Endpunktsicherheit
🟠 CVE-2026-73309: High Schwachstelle
XenForo before 2.3.13 contains an authentication bypass vulnerability in the OAuth2 token endpoint that allows unauthenticated attackers to obtain valid...
🟠 CVE-2026-3174: High Schwachstelle
The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
🟠 CVE-2026-73315: High Schwachstelle
XenForo before 2.3.13 contains a server-side request forgery vulnerability in the PayPal REST webhook handler that allows unauthenticated attackers to...
🟠 CVE-2026-67367: High Schwachstelle
A vulnerability has been identified in SIMOVE Fleetmanager V3.1 (All versions < V3.1.13), SIMOVE Fleetmanager V3.2 (All versions < V3.2.4),...
ENDPUNKTSICHERHEIT
BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams
Cybersecurity researchers have disclosed details of a sprawling search engine optimization (SEO) poisoning campaign that paves the way for malware...
ENDPUNKTSICHERHEIT
WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls
Researchers at the security firm Calif have built a worm that takes over a WeChat account via an incoming call...
🟡 CVE-2026-86293: Medium Schwachstelle
A flaw has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this vulnerability is an unknown functionality...
🟠 CVE-2026-86273: High Schwachstelle
A weakness has been identified in projeto-siga siga up to 11.1.1. Affected by this issue is the function DownloadExterno.getUrl of...
ENDPUNKTSICHERHEIT
Threat Gang ‚Springs‘ Vishing Attacks on Microsoft Teams Users
The "Spring Ring" operation aims to compromise users of the collaboration suite to remotely access their sessions, spread malware, and...
ENDPUNKTSICHERHEIT
What We Missed: Did ShinyHunters ‚Breach‘ ReliaQuest?
In this video conversation, Dark Reading editors discuss some of the news they didn't get a chance to cover, from...