Endpunktsicherheit
Shell investigates ‚potential incident‘ after Clop data theft claims
Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole...
🟠 CVE-2026-73618: High Schwachstelle
Budibase Server before 3.40.0 contains a NoSQL injection vulnerability in the MongoDB query execution endpoint where user-supplied parameters are interpolated...
🟠 CVE-2026-73608: High Schwachstelle
SiYuan's development branch (endpoint introduced by commit 9b8e8956f, not present in v3.7.3 or master, patched in v3.7.4) contains a missing-authorization...
Microsoft Plugs Nearly 400 Security Holes
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including...
Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt
An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine...
🟠 CVE-2025-59319: High Schwachstelle
CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the integrity of the intended boot partition and selects...
🟠 CVE-2026-18049: High Schwachstelle
The WP Photo Album Plus WordPress plugin before 9.2.07.002 does not perform any capability or nonce check on one of...
🟠 CVE-2026-18048: High Schwachstelle
The WP Photo Album Plus WordPress plugin before 9.2.07.002 does not validate a client-controlled value used to build a file...
🟠 CVE-2026-70465: High Schwachstelle
A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0...
🟠 CVE-2026-57858: High Schwachstelle
Cal.com Cal.diy versions 2.1.1 through 6.2.0 contain a stored cross-site scripting vulnerability in the BookingPageTagManager component that allows authenticated event...