Endpunktsicherheit

🟠 CVE-2026-73197: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-73197: High Schwachstelle

A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests...

22. Aug. 2026 Keine Kommentare
🔴 CVE-2026-66593: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-66593: Critical Schwachstelle

Unauthenticated SQL Injection in Security & Malware scan by CleanTalk

22. Aug. 2026 Keine Kommentare
Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices ENDPUNKTSICHERHEIT

Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices

A new Android threat codenamed Manic has been observed actively targeting Ukrainian banks, government and identity services, and messaging applications,...

21. Aug. 2026 Keine Kommentare
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads ENDPUNKTSICHERHEIT

Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads

The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io after a compromised maintainer account...

21. Aug. 2026 Keine Kommentare
Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure ENDPUNKTSICHERHEIT

Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure

Microsoft Defender Experts have linked more than 30 web domains to MacSync Stealer, a macOS-focused information stealer, after correlating recurring...

20. Aug. 2026 Keine Kommentare
StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data ENDPUNKTSICHERHEIT

StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data

Cybersecurity researchers have flagged a global cybercrime operation that abuses thousands of hacked WordPress websites as infrastructure to disseminate malware,...

20. Aug. 2026 Keine Kommentare
🟠 CVE-2026-74906: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-74906: High Schwachstelle

SiYuan before v3.7.4 contains an incorrect authorization vulnerability in eight publish-mode reader-facing endpoints that filter results using the visibility list...

20. Aug. 2026 Keine Kommentare
🟠 CVE-2026-74904: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-74904: High Schwachstelle

SiYuan before v3.7.4 is missing authorization checks in 17 block metadata/content endpoints in kernel/api/block.go (including getRefText, checkBlockExist, and getBlockBreadcrumb). These...

20. Aug. 2026 Keine Kommentare
🟠 CVE-2026-75829: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-75829: High Schwachstelle

grav-plugin-api versions before 1.0.15 fail to validate Twig content in the translate() endpoint, allowing attackers with api.pages.write permission to persist...

20. Aug. 2026 Keine Kommentare
🟠 CVE-2026-75855: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-75855: High Schwachstelle

ArcadeDB versions before 26.8.1 fail to sanitize database names in the POST /api/v1/server endpoint's create database and drop database commands,...

20. Aug. 2026 Keine Kommentare