Endpunktsicherheit
🟠 CVE-2026-56238: High Schwachstelle
Capgo before 12.128.2 contains an information disclosure vulnerability in the Supabase PostgREST global_stats endpoint that allows unauthenticated attackers to read...
🟠 CVE-2026-56303: High Schwachstelle
Capgo before 12.128.2 contains an information disclosure vulnerability in the find_apikey_by_value PostgreSQL function marked SECURITY DEFINER and executable by the...
🟠 CVE-2026-4661: High Schwachstelle
The WP CTA – Sticky CTA Builder, Generate Leads, Promote Sales plugin for WordPress is vulnerable to time-based blind SQL...
🟠 CVE-2026-56313: High Schwachstelle
Capgo before 12.128.2 contains a cross-organization account disruption vulnerability in the SSO prelink endpoint that allows enterprise administrators to delete...
🟠 CVE-2026-56259: High Schwachstelle
Crawl4AI before 0.8.8 contains credential exfiltration vulnerabilities in the Docker API server that allow attackers to redirect LLM API calls...
🔴 CVE-2026-56260: Critical Schwachstelle
Crawl4AI before 0.8.7 contains an arbitrary file write vulnerability in the Docker API server's /screenshot and /pdf endpoints. The output_path...
ENDPUNKTSICHERHEIT
URGENT – Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Thre
Progress Software has told ShareFile customers to shut down the Windows servers running their Storage Zone Controllers, confirming to The...
ENDPUNKTSICHERHEIT
Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During Install
The jscrambler npm package was compromised, and simply installing its 8.14.0 release runs an infostealer on your machine. Published on July 11,...
🟠 CVE-2026-60091: High Schwachstelle
PraisonAI before 4.6.78 contains an unauthenticated server-side request forgery vulnerability in the Jobs API /api/v1/runs endpoint. The webhook_url parameter is...
🟠 CVE-2026-22660: High Schwachstelle
FlaskBB through 2.2.0, fixed in commit a5da9a5, contains a logic flaw vulnerability that allows authenticated administrators to delete all built-in...