Overview
- WordPress
- WordPress
Description
Statistics
- 5 Posts
Fediverse
📰 WordPress Patches 'XSS2Shell' Flaw Leading to RCE
WordPress patches critical 'XSS2Shell' flaw (CVE-2026-64638, CVSS 8.9). Unauthenticated XSS on login page can be chained for RCE. Update to version 7.0.3 immediately. #WordPress #XSS #RCE #Vulnerability #CVE202664638
CVE-2026-64638: Severe Pre-Authentication XSS Flaw in WordPress Permits Remote Code Execution – Immediate Update to Version 7.0.3 #wordpress #programming
CVE-2026-64638 poses a serious pre-authentication XSS risk in WordPress that can lead to remote code execution. Immediate update to WordPress 7.0.3 is essential. Read the full incident overview and mitigation steps in our latest post: https://ift.tt/ghG2K8Z
Source: https://ift.tt/ghG2K8Z | Image: https://ift.tt/zle32Oa
Bluesky
Overview
Description
Statistics
- 4 Posts
Fediverse
⚠️ CRITICAL: CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability
Progress Kemp LoadMaster has a critical RCE vulnerability (CVE-2026-8037) that allows unauthenticated attackers to execute arbitrary commands. Active exploitation started around June 29. Any organization running affected LoadMaster versions needs to patch immediately or risk full appliance compromi…
🤖 AI generated summary
🚨 CRITICAL THREAT ALERT: CVE-2026-8037 is under active exploitation per CISA KEV. Progress LoadMaster appliances face remote command injection risks. Secure your perimeter with our strategic C-Suite breakdown covering technical indicators, backdoor mechanics, and hardening protocols.
https://thecybermind.co/2j7b
Nutzt wer den Kemp LoadMaster und hat diesen nicht gepatcht?
https://borncity.com/blog/2026/08/08/kemp-loadmaster-wird-ueber-cve-2026-8037-angegriffen/
Overview
Description
Statistics
- 5 Posts
Bluesky
Overview
Description
Statistics
- 3 Posts
- 1 Interaction
Fediverse
CVE-2026-56155: The Actively Exploited AD FS Flaw That Hands Over Your Identity Keys | HackerNoon
https://hackernoon.com/cve-2026-56155-the-actively-exploited-ad-fs-flaw-that-hands-over-your-identity-keys?utm_source=flipboard&utm_medium=activitypub
Posted into Hacker Noon @hacker-noon-HackerNoon
Bluesky
Overview
- SAP_SE
- SAP NetWeaver and ABAP Platform
Description
Statistics
- 2 Posts
- 2 Interactions
Fediverse
CVE-2026-34265: CRITICAL out-of-bounds write in SAP NetWeaver & ABAP Platform (CVSS 9.8) allows unauthenticated memory corruption. No patch yet — restrict access & monitor SAP advisories for updates. https://radar.offseq.com/threat/cve-2026-34265-cwe-787-out-of-bounds-write-in-sapse-sap-netweaver-and-abap-platform-d60f14fafe8af8b8 #OffSeq #SAP #Vuln #Cybersecurity
Overview
- mlflow
- mlflow/mlflow
Description
Statistics
- 2 Posts
Fediverse
🚨 In this week’s newsletter, we cover CVE-2026-2652, an authentication bypass vulnerability affecting MLflow that is seeing active exploitation.
We break down how attackers can access protected API endpoints without credentials, potentially exposing jobs and connected infrastructure, and what defenders should do next.
Read the full analysis and protect your systems 👉 https://www.crowdsec.net/vulntracking-report/cve-2026-2652-mlflow-authentication-bypass
Overview
Description
Statistics
- 2 Posts
Bluesky
Overview
- duhow
- xiaoai-patch
Description
Statistics
- 1 Post
- 2 Interactions
Overview
- Red Hat
- Red Hat OpenShift AI 3.3
- rhoai/odh-feature-server-rhel9
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
CVE-2026-18948: CRITICAL in RHOAI Feast — unsafe UDF deserialization allows unauth RCE on feature-server. Auth attackers can bypass auth to run code on registry-server. Mitigate by enforcing `auth.type: kubernetes`. https://radar.offseq.com/threat/cve-2026-18948-vulnerability-in-red-hat-red-hat-openshift-ai-rhoai-ae1bc718efe1cce9 #OffSeq #RedHat #CVE #infosec
Overview
Description
Statistics
- 1 Post
- 3 Interactions