Overview
Description
Statistics
- 4 Posts
- 2 Interactions
Fediverse
GitHub - Stuub/SGLang-0.5.9-RCE: Proof of Concept exploitation of CVE-2026-5760 - RCE in SGLang 0.5.9 via malicious GGUF
https://github.com/Stuub/SGLang-0.5.9-RCE
Read on HackerWorkspace: https://hackerworkspace.com/article/github-stuub-sglang-0-5-9-rce-proof-of-concept-exploitation-of-cve-2026-5760-rce-in-sglang-0-5-9-via-malicious-gguf
Bluesky
Overview
Description
Statistics
- 2 Posts
Bluesky
Overview
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
QEMU abuse rising 🚨
QEMU used for stealth VMs, SSH tunnels, persistence
CVE-2025-26399, CitrixBleed2 exploited
💬 Monitoring VM layer yet?
Source: https://www.securityweek.com/hackers-abuse-qemu-for-defense-evasion/
Follow TechNadu
Overview
Description
Statistics
- 1 Post
- 12 Interactions
Fediverse
Ruby 4.0.3 has been released. It updates ERB to 6.0.1.1 for CVE-2026-41316.
If your application calls Marshal.load on untrusted data AND has both erb and activesupport loaded, please update your ERB version. You may update Ruby to 4.0.3 to do so.
https://www.ruby-lang.org/en/news/2026/04/21/ruby-4-0-3-released/
Overview
- 0xJacky
- nginx-ui
Description
Statistics
- 1 Post
- 5 Interactions
Fediverse
Critical CVE-2026-33032 (MCPwn): Actively Exploited nginx-ui Flaw Enables Full Web Server Takeover in Two HTTP Requests
#CyberSecurity
https://securebulletin.com/critical-cve-2026-33032-mcpwn-actively-exploited-nginx-ui-flaw-enables-full-web-server-takeover-in-two-http-requests/
Overview
- spinnaker
- spinnaker
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Spinnaker, the open-source continuous delivery platform from Netflix and Google, patched CVE-2026-32613, a CVSS 9.9 remote code execution in the Echo notification service. Echo did not restrict its Spring Expression Language context to trusted classes, giving attackers full Java process access. Maintainers back-ported across four branches (2026.1.0, 2026.0.1, 2025.4.2, 2025.3.2). Quality is what maintainers do the week a critical hits an old branch.
Overview
- NewSoft
- NewSoftOA
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
🚨 NewSoftOA faces a critical OS command injection (CVE-2026-5965, CVSS 9.3). Unauthenticated local attackers can run arbitrary OS commands. No patch yet — restrict access & monitor vendor updates! https://radar.offseq.com/threat/cve-2026-5965-cwe-78-improper-neutralization-of-sp-2ef8e92f #OffSeq #Infosec #Vuln
Overview
Description
Statistics
- 1 Post
Overview
- Microsoft
- Windows 10 Version 1607
Description
Statistics
- 1 Post
Bluesky
Overview
Description
Statistics
- 1 Post
Fediverse
#OT #Advisory VDE-2026-032
Endress+Hauser: sudo vulnerability affects Endress+Hauser MCS200HW
The display unit of the Endress+Hauser MCS200HW is affected by a sudo chroot vulnerability.
#CVE CVE-2025-32463
https://certvde.com/en/advisories/vde-2026-032/
#CSAF https://endress-hauser.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-032.json