Anwendungssicherheit
🟠 CVE-2026-16745: High Schwachstelle
A flaw was found in odh-dashboard, the web console component of Red Hat OpenShift AI (RHOAI). Due to incorrect network...
🔴 CVE-2026-16723: Critical Schwachstelle
A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson's stock default configuration —...
🔴 CVE-2026-15011: Critical Schwachstelle
The Customer Support Ticket System & Helpdesk plugin for WordPress is vulnerable to Code Injection via the 'path' parameter in...
🔴 CVE-2026-14282: Critical Schwachstelle
The GoDAM – Organize WordPress Media Library & File Manager with Unlimited Folders for Images, Videos & more plugin for...
ANWENDUNGSSICHERHEIT
Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access
Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) products, including a...
ANWENDUNGSSICHERHEIT
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra's webmail client. The payload...
🟡 CVE-2026-44192: Medium Schwachstelle
A flaw was found in the Ansible Lightspeed Model Context Protocol (MCP) server. This vulnerability, known as path traversal, allows...
🟠 CVE-2026-11605: High Schwachstelle
The issue is a resource exhaustion vulnerability associated with DNSSEC validation. BIND always validates all RRSIG records in an answer,...
🟠 CVE-2026-12987: High Schwachstelle
The Events Manager WordPress plugin before 7.3.7 does not safely handle booking-registration data on sites using No-User-Account Booking Mode: a...
🟠 CVE-2026-44191: High Schwachstelle
A flaw was found in the Visual Studio Code Ansible Lightspeed extension. This command injection vulnerability (CWE-78) arises from improper...