Endpunktsicherheit

🟠 CVE-2024-14047: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2024-14047: High Schwachstelle

A local vulnerability in the Winlogbeat Windows installer caused runtime files to be placed in a directory writable by unprivileged...

03. Sep. 2026 Keine Kommentare
🟠 CVE-2026-84190: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-84190: High Schwachstelle

LibreNMS versions before 26.5.0 contain a remote code execution vulnerability in the AboutController where the snmpget configuration parameter is passed...

03. Sep. 2026 Keine Kommentare
🟠 CVE-2026-84199: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-84199: High Schwachstelle

Kyverno before 1.16.2 contains a server-side request forgery (SSRF) vulnerability in the APICall feature. The URL field in a Policy's...

03. Sep. 2026 Keine Kommentare
🟠 CVE-2026-84196: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-84196: High Schwachstelle

Kyverno before 1.18.0 contains a server-side request forgery vulnerability in apiCall.service.url that allows authenticated users to send arbitrary HTTP requests...

03. Sep. 2026 Keine Kommentare
🟠 CVE-2026-84195: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-84195: High Schwachstelle

Kyverno before 1.16.4 automatically attaches the admission controller's ServiceAccount token to outbound HTTP requests in apiCall service mode without explicit...

03. Sep. 2026 Keine Kommentare
🟠 CVE-2026-84187: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-84187: High Schwachstelle

AVideo contains a missing authentication vulnerability in plugin/Live/on_publish.php that allows unauthenticated attackers to mark arbitrary scheduled broadcasts as failed by...

03. Sep. 2026 Keine Kommentare
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis ENDPUNKTSICHERHEIT

Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis

Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that's been put to use by a Russia-aligned threat actor known...

02. Sep. 2026 Keine Kommentare
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests ENDPUNKTSICHERHEIT

Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests

The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families that highlight the continued evolution...

02. Sep. 2026 Keine Kommentare
🟠 CVE-2026-82869: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-82869: High Schwachstelle

ToolJet Database versions before v3.16.44 contain a privilege escalation vulnerability in the join_tables endpoint that grants JOIN_TABLES ability to all...

02. Sep. 2026 Keine Kommentare
🔴 CVE-2026-82874: Critical Schwachstelle ENDPUNKTSICHERHEIT

🔴 CVE-2026-82874: Critical Schwachstelle

ToolJet before v3.16.208 fails to validate that authenticated users belong to the organization specified in the organizationId path parameter of...

02. Sep. 2026 Keine Kommentare