Endpunktsicherheit
🟠 CVE-2016-20065: High Schwachstelle
Product Catalog 8 1.2 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL...
🟠 CVE-2016-20062: High Schwachstelle
Simply Poll 1.4.1 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information by...
🟠 CVE-2026-46746: High Schwachstelle
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The application does not properly...
🔴 CVE-2017-20251: Critical Schwachstelle
WordPress Insert PHP plugin versions before 3.3.1 contain a PHP code injection vulnerability that allows unauthenticated attackers to execute arbitrary...
ServiceNow discloses security incident exposing customer data
ServiceNow is warning about a security incident after attackers exploited an unauthenticated access flaw through a vulnerable API endpoint, allowing...
ENDPUNKTSICHERHEIT
Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows
The anonymous security researcher going by the name Chaotic Eclipse (aka Nightmare-Eclipse) has released a proof-of-concept (PoC) exploit for yet...
🟡 CVE-2026-7765: Medium Luecke in Checkmk Checkmk
Incorrect authorization in the User Messages dashboard widget in Checkmk
🟠 CVE-2026-46440: High Schwachstelle
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2,...
ENDPUNKTSICHERHEIT
VerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux Appliances
A China-nexus cyber espionage group has been observed deploying a BSD variant of a known backdoor called BRICKSTORM, as well...
ENDPUNKTSICHERHEIT
⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and More
Monday again. The weekend was meant to be quiet. It wasn't. Last week had poisoned packages, a broken AI helper,...