Anwendungssicherheit

🟠 CVE-2026-54412: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-54412: High Schwachstelle

LiamBindle MQTT-C through version 1.1.6 contains a heap-based out-of-bounds read and integer underflow in the mqtt_unpack_publish_response() function in src/mqtt.c that...

15. Juni 2026 Keine Kommentare
🟠 CVE-2026-54420: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-54420: High Schwachstelle

LiteSpeed cPanel plugin before 2.4.8 (as distributed in LiteSpeed WHM PlugIn before 5.3.2.0) mishandles symlinks provided by a user with...

15. Juni 2026 Keine Kommentare
🟠 CVE-2026-12192: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-12192: High Schwachstelle

A vulnerability was determined in GALAYOU Y4 1.0.0. Impacted is an unknown function of the component Web Server. This manipulation...

15. Juni 2026 Keine Kommentare
🟠 CVE-2026-12187: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-12187: High Schwachstelle

A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Affected by this vulnerability is an unknown functionality...

15. Juni 2026 Keine Kommentare
🟠 CVE-2026-12186: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-12186: High Schwachstelle

A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function replace_country in the library /usr/lib/oui-httpd/rpc/tor...

15. Juni 2026 Keine Kommentare
🟠 CVE-2026-12174: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-12174: High Schwachstelle

A security vulnerability has been detected in D-Link DCS-935L 1.10.01. This issue affects the function snprintf of the file /web/cgi-bin/greece/rhea...

15. Juni 2026 Keine Kommentare
AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS. ANWENDUNGSSICHERHEIT

AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS.

For thirty years, vulnerability management ran on a buffer: the months between when a vulnerability was found and when someone...

14. Juni 2026 Keine Kommentare
Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication ANWENDUNGSSICHERHEIT

Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication

Splunk has released security updates to address a critical security flaw in Splunk Enterprise that could be exploited to conduct...

14. Juni 2026 Keine Kommentare
🟡 CVE-2026-50630: Medium Luecke in Apache Cxf ANWENDUNGSSICHERHEIT

🟡 CVE-2026-50630: Medium Luecke in Apache Cxf

A CRLF injection vulnerability exists in the OAuth2 AuthorizationUtils class. When constructing the WWW-Authenticate response header, the 'realm' parameter is...

14. Juni 2026 Keine Kommentare
🟡 CVE-2026-12060: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-12060: Medium Schwachstelle

Heptabase developed by Hepta Platforms has a Exposed Dangerous Method or Function vulnerability, allowing unauthenticated remote attackers to leverage social...

14. Juni 2026 Keine Kommentare