Endpunktsicherheit

🟠 CVE-2026-59256: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-59256: High Schwachstelle

WWBN AVideo through commit 9c39d8c8 contains an authorization bypass vulnerability where getToken() creates tokens without binding to user identity or...

24. Aug. 2026 Keine Kommentare
🟠 CVE-2026-60084: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-60084: High Schwachstelle

SiYuan versions before v3.7.4 contain an arbitrary file deletion vulnerability in the /api/search/removeTemplate endpoint that accepts an unvalidated path parameter...

24. Aug. 2026 Keine Kommentare
🔴 CVE-2026-78003: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-78003: Critical Schwachstelle

The Mailgun for WordPress plugin for WordPress is vulnerable to Server-Side Request Forgery (SSRF) via path traversal in versions up...

24. Aug. 2026 Keine Kommentare
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet ENDPUNKTSICHERHEIT

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

Cybersecurity researchers have flagged a new malware family that's specifically designed to infect Android-based vehicle head unit firmware developed by...

23. Aug. 2026 Keine Kommentare
Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot ENDPUNKTSICHERHEIT

Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot

Check Point Research has disclosed a technique that uses Microsoft Defender's own legitimately signed boot-time remediation driver to perform arbitrary...

23. Aug. 2026 Keine Kommentare
🟠 CVE-2026-47827: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-47827: High Schwachstelle

Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to execute arbitrary shell commands...

23. Aug. 2026 Keine Kommentare
🟠 CVE-2026-63046: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-63046: High Schwachstelle

Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Apache InLong. Agent Installer's ModuleManager executes arbitrary shell commands...

23. Aug. 2026 Keine Kommentare
🔴 CVE-2026-77086: Critical Schwachstelle ENDPUNKTSICHERHEIT

🔴 CVE-2026-77086: Critical Schwachstelle

SiYuan before v3.7.4 fails to validate the packageName parameter in Bazaar install and uninstall endpoints, allowing authenticated administrators to perform...

23. Aug. 2026 Keine Kommentare
🔴 CVE-2026-48753: Critical Schwachstelle ENDPUNKTSICHERHEIT

🔴 CVE-2026-48753: Critical Schwachstelle

Incus is a system container and virtual machine manager. Prior to version 7.1.0, the S3 protocol upload endpoint is vulnerable...

23. Aug. 2026 Keine Kommentare
🔴 CVE-2026-48750: Critical Schwachstelle ENDPUNKTSICHERHEIT

🔴 CVE-2026-48750: Critical Schwachstelle

Incus is a system container and virtual machine manager. Prior to version 7.2.0, the `record-output` parameter of the `/instances/$name/exec` endpoint...

23. Aug. 2026 Keine Kommentare