Cloud-Sicherheit
🟠 CVE-2026-72533: High Schwachstelle
An authentication bypass vulnerability in Portainer CE through 2.44.0 allows authenticated low-privileged users to bypass Docker proxy authorization checks via...
🔴 CVE-2026-10579: Critical Schwachstelle
A flaw was found in Picketlink Federation SAML; the unsolcited response handler would accept forged assertions with no verification or...
🔴 CVE-2026-58231: Critical Schwachstelle
SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain...
Cisco warns of high-severity ClamAV flaws with public exploits
Cisco warned of two high-severity vulnerabilities affecting the Secure Endpoint Connector that allow threat actors to crash the ClamAV scanning...
CLOUD-SICHERHEIT
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee’s Client
Anyone sharing their screen on a Zoom call could have taken over the computers of everyone watching, and anyone watching...
CLOUD-SICHERHEIT
Flaws in Google APK for Python Unlock Agent-to-Agent Attack
Google has fixed the issues, which exploited a trust boundary between two AI agents with different privilege levels to trigger...
CLOUD-SICHERHEIT
Outdated Cybercrime Laws Put Security Researchers at Risk
A public policy expert mapped global cybercrime laws to develop a five-point framework for protecting ethical hackers and good-faith security...
CLOUD-SICHERHEIT
No Perfect Fix for AI Browser Prompt Injection Flaws
AI browsers from top vendors remain vulnerable to prompt injection attacks despite multiple security guardrails, according to new research....
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty...
🟡 CVE-2026-19339: Medium Schwachstelle
A security flaw has been discovered in aliyun alibabacloud-dataworks-mcp-server up to 1.0.43. The impacted element is the function ReadResourceRequestSchema of...