Endpunktsicherheit
🟠 CVE-2026-40810: High Schwachstelle
An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the userinfo endpoint due to improper neutralization of...
ENDPUNKTSICHERHEIT
GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure
CrowdStrike, in partnership with Google and the Shadowserver Foundation, has announced the simultaneous disruption of all command-and-control (C2) channels associated...
ENDPUNKTSICHERHEIT
Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users
Latin America and Europe become the target of two banking trojan campaigns that are designed to infect Windows and Android...
🟠 CVE-2026-9552: High Schwachstelle
A security flaw has been discovered in Das Parking Management System 停车场管理系统 6.2.0. This vulnerability affects unknown code of the...
🟠 CVE-2026-9551: High Schwachstelle
A vulnerability was identified in Das Parking Management System 停车场管理系统 6.2.0. This affects the function xp_cmdshell of the file ParkingRecord/ExportParkingRecords...
🟠 CVE-2026-24212: High Luecke in Nvidia Isaac_Launchable
NVIDIA Isaac Launchable for Linux contains a vulnerability where sensitive information is transmitted in clear text. A successful exploit of...
🟠 CVE-2026-24162: High Schwachstelle
NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit...
🟠 CVE-2026-44729: High Luecke in Twenty Twenty
Twenty is an open source CRM. In 1.18.0 and earlier, the file serving endpoints in Twenty CRM at /files/* and...
🔴 CVE-2026-45721: Critical Schwachstelle
Algernon is a small self-contained pure-Go web server. Prior to 1.17.7, when Algernon is asked for any URL path that...
ENDPUNKTSICHERHEIT
Feeding Frenzy: ‚Megalodon‘ Malware Infects Thousands of GitHub Repos
In just six hours, the campaign quietly pushed thousands of malicious commits to more than 5,500 GitHub repositories, stealing credentials,...