Anwendungssicherheit
🔴 CVE-2026-32558: Critical Schwachstelle
Unauthenticated Privilege Escalation in Affiliate Pro - Affiliate Program for WooCommerce & WordPress
ANWENDUNGSSICHERHEIT
Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt
If your developers are using AI coding tools, you are probably already seeing the upside: faster development, more code, and...
ANWENDUNGSSICHERHEIT
Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a maximum-severity security flaw impacting Oracle HTTP Server and...
🟠 CVE-2026-78161: High Schwachstelle
A vulnerability was found in warmcat libwebsockets 4.5.0. Impacted is the function report_raw_cbor of the file lib/misc/lecp.c of the component...
🟠 CVE-2026-78143: High Schwachstelle
A vulnerability was determined in code-projects Barangay Resident Profiling Management System 1.0. Affected is an unknown function of the file...
🟠 CVE-2026-10582: High Schwachstelle
Hugo's security.http.urls allowlist is the only control on outbound fetches made by resources.GetRemote, and it inspects the URL text alone....
🟠 CVE-2026-78141: High Schwachstelle
A vulnerability has been found in Tenda CH22 1.0.0.1. This affects the function formexeCommand of the file /goform/exeCommand. The manipulation...
🟠 CVE-2026-28153: High Schwachstelle
Unauthenticated Broken Access Control in Notification Master – Real-Time WordPress Notifications With Email, SMS, Webhooks & More
🟠 CVE-2026-76172: High Schwachstelle
fast-uri is a URI parser for Node.js. During parsing it runs a legacy decoding pass over the scheme component and...
🟠 CVE-2026-75975: High Schwachstelle
fast-uri is a URI parser for Node.js. Its custom parser for bracketed IPv6 literals does not validate the complete IPv6...