Endpunktsicherheit
🟠 CVE-2026-26422: High Schwachstelle
clash-verge-service-ipc before 2.3.0 has a world-reachable IPC endpoint, leading to local privilege escalation.
🔴 CVE-2024-58348: Critical Schwachstelle
WordPress Background Image Cropper version 1.2 contains a remote code execution vulnerability that allows unauthenticated attackers to upload arbitrary files...
New IronWorm malware hits 36 packages in npm supply-chain attack
A new supply-chain attack has infected 36 packages on the Node Package Manager (npm) index with infostealer malware called IronWorm....
Hola Browser for Windows compromised to deliver cryptominer
The Windows version of the Hola Browser has been compromised in a supply chain attack that delivered an undeclared executable...
🟠 CVE-2026-45749: High Schwachstelle
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. The `POST /users/totp/disable` and `POST...
🟠 CVE-2026-45743: High Schwachstelle
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. 16 file-manager endpoints in Termix...
🟠 CVE-2026-45327: High Schwachstelle
TinyIce is a streaming server for audio and video. In versions 0.8.95 through 2.4.1, missing authentication on WebRTC ingest endpoint...
🟠 CVE-2026-49492: High Schwachstelle
Markdown Preview Enhanced before 0.8.28 opens external files and links from the preview through a shell and does not validate...
🔴 CVE-2026-45750: Critical Schwachstelle
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.3.2, the...
🔴 CVE-2026-45748: Critical Schwachstelle
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. The `POST /ssh/tunnel/connect` endpoint in...