Aggregator
CVE-2026-7783 | CodeCanyon Perfex CRM up to 3.4.1 Admin Kanban Endpoint AbstractKanban.php applySortQuery this sql injection (EUVD-2026-27155)
CVE-2020-6079 | Videolabs libmicrodns up to 0.1.0 resource consumption (Nessus ID 214737)
CVE-2020-6071 | Videolabs libmicrodns 0.1.0 recursion (Nessus ID 214737)
CVE-2020-6078 | Videolabs libmicrodns 0.1.0 mdns_read_header Return Value null pointer dereference (Nessus ID 214737)
CVE-2020-6072 | Videolabs libmicrodns 0.1.0 mDNS Message rr_decode Return Value double free (Nessus ID 214737)
CVE-2024-11950 | XnView Classic 2.51.3/2.51.5 RWZ File Parser integer underflow (ZDI-24-1640)
CVE-2020-6073 | Videolabs libmicrodns 0.1.0 mDNS Message integer overflow (Nessus ID 214737)
WhatsApp Vulnerability Lets Attackers Leverage Instagram Reels to Execute Malicious URLs
Meta has disclosed a medium-severity security vulnerability in WhatsApp that could allow threat actors to exploit Instagram Reels integration to trigger arbitrary URL processing on victim devices, potentially invoking OS-level custom URL scheme handlers without user consent. WhatsApp Vulnerabilities The flaw, tracked as CVE-2026-23866, stems from incomplete validation of AI-rich response messages for Instagram Reels […]
The post WhatsApp Vulnerability Lets Attackers Leverage Instagram Reels to Execute Malicious URLs appeared first on Cyber Security News.
CVE-2020-6077 | Videolabs libmicrodns 0.1.0 Message Parser out-of-bounds (Nessus ID 214737)
CVE-2024-24853 | Intel Processor STM incorrect behavior order (intel-sa-01083 / Nessus ID 207917)
CVE-2026-3601 | wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress Shortcode embed_form_action authorization
CVE-2024-24968 | Intel CPU FSM improper finite state machines in hardware logic (intel-sa-01097 / Nessus ID 207723)
CVE-2023-38709 | Apache HTTP Server up to 2.4.58 response splitting (FEDORA-2024-937be154d8 / Nessus ID 207702)
CVE-2026-3359 | 10web Form Maker Plugin up to 1.15.42 on WordPress inputs sql injection
CVE-2024-27316 | Apache HTTP Server up to 2.4.58 nghttp2 resource consumption (FEDORA-2024-1f11550e31 / Nessus ID 239975)
NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave”
Звонки из-за границы пометят, Госуслуги закроют крепче. Володин анонсировал новый пакет мер против мошенников
Instagram’s to End Encrypted Chats for Direct Messages
Meta has announced that Instagram will officially discontinue its optional end-to-end encrypted direct message feature on May 8, 2026. The feature was initially rolled out for testing in 2021 to provide users with a secure communication channel accessible only by the sender and recipient. Meta cites very low adoption rates among its user base as […]
The post Instagram’s to End Encrypted Chats for Direct Messages appeared first on Cyber Security News.