Anwendungssicherheit
🟠 CVE-2026-12585: High Schwachstelle
The Abandoned Cart Lite for WooCommerce WordPress plugin before 6.8.2 does not protect the integrity of its cart-recovery tokens or...
🟠 CVE-2026-35149: High Schwachstelle
HCL DFXServer is affected by an Authentication Bypass vulnerability via server response manipulation. An unauthorized user without valid credentials can...
🟠 CVE-2026-35147: High Schwachstelle
HCL DFXServer is affected by a Broken Authentication vulnerability via direct API access. The application fails to verify the user's...
🟠 CVE-2026-57206: High Schwachstelle
SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.206, several plugin...
🟠 CVE-2026-63306: High Schwachstelle
stoatchat before 0.13.5 contains an unauthenticated server-side request forgery vulnerability in the /proxy and /embed endpoints that accept arbitrary URLs...
🟠 CVE-2026-5674: High Schwachstelle
A flaw was found in PipeWire, a multimedia server. This vulnerability allows an attacker to escape sandboxed applications, such as...
🟠 CVE-2026-15103: High Schwachstelle
The WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell plugin for WordPress is vulnerable to Privilege...
🔴 CVE-2026-11386: Critical Schwachstelle
An input validation and injection vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client constructs APT source files (such as...
🔴 CVE-2026-12492: Critical Schwachstelle
The Happy Coders OTP Login for WooCommerce WordPress plugin before 2.8 does not verify that a one-time password was actually...
ANWENDUNGSSICHERHEIT
Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack
Owen Flowers, 18, and Thalha Jubair, 20, were each sentenced to five and a half years at Woolwich Crown Court...