Anwendungssicherheit
ANWENDUNGSSICHERHEIT
Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access
Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) products, including a...
ANWENDUNGSSICHERHEIT
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra's webmail client. The payload...
🟡 CVE-2026-44192: Medium Schwachstelle
A flaw was found in the Ansible Lightspeed Model Context Protocol (MCP) server. This vulnerability, known as path traversal, allows...
🟠 CVE-2026-11605: High Schwachstelle
The issue is a resource exhaustion vulnerability associated with DNSSEC validation. BIND always validates all RRSIG records in an answer,...
🟠 CVE-2026-12987: High Schwachstelle
The Events Manager WordPress plugin before 7.3.7 does not safely handle booking-registration data on sites using No-User-Account Booking Mode: a...
🟠 CVE-2026-44191: High Schwachstelle
A flaw was found in the Visual Studio Code Ansible Lightspeed extension. This command injection vulnerability (CWE-78) arises from improper...
🟠 CVE-2026-44190: High Schwachstelle
A flaw was found in the Ansible Lightspeed Visual Studio Code extension. This Command Injection vulnerability (CWE-78) allows a remote...
🟠 CVE-2026-44189: High Schwachstelle
A flaw was found in the Visual Studio Code Ansible Lightspeed extension's AnsiblePlaybookRunProvider. This command injection vulnerability allows an attacker...
🟠 CVE-2026-13185: High Schwachstelle
In Progress® Telerik® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize attacker-controlled cookie...
🟠 CVE-2026-65603: High Schwachstelle
The Grav Login plugin (grav-plugin-login) versions