Netzwerksicherheit
🔴 CVE-2026-58630: Critical Schwachstelle
Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
🔴 CVE-2026-57106: Critical Schwachstelle
Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
🔴 CVE-2026-56163: Critical Schwachstelle
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
NETZWERKSICHERHEIT
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before...
NETZWERKSICHERHEIT
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft’s Servers
A crafted SVG submitted to Bing's image search ran commands as NT AUTHORITY\SYSTEM on Microsoft's production image-processing workers, and as...
🟠 CVE-2026-64611: High Schwachstelle
A flaw was found in libcupsfilters. The cfIEEE1284NormalizeMakeModel() function enters an infinite loop when processing a printer-advertised IEEE-1284 device ID...
🟠 CVE-2026-52688: High Schwachstelle
RRSIGs with too few labels can lead to bypass of DNSSEC wildcard validation
🟠 CVE-2026-16745: High Schwachstelle
A flaw was found in odh-dashboard, the web console component of Red Hat OpenShift AI (RHOAI). Due to incorrect network...
🔴 CVE-2026-64873: Critical Schwachstelle
Joomla Extension - regularlabs.com - SSRF in Cache Cleaner Pro extension - Custom query URLs could access internal or reserved...
NETZWERKSICHERHEIT
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern...