*** GMail and Validation-Mails *** There seems to be an issue that Gmail is not accepting mails from my server. The reason is that I am currently rebuilding my server infrastructure and the MX-entries are not correctly set. I have activated the accounts using a Gmail-address manually. If you do not receive the validation mail, drop me a note to k.e.klingner@gmail.com.

Critical / Patch Now

CVE-2026-100763 | Mozilla Firefox up to 156 WebGPU off-by-one

A vulnerability marked as critical has been reported in Mozilla Firefox up to 156. This affects an unknown function of the component WebGPU. This manipulation causes off-by-one. This vulnerability is handled as CVE-2026…

vuldb

CVE-2026-71898 | Apache DolphinScheduler privileges management

A vulnerability marked as problematic has been reported in Apache DolphinScheduler. This affects an unknown part. Performing a manipulation results in improper privilege management. This vulnerability was named CVE-2026…

vuldb

CVE-2026-71897 | Apache DolphinScheduler improper authorization

A vulnerability labeled as critical has been found in Apache DolphinScheduler. Affected by this issue is some unknown functionality. Such manipulation leads to improper authorization. This vulnerability is uniquely iden…

vuldb

CVE-2026-71899 | Apache DolphinScheduler improper authorization

A vulnerability categorized as problematic has been discovered in Apache DolphinScheduler. Affected is an unknown function. The manipulation results in improper authorization. This vulnerability is known as CVE-2026-718…

vuldb

Lantronix G520 Series Cellular Gateway

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to replace software and execute arbitrary code with root privileges. The following versions of Lantronix G520 Series Cellular Ga…

CISA

Toptech TMS7 and TopHAT

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to access critical data or execute arbitrary code. The following versions of Toptech TMS7 and TopHAT are affected: TMS7 7.6.3 (C…

CISA

Viidure Dashcam Android Application

View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to access, modify, or delete sensitive user data and critical system files, potentially compromising the operation of the entire p…

CISA

Anjvision YSSD-RTMP-H5

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to access sensitive information, access user accounts, execute OS-level commands, or take full control over the device. The foll…

CISA

VIVOTEK Camera Firmware

View CSAF Summary Successful exploitation of this vulnerability may allow attackers to achieve remote command execution on affected devices, potentially with root privileges, leading to full compromise of the camera sys…

CISA

MikroTik RouterOS

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to achieve remote code execution or cause a denial of service. The following versions of MikroTik RouterOS are affected: RouterOS

CISA

Baicells Nova 430H

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to inject malformed messages which may lead to a denial-of-service condition. The following versions of Baicells Nova 430H are affe…

CISA

[NEU] [hoch] Froxlor: Mehrere Schwachstellen

Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Froxlor ausnutzen, um Cross-Site-Scripting-Angriffe durchzuführen, vertrauliche Informationen offenzulegen, Daten zu manipulieren und möglicherwei…

BSI CERT Security Advisory

[NEU] [hoch] Apache Airflow Providers: Mehrere Schwachstellen

Ein Angreifer kann mehrere Schwachstellen in verschiedenen Apache Airflow Providern ausnutzen, um Dateien zu manipulieren, um einen SQL-Injection Angriff durchzuführen, um Informationen offenzulegen und um Sicherheitsvo…

BSI CERT Security Advisory