Anwendungssicherheit
ANWENDUNGSSICHERHEIT
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr....
🟠 CVE-2026-15049: High Schwachstelle
The Depicter — Popup & Slider Builder WordPress plugin before 4.8.0 does not validate the type of a file uploaded...
🟠 CVE-2026-73197: High Schwachstelle
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests...
🟠 CVE-2026-14952: High Schwachstelle
An unauthenticated remote attacker can retrieve sensible files from the FDS Web server, such as the backup archive at /FdsBackup.zip...
🟠 CVE-2026-14951: High Schwachstelle
An low privileged remote attacker can cause authenticated users to perform unintended actions in the FDS Web interface using malicious...
🟠 CVE-2026-74013: High Schwachstelle
Subscriber SQL Injection in eShipper Commerce
🟠 CVE-2026-73998: High Schwachstelle
Subscriber SQL Injection in WP w3all phpBB
🟠 CVE-2026-66594: High Schwachstelle
Subscriber SQL Injection in WordPress Persistent Login
🔴 CVE-2026-13097: Critical Schwachstelle
A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos principal name attributes in the 389-ds...
🔴 CVE-2026-68566: Critical Schwachstelle
Unauthenticated SQL Injection in BookingPress Appointment Booking Pro