foundation has released emergency security updates to address two severe vulnerabilities in the Apache Traffic Server (ATS). ATS operates as a high-performance web proxy cache that ... Read more Published Date: Apr 06, 2026 (1 day, 1 hour ago) Vulnerabilities has been mentioned in this article. CVE-2025-65114 CVE-2025-58136

CVEfeed Newsroom06 apr 2026

Pagina 380 di 1190

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.