Anwendungssicherheit
🟠 CVE-2026-14359: High Schwachstelle
The YITH WooCommerce Waitlist Premium plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 3.35.0....
🔴 CVE-2026-41869: Critical Luecke in Apache Nutch
Missing Authorization, Improper Resource Shutdown and Job Interruption vulnerability in Apache Nutch Server (Nutch REST API). This issue affects Apache...
🔴 CVE-2026-16272: Critical Schwachstelle
Use of less trusted source vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x)...
ANWENDUNGSSICHERHEIT
DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval
A flaw in DeepSeek Harness, DeepSeek's open-source tool for running AI coding agents on a developer's machine, let a sandboxed...
ANWENDUNGSSICHERHEIT
U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in Crypto
The U.S. Department of Justice (DoJ) on Wednesday announced coordinated actions aimed at an illicit online marketplace called Xinbi Guarantee...
🟠 CVE-2026-62646: High Schwachstelle
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A session identifier is generated using an algorithm...
🟠 CVE-2026-73316: High Schwachstelle
XenForo before 2.3.13 contains a payment replay vulnerability in the PayPal REST payment provider that allows attackers to process the...
🟠 CVE-2026-73314: High Schwachstelle
XenForo before 2.3.13 contains a signature verification logic error in the PayPal REST webhook handler that allows unauthenticated attackers to...
🟠 CVE-2026-33389: High Schwachstelle
An improper certificate/host key validation vulnerability was discovered in the Smart Polling functionality, which established encrypted connections to target devices...
🟠 CVE-2026-62649: High Schwachstelle
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The web server does not properly limit or...