Anwendungssicherheit
🟠 CVE-2026-13676: High Schwachstelle
fast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize Unicode (IDN) hostnames for HTTP-family URLs. The IDN conversion path...
🟠 CVE-2026-40524: High Schwachstelle
FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the get_gl_transactions() function where the filter_type parameter is concatenated directly into...
🟠 CVE-2026-40523: High Schwachstelle
FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the Audit Trail report handler that allows authenticated attackers with SA_GLANALYTIC...
🟠 CVE-2026-55607: High Luecke in Anthropic Claude_Code
Claude Code is an agentic coding tool. From 2.1.38 until 2.1.163, Claude Code's worktree handling allowed creation of worktrees named...
🟠 CVE-2026-40521: High Schwachstelle
FrontAccounting before 2.4.20 contains a path traversal vulnerability in the attachment upload handler that allows authenticated attackers to execute arbitrary...
ANWENDUNGSSICHERHEIT
Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
Microsoft has found a malicious Chrome extension that posed as the AI search engine Perplexity and quietly logged what people...
ANWENDUNGSSICHERHEIT
Oracle E-Business Suite Flaw CVE-2026-46817 Actively Exploited in the Wild
A critical security flaw impacting Oracle E-Business Suite has come under active exploitation in the wild, according to Defused Cyber....
🟡 CVE-2026-13501: Medium Schwachstelle
A security vulnerability has been detected in antlr ANTLR4 up to 4.13.2. Affected by this vulnerability is the function GoTarget...
🟡 CVE-2026-13549: Medium Schwachstelle
A security flaw has been discovered in CodeAstro Complaint Management System 1.0. The affected element is the function deletereport of...
🟡 CVE-2026-13529: Medium Schwachstelle
A vulnerability was determined in YzmCMS up to 7.5. This affects an unknown function of the file /application/install/index.php. Executing a...