Anwendungssicherheit
🔴 CVE-2026-63229: Critical Schwachstelle
A pre-authentication blind SQL injection vulnerability in Koollab LMS allowed an unauthenticated attacker to use a time-based SQL oracle via...
🔴 CVE-2025-10656: Critical Schwachstelle
The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin for WordPress is vulnerable to Missing Authorization in...
🔴 CVE-2026-63234: Critical Schwachstelle
A SQL injection and unsafe deserialisation vulnerability in Koollab LMS allowed an authenticated attacker to inject through the manual mark...
🔴 CVE-2026-63233: Critical Schwachstelle
A SQL injection and unsafe deserialisation vulnerability in Koollab LMS allowed an authenticated attacker to inject through the assessment overall...
🔴 CVE-2026-63232: Critical Schwachstelle
A SQL injection and unsafe deserialisation vulnerability in Koollab LMS allowed an authenticated attacker to inject through the assessment reinforcement...
🔴 CVE-2026-63227: Critical Schwachstelle
An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing...
ANWENDUNGSSICHERHEIT
Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a newly disclosed security flaw impacting Cisco Secure Firewall...
ANWENDUNGSSICHERHEIT
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation
The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another...
🟡 CVE-2026-18047: Medium Schwachstelle
A flaw was found in Dogtag PKI's ACME responder where the web.xml security constraints use exact URL pattern matching for...
🟡 CVE-2026-15267: Medium Schwachstelle
The Taskbuilder – Project Management & Task Management Tool With Kanban Board plugin for WordPress is vulnerable to SQL Injection...