CVE-2026-33707: Chamilo LMS (CRITICAL) password reset flaw โ€” reset tokens are sha1(email), no randomness or expiry. Attackers with an email can hijack accounts. Affected: <1.11.38, 2.0.0-alpha.1 โ€“ <2.0.0-RC.3. Patch now! https://radar.offseq.com/threat/cve-2026-33707-cwe-640-weak-password-recovery-mech-2af5871d #OffSeq #infosec #CVE #LMS

๐Ÿšจ New security advisory:

CVE-2026-39980 affects multiple systems.

โ€ข Impact: Remote code execution or complete system compromise possible
โ€ข Risk: Attackers can gain full control of affected systems
โ€ข Mitigation: Patch immediately or isolate affected systems

Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-39980-opencti-remote-code-execution

#CVE #PatchNow #InfoSecCommunity

CVE-2026-39980: OpenCTI Remote Code Execution - Patch Now

CVE-2026-39980 - OpenCTI before version 6.9.5 allows authenticated users to execute arbitrary JavaScript on the server (CVSS 9.1). Check affected versions and apply the fix immediately.

Yazoul Security

๐Ÿšจ EUVD-2026-21678

๐Ÿ“Š Score: n/a
๐Ÿ“ฆ Product: phoca.cz - Phoca Maps for Joomla
๐Ÿข Vendor: phoca.cz
๐Ÿ“… Updated: 2026-04-11

๐Ÿ“ Various stored XSS vulnerabilities in the maps- and icon rendering logic in Phoca Maps component 5.0.0-6.0.2 have been discovered.

๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-21678

#cybersecurity #infosec #euvd #cve #vulnerability

EUVD

European Vulnerability Database

๐Ÿšจ EUVD-2026-21680

๐Ÿ“Š Score: 6.2/10 (CVSS v3.1)
๐Ÿ“ฆ Product: Gleam, Gleam
๐Ÿข Vendor: Gleam
๐Ÿ“… Updated: 2026-04-11

๐Ÿ“ Improper path validation vulnerability in the Gleam compiler's handling of git dependencies allows arbitrary file system modification during dependency download.

Dependency names from gleam.toml and manifest.toml are incorporated into filesystem paths wi...

๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-21680

#cybersecurity #infosec #euvd #cve #vulnerability

EUVD

European Vulnerability Database

๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 29 CVEs across 26 images:
โ€ข ๐Ÿ”ด Critical: 2
โ€ข ๐ŸŸ  High: 14
โ€ข ๐ŸŸก Medium: 9
โ€ข ๐Ÿ”ต Low: 4

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard

๐Ÿšจ New CRITICAL CVE detected in AWS Lambda ๐Ÿšจ
CVE-2026-40175 impacts axios in 4 Lambda base images.

Details: https://github.com/aws/aws-lambda-base-images/issues/466
More: https://lambdawatchdog.com/

#AWS #Lambda #CVE #CloudSecurity #Serverless

CVE-2026-40175 (CRITICAL): detected in Lambda Docker Images. ยท Issue #466 ยท aws/aws-lambda-base-images

CVE Details CVE ID Severity Affected Package Installed Version Fixed Version Date Published Date of Scan CVE-2026-40175 CRITICAL axios 1.13.5 1.15.0 2026-04-10T20:16:22.8Z 2026-04-11T10:18:18.14567...

GitHub

๐Ÿšจ New CRITICAL CVE detected in AWS Lambda ๐Ÿšจ
CVE-2026-40175 impacts axios in 4 Lambda base images.

Details: https://github.com/aws/aws-lambda-base-images/issues/466
More: https://lambdawatchdog.com/

#AWS #Lambda #CVE #CloudSecurity #Serverless

CVE-2026-40175 (CRITICAL): detected in Lambda Docker Images. ยท Issue #466 ยท aws/aws-lambda-base-images

CVE Details CVE ID Severity Affected Package Installed Version Fixed Version Date Published Date of Scan CVE-2026-40175 CRITICAL axios 1.13.5 1.15.0 2026-04-10T20:16:22.8Z 2026-04-11T10:18:18.14567...

GitHub

๐Ÿšจ New CRITICAL CVE detected in AWS Lambda ๐Ÿšจ
CVE-2026-40175 impacts axios in 4 Lambda base images.

Details: https://github.com/aws/aws-lambda-base-images/issues/466
More: https://lambdawatchdog.com/

#AWS #Lambda #CVE #CloudSecurity #Serverless

CVE-2026-40175 (CRITICAL): detected in Lambda Docker Images. ยท Issue #466 ยท aws/aws-lambda-base-images

CVE Details CVE ID Severity Affected Package Installed Version Fixed Version Date Published Date of Scan CVE-2026-40175 CRITICAL axios 1.13.5 1.15.0 2026-04-10T20:16:22.8Z 2026-04-11T10:18:18.14567...

GitHub
๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 29 CVEs across 26 images:
โ€ข ๐Ÿ”ด Critical: 2
โ€ข ๐ŸŸ  High: 14
โ€ข ๐ŸŸก Medium: 9
โ€ข ๐Ÿ”ต Low: 4

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard

๐Ÿšจ Lambda Watchdog CVE Report ๐Ÿšจ
Latest AWS Lambda image scan detected 29 CVEs across 26 images:
โ€ข ๐Ÿ”ด Critical: 2
โ€ข ๐ŸŸ  High: 14
โ€ข ๐ŸŸก Medium: 9
โ€ข ๐Ÿ”ต Low: 4

Check the full report ๐Ÿ‘‰ https://lambdawatchdog.com/
#AWS #Lambda #CVE #CloudSecurity #Serverless
Lambda Watchdog

AWS Lambda CVE dashboard