Anwendungssicherheit
ANWENDUNGSSICHERHEIT
CISO’s Expert Guide to Agentic Pentesting for Websites
Attackers now weaponize new vulnerabilities in about five days (Mandiant, part of Google Cloud). The median organization takes 43 days...
ANWENDUNGSSICHERHEIT
Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This Webinar
A new CVE drops. Your scanner finds it. The severity score looks ugly. But that still does not answer the...
🟠 CVE-2026-27564: High Schwachstelle
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a PUT request with...
🟠 CVE-2026-27563: High Schwachstelle
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a crafted GET request...
🟠 CVE-2026-27562: High Schwachstelle
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request...
🟠 CVE-2026-27561: High Schwachstelle
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted GET request...
🟠 CVE-2026-27560: High Schwachstelle
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted DELETE request...
🟠 CVE-2026-85569: High Schwachstelle
The Tutor LMS WordPress plugin before 4.0.8 does not correctly determine whether an incoming request is addressed to its own...
🟠 CVE-2026-73439: High Schwachstelle
On affected platforms running Arista EOS, if OpenConfig is configured and running a gNMI server on the system, and if...
🟠 CVE-2026-1168: High Schwachstelle
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4.6 before 19.1.8, 19.2 before 19.2.6, and 19.3...