Cloud-Sicherheit

🟠 CVE-2026-85609: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-85609: High Schwachstelle

Openpanel before 2.3.0 contains an unauthenticated full-read server-side request forgery (SSRF) vulnerability in the GET /tools/site-checker endpoint (apps/api/src/controllers/tools.controller.ts). Th...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85614: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-85614: High Schwachstelle

OpenPanel before 2.3.0 contains an unauthenticated server-side request forgery vulnerability in the GET /tools/site-checker endpoint that accepts a fully client-controlled...

06. Sep. 2026 Keine Kommentare
Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means CLOUD-SICHERHEIT

Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means

In early August, GitGuardian researchers found that a recent Shai-Hulud infostealer worm variant had evolved to scan for credentials across...

05. Sep. 2026 Keine Kommentare
Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws CLOUD-SICHERHEIT

Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws

Plex is urging users to update their instances to the latest version following the release of an update that patches...

05. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85164: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-85164: High Schwachstelle

WWBN AVideo through commit c91b5975d contains a server-side request forgery vulnerability in the set_api_userImages API endpoint that fails to validate...

05. Sep. 2026 Keine Kommentare
Coder’s registry infrastructure compromised to push malicious modules CLOUD-SICHERHEIT

Coder’s registry infrastructure compromised to push malicious modules

Attackers compromised Coder's Cloudflare infrastructure and added unauthorized registry servers that delivered malicious Terraform modules containing credential-stealing code. [...]...

04. Sep. 2026 Keine Kommentare
Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means CLOUD-SICHERHEIT

Shai-Hulud’s Reach Just Grew to 469 Credential Locations. Here’s What That Means

In early August, GitGuardian researchers found that a recent Shai-Hulud infostealer worm variant had evolved to scan for credentials across...

04. Sep. 2026 Keine Kommentare
NIST Warns of Unique Security Risks in Multi-Cloud Environments CLOUD-SICHERHEIT

NIST Warns of Unique Security Risks in Multi-Cloud Environments

NIST has set out 23 novel challenges that arise in multi-cloud environments and has encouraged the cyber community to find...

03. Sep. 2026 Keine Kommentare
CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products CLOUD-SICHERHEIT

CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix Products

CISA added six new bugs to its Known Exploited Vulnerabilities catalog on August 26, showing signs of active exploitation in...

03. Sep. 2026 Keine Kommentare
🟡 CVE-2025-15613: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2025-15613: Medium Schwachstelle

Kyverno before v1.13.4 is vulnerable to server-side request forgery (SSRF) via its Service Call functionality. An attacker with permission to...

03. Sep. 2026 Keine Kommentare