Anwendungssicherheit

🟠 CVE-2026-12481: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-12481: High Schwachstelle

A vulnerability in keras-team/keras version 3.14.0 allows for arbitrary code execution due to improper handling of deserialization in the `Lambda`...

05. Juli 2026 Keine Kommentare
🟠 CVE-2026-14460: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-14460: High Schwachstelle

Missing Authorization vulnerability in TUBITAK BILGEM Software Technologies Research Institute pardus-software allows Argument Injection. This issue affects pardus-software: from

05. Juli 2026 Keine Kommentare
🟠 CVE-2026-14459: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-14459: High Schwachstelle

Improper neutralization of argument delimiters in a command ('argument injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute pardus-software allows...

05. Juli 2026 Keine Kommentare
🟠 CVE-2026-10054: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-10054: High Schwachstelle

In affected versions of Eclipse Theia (1.8.1 and later), the browser backend exposes privileged terminal RPC over WebSocket (/services/shell-terminal, /services/terminals/:id)...

05. Juli 2026 Keine Kommentare
🔴 CVE-2026-9725: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-9725: Critical Schwachstelle

The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Deletion in versions...

05. Juli 2026 Keine Kommentare
🔴 CVE-2026-22874: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-22874: Critical Schwachstelle

Gitea versions up to and including 1.26.2 have incomplete SSRF protection in webhook and migration allow-list filtering.

05. Juli 2026 Keine Kommentare
🔴 CVE-2026-20896: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-20896: Critical Schwachstelle

Gitea Docker image versions up to and including 1.26.2 use REVERSE_PROXY_TRUSTED_PROXIES=* by default, allowing any source IP to impersonate a...

05. Juli 2026 Keine Kommentare
🔴 CVE-2026-4321: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-4321: Critical Schwachstelle

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Raera - Ankara Web Design and...

05. Juli 2026 Keine Kommentare
Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts ANWENDUNGSSICHERHEIT

Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts

A recently disclosed critical security flaw impacting Progress Kemp LoadMaster is seeing active exploitation attempts, according to an advisory from eSentire's...

04. Juli 2026 Keine Kommentare
PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords ANWENDUNGSSICHERHEIT

PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords

Cybersecurity researchers have flagged a new macOS information stealer called PamStealer that employs a series of clever tricks to infect...

04. Juli 2026 Keine Kommentare