Endpunktsicherheit

🔴 CVE-2026-10042: Critical Schwachstelle CLOUD-SICHERHEIT

🔴 CVE-2026-10042: Critical Schwachstelle

manga-image-translator contains a remote code execution vulnerability in the shared API server mode due to unsafe deserialization of untrusted pickle...

31. Mai 2026 Keine Kommentare
GreyVibe hackers use ChatGPT, Gemini to power cyberattacks ENDPUNKTSICHERHEIT

GreyVibe hackers use ChatGPT, Gemini to power cyberattacks

A likely Russian threat cluster tracked as GreyVibe has been targeting Ukrainian entities with AI-generated lures and a rich set...

30. Mai 2026 Keine Kommentare
ChatGPT share links abused to host fake outage pages to deliver malware ENDPUNKTSICHERHEIT

ChatGPT share links abused to host fake outage pages to deliver malware

Threat actors are abusing ChatGPT's content-sharing feature to display fake OpenAI outage pages that direct users to download malware disguised...

30. Mai 2026 Keine Kommentare
🟡 CVE-2026-6937: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-6937: Medium Schwachstelle

The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to Missing Authorization in all...

30. Mai 2026 Keine Kommentare
🟡 CVE-2026-9803: Medium Schwachstelle ENDPUNKTSICHERHEIT

🟡 CVE-2026-9803: Medium Schwachstelle

A flaw was found in Keycloak's ClientRegistrationAuth component. A remote unauthenticated attacker can exploit this vulnerability by sending a specially...

30. Mai 2026 Keine Kommentare
🟠 CVE-2026-7797: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-7797: High Schwachstelle

The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to time-based blind SQL Injection...

30. Mai 2026 Keine Kommentare
🟠 CVE-2026-9804: High Schwachstelle ENDPUNKTSICHERHEIT

🟠 CVE-2026-9804: High Schwachstelle

A flaw was found in KubeVirt's virt-exportserver component. An attacker with specific namespace-level access can exploit a path traversal vulnerability...

30. Mai 2026 Keine Kommentare
JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware ENDPUNKTSICHERHEIT

JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware

A new campaign orchestrated by a previously undocumented threat actor has targeted cryptocurrency organizations with an aim to facilitate digital...

29. Mai 2026 Keine Kommentare
Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential Stealer ENDPUNKTSICHERHEIT

Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential Stealer

Threat actors are continuing to exploit a critical, now-patched security flaw impacting FortiClient Endpoint Management Server (EMS) deployments to deliver...

29. Mai 2026 Keine Kommentare
🟠 CVE-2026-3375: High Schwachstelle CLOUD-SICHERHEIT

🟠 CVE-2026-3375: High Schwachstelle

The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the /wp-json/litespeed/v1/notify_ccss and /wp-json/litespeed/v1/notify_ucss REST API endpoints...

29. Mai 2026 Keine Kommentare