Overview
- misskey-dev
- misskey
Description
Statistics
- 2 Posts
- 2 Interactions
Overview
- CODESYS
- CODESYS Installer
Description
Statistics
- 2 Posts
Fediverse
#OT #Advisory VDE-2026-012
CODESYS Installer - Possible Privilege Escalation
Exploitation of this vulnerability can lead to a privilege escalation on the host system.
#CVE CVE-2026-2364
https://certvde.com/en/advisories/vde-2026-012/
#CSAF https://codesys.csaf-tp.certvde.com/.well-known/csaf/white/2026/advisory2026-01_vde-2026-012.json
🚩 CVE-2026-2364: HIGH severity TOCTOU flaw in CODESYS Installer (all versions) lets local attackers escalate privileges via user-initiated updates. Restrict access & monitor until patch. No active exploits yet. https://radar.offseq.com/threat/cve-2026-2364-cwe-367-time-of-check-time-of-use-to-5eb858d5 #OffSeq #CODESYS #ICS #Vuln
Overview
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
⚠️ CISA added 3 actively exploited flaws to KEV.
Most critical: SolarWinds Web Help Desk CVE-2025-26399 (CVSS 9.8) allowing remote command execution.
Other KEV entries hit Omnissa Workspace One UEM and Ivanti Endpoint Manager. Federal agencies ordered to patch.
🔗 Details → https://thehackernews.com/2026/03/cisa-flags-solarwinds-ivanti-and.html
New SolarWinds CVE Continues Patch-Bypass Pattern
The CISA and NVD have published a new critical vulnerability affecting SolarWinds Web Help Desk tracked as CVE-2025-26399 which involves deserialization of untrusted data that could allow remote code execution. What makes this vulnerability particularly notable is that it appears to be a bypass of a previous SolarWinds patch tracked as CVE-2024-28988 which itself was a bypass of an earlier fix which was tracked as…
https://itnerd.blog/2026/03/10/new-solarwinds-cve-continues-patch-bypass-pattern/
Overview
- Microsoft
- Azure MCP Server Tools
Description
Statistics
- 2 Posts
- 1 Interaction
Bluesky
Overview
- itsourcecode
- University Management System
Description
Statistics
- 1 Post
- 1 Interaction
Overview
- zlib software
- zlib
Description
Statistics
- 1 Post
- 1 Interaction
Overview
- 0xJacky
- nginx-ui
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
Critical Nginx UI flaw CVE-2026-27944 exposes server backups https://securityaffairs.com/189123/security/critical-nginx-ui-flaw-cve-2026-27944-exposes-server-backups.html
Overview
- Microsoft
- Windows Notepad
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Microsoft turned Notepad into a "smart" AI assistant and accidentally handed hackers a "one-click" execution engine. Here is the technical breakdown of CVE-2026-20841 and why feature creep is killing your security. 🛑💻
Overview
- lostisland
- faraday
Description
Statistics
- 1 Post
- 1 Interaction
Bluesky
Overview
- OliveTin
- OliveTin
Description
Statistics
- 1 Post