Anwendungssicherheit

🟠 CVE-2026-44494: High Luecke in Axios Axios ANWENDUNGSSICHERHEIT

🟠 CVE-2026-44494: High Luecke in Axios Axios

Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.16.0, the Axios library...

13. Juni 2026 Keine Kommentare
🔴 CVE-2026-9648: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-9648: Critical Schwachstelle

The crypton-x509-validation Haskell library fails to enforce X.509 NameConstraints, allowing TLS clients to accept certificates whose Subject Alternative Names fall...

13. Juni 2026 Keine Kommentare
🔴 CVE-2026-38581: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-38581: Critical Schwachstelle

SQL Injection vulnerability in damasac thaipalliative_lte through version 3.0 allows remote attackers to execute arbitrary SQL commands via the idFormMain...

13. Juni 2026 Keine Kommentare
🔴 CVE-2026-11561: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-11561: Critical Schwachstelle

Improper neutralization of special elements used in an expression language statement ('expression language injection') vulnerability in Soagen Informatics Technologies Software...

13. Juni 2026 Keine Kommentare
🔴 CVE-2026-11839: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-11839: Critical Schwachstelle

Unrestricted upload of file with dangerous type vulnerability in Başarsoft Information Technologies Inc. Rotaban allows Upload a Web Shell to...

13. Juni 2026 Keine Kommentare
🔴 CVE-2026-49261: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-49261: Critical Schwachstelle

MariaDB server is a community developed fork of MySQL server. Versions 10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11,...

13. Juni 2026 Keine Kommentare
AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS. ANWENDUNGSSICHERHEIT

AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS.

For thirty years, vulnerability management ran on a buffer: the months between when a vulnerability was found and when someone...

12. Juni 2026 Keine Kommentare
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities ANWENDUNGSSICHERHEIT

ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities

The ShinyHunters extortion crew exploited an unpatched flaw in Oracle PeopleSoft to break into enterprise systems, steal data, and demand...

12. Juni 2026 Keine Kommentare
🟠 CVE-2026-53473: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-53473: High Schwachstelle

A flaw was found in migration-planner-ui-app. An attacker can register a malicious discovery agent with a specially crafted credentialUrl containing...

12. Juni 2026 Keine Kommentare
🟠 CVE-2025-71329: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2025-71329: High Schwachstelle

image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop...

12. Juni 2026 Keine Kommentare