Endpunktsicherheit

BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory ENDPUNKTSICHERHEIT

BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory

Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketplace commercializing...

06. Sep. 2026 Keine Kommentare
🟡 CVE-2026-85580: Medium Schwachstelle ENDPUNKTSICHERHEIT

🟡 CVE-2026-85580: Medium Schwachstelle

SiYuan versions before v3.8.2 contain a path guard bypass vulnerability in the MCP file-access handler that uses case-sensitive matching on...

06. Sep. 2026 Keine Kommentare
🟡 CVE-2026-85578: Medium Schwachstelle ENDPUNKTSICHERHEIT

🟡 CVE-2026-85578: Medium Schwachstelle

SiYuan through 3.8.1 contains an authorization bypass vulnerability in the /api/file/getFile endpoint that allows readers to retrieve files from notebooks...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85525: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-85525: High Schwachstelle

Improper OCSP response validation in the Snowflake Python, Go, JDBC, and Node.js drivers allowed a revoked TLS certificate to be...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85612: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-85612: High Schwachstelle

OpenPanel before 2.3.0 contains an unauthenticated server-side request forgery vulnerability in the /misc/favicon and /misc/og endpoints that accept an attacker-supplied...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85609: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-85609: High Schwachstelle

Openpanel before 2.3.0 contains an unauthenticated full-read server-side request forgery (SSRF) vulnerability in the GET /tools/site-checker endpoint (apps/api/src/controllers/tools.controller.ts). Th...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85581: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-85581: High Schwachstelle

SiYuan before v3.8.2 contains a denial of service vulnerability in the unauthenticated /api/system/uiproc endpoint that accepts and retains attacker-controlled process...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85613: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-85613: High Schwachstelle

OpenPanel before 2.3.0 contains a cross-site scripting vulnerability in the unauthenticated favicon proxy endpoint GET /misc/favicon that allows remote attackers...

06. Sep. 2026 Keine Kommentare
🟠 CVE-2026-85614: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-85614: High Schwachstelle

OpenPanel before 2.3.0 contains an unauthenticated server-side request forgery vulnerability in the GET /tools/site-checker endpoint that accepts a fully client-controlled...

06. Sep. 2026 Keine Kommentare
Microsoft says some users can’t open the Teams desktop client ENDPUNKTSICHERHEIT

Microsoft says some users can’t open the Teams desktop client

Microsoft is working to resolve a known issue that causes delays or blocks some users from opening the Microsoft Teams...

05. Sep. 2026 Keine Kommentare