Overview
Description
Statistics
- 5 Posts
- 5 Interactions
Fediverse
"Sicherheitsforscher sind auf eine neue, pedit COW genannte, Schwachstelle CVE-2026-46331 gestoßen, es erlaubt, Speicherinhalte zu missbrauchen, um normalen Nutzern Root-Rechte zu verschaffen."
https://borncity.com/blog/2026/06/28/pedit-cow-linux-schwachstelle-cve-2026-46331-ermoeglicht-root/
‼️ CVE-2026-46331: A Linux kernel vulnerability affecting the act_pedit packet-editing component in the net/sched subsystem.
CVSS: 7.8
Published: June 26th, 2026
PoC: https://github.com/0xBlackash/CVE-2026-46331
The Linux pedit COW vulnerability (CVE-2026-46331) hands local users silent root via page cache poisoning, leaving no trace on disk. Patch now.
#Linux #peditCOW #PrivilegeEscalation #LinuxKernel #CyberSecurity
https://meterpreter.org/linux-pedit-cow-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
Bluesky
Overview
- libssh2
- libssh2
Description
Statistics
- 5 Posts
- 1 Interaction
Fediverse
Critical libssh2 vulnerability with a proof-of-concept exploit already published. curl, PHP and libgit2 are also affected.
https://nvd.nist.gov/vuln/detail/CVE-2026-55200
#ssh #Vulnerability #ITSecurity #curl
Bluesky
Overview
Description
Statistics
- 3 Posts
- 11 Interactions
Fediverse
ANOTHER #Linux LPE: CVE-2026-43503
If only Linus wasn't so obsessed with calling #OpenBSD developers "masturbating monkeys" 18 years ago and actually took security seriously. 🤔
https://www.cnet.com/tech/tech-industry/torvalds-attacks-it-industry-security-circus-1/
Bluesky
Overview
- Red Hat
- Red Hat Enterprise Linux 10
- yelp-xsl
Description
Statistics
- 3 Posts
- 1 Interaction
Fediverse
CVE-2026-13601 (HIGH, CVSS 7.1) in Red Hat Enterprise Linux 10: Yelp’s help viewer can leak sensitive files via crafted Flatpak apps due to weak Content Security Policy. No patch yet — restrict untrusted Flatpaks. https://radar.offseq.com/threat/cve-2026-13601-protection-mechanism-failure-in-red-844c9044ecdb0d62 #OffSeq #Linux #Vuln #RedHat
Overview
- SourceCodester
- Class and Exam Timetabling System
Description
Statistics
- 3 Posts
Fediverse
CVE-2026-13485 - SQLi in SourceCodester Class & Exam Timetabling System 1.0. Unpatched, exploit public. CVSS 7.3. Update or mitigate immediately. #CVE #infosec #cybersecurity
Overview
- fast-uri
- fast-uri
Description
Statistics
- 4 Posts
Fediverse
🚨 High-severity security fix in fast-uri 3.1.3 and 4.0.1 just released!
Patches CVE-2026-13676. fast-uri vulnerable to host confusion via failed IDN canonicalization.
https://github.com/fastify/fast-uri/security/advisories/GHSA-4c8g-83qw-93j6
Overview
Description
Statistics
- 3 Posts
Fediverse
Stored XSS (CVE-2026-10083, HIGH) found in APCu Manager <4.5.0 for WordPress. Persistent object caching lets attackers inject JS via crafted cache keys, compromising admin sessions. Disable object caching or update plugin. https://radar.offseq.com/threat/cve-2026-10083-cwe-79-cross-site-scripting-xss-in--afabaed8bda5d811 #OffSeq #XSS #WordPress #Infosec
Overview
- itsourcecode
- Online Hotel Management System
Description
Statistics
- 3 Posts
Fediverse
CVE-2026-13553 - Unrestricted file upload in itsourcecode Online Hotel Management System 1.0 via controller.php. CVSS 7.3. Exploit published. No patch available. Restrict access or disable uploads immediately. #CVE #infosec #cybersecurity
Overview
Description
Statistics
- 3 Posts
Fediverse
Stack-based buffer overflow in Tenda JD12L (16.03.53.23) — CVE-2026-13519 (HIGH, CVSS 8.7). Remote code execution possible via fromNatStaticSetting. Public exploit out, no patch yet. Limit device exposure. https://radar.offseq.com/threat/cve-2026-13519-stack-based-buffer-overflow-in-tend-2bc1d34478848f7d #OffSeq #CVE202613519 #Infosec #RouterSecurity
Overview
Description
Statistics
- 5 Posts
Fediverse
OPPO O+ Connect v16.0.33 is vulnerable (CVE-2026-22078, HIGH). Lack of IPC client authentication lets external apps escalate privileges — potential for sensitive actions. Patch unavailable. Monitor and restrict app permissions. #OffSeq #CVE202622078 #OPPO https://radar.offseq.com/threat/cve-2026-22078-cwe-266-incorrect-privilege-assignm-d3bb9a84f0ae01c1