Endpunktsicherheit

🟠 CVE-2026-11946: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-11946: High Schwachstelle

An unauthenticated remote attacker can exhaust server memory via the GetEndpoints Discovery Service in open62541. The endpointUrl field of GetEndpointsRequest...

04. Juli 2026 Keine Kommentare
🟠 CVE-2026-8147: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-8147: High Schwachstelle

In MLflow versions prior to 3.14.0, when running with authentication enabled, the trace API endpoints lack proper authorization validators. This...

04. Juli 2026 Keine Kommentare
ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API ENDPUNKTSICHERHEIT

ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API

The threat actor known as ToddyCat has been attributed to a new malware called Umbrij that's designed to gain surreptitious...

03. Juli 2026 Keine Kommentare
ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories ENDPUNKTSICHERHEIT

ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories

This week’s security news is mostly about weak spots. Browsers, bots, sandboxes, AI systems, and email flows all show the...

03. Juli 2026 Keine Kommentare
🟠 CVE-2026-12224: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-12224: High Schwachstelle

The Dokan Pro plugin for WordPress is vulnerable to privilege escalation via update_capabilities REST Endpoint in all versions up to,...

03. Juli 2026 Keine Kommentare
🔴 CVE-2026-23537: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-23537: Critical Schwachstelle

A vulnerability has been identified in the Feast Feature Server’s `/save-document` endpoint that allows an unauthenticated remote attacker to write...

03. Juli 2026 Keine Kommentare
Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures ENDPUNKTSICHERHEIT

Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures

A Brazilian banking trojan called Ousaban is going after Windows users who bank in Spain and Portugal. Fortinet's FortiGuard Labs identified the...

02. Juli 2026 Keine Kommentare
VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs Stealer ENDPUNKTSICHERHEIT

VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs Stealer

Cybersecurity researchers have flagged a new multi-stage malware delivery attack chain that uses social engineering and Blogger pages to deliver...

02. Juli 2026 Keine Kommentare
🟠 CVE-2026-58014: High Luecke in Redhat Enterprise_Linux ENDPUNKTSICHERHEIT

🟠 CVE-2026-58014: High Luecke in Redhat Enterprise_Linux

A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfile.c file when...

02. Juli 2026 Keine Kommentare
🟠 CVE-2026-58016: High Luecke in Redhat Enterprise_Linux ENDPUNKTSICHERHEIT

🟠 CVE-2026-58016: High Luecke in Redhat Enterprise_Linux

A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed...

02. Juli 2026 Keine Kommentare