Overview
- djangoproject
- Django
- django
Description
Statistics
- 1 Post
- 5 Interactions
Overview
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit https://thehackernews.com/2026/03/ubuntu-cve-2026-3888-bug-lets-attackers.html
Overview
- plank
- laravel-mediable
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
🚨 CRITICAL vuln in plank/laravel-mediable <=6.4.0 (CVE-2026-4809): attackers can upload malicious PHP files by spoofing MIME types. No patch yet. Disable client MIME trust & enforce server-side checks! Details: https://radar.offseq.com/threat/cve-2026-4809-cwe-434-unrestricted-upload-of-file--9d4d9e8e #OffSeq #CVE20264809 #Laravel #RCE
Overview
- Cisco
- Cisco Secure Firewall Management Center (FMC)
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
After 2+ weeks of semi-painful exploit development, @yeslikethefood and team have a full RCA out for Cisco Secure Firewall Management Center (FMC) CVE-2026-20079.
The bug is a CVSS 10, but there are significant prerequisites that may limit exploitability in real-world scenarios. There are between 300 and 700 FMC systems on the public internet as of today.
https://www.vulncheck.com/blog/cisco-fmc-auth-bypass-cve-2026-20079
Overview
- ory
- oathkeeper
Description
Statistics
- 1 Post
Fediverse
CRITICAL: ory oathkeeper (<26.2.0) vulnerable to path traversal (CVE-2026-33494). Attackers can bypass authorization via crafted URLs. Upgrade to 26.2.0+ immediately. https://radar.offseq.com/threat/cve-2026-33494-cwe-23-relative-path-traversal-in-o-d845cb54 #OffSeq #CVE202633494 #infosec #vulnerability
Overview
- Progress Software
- Flowmon ADS
Description
Statistics
- 1 Post
Overview
- TandoorRecipes
- recipes
Description
Statistics
- 1 Post
Fediverse
⚠️ CVE-2026-33152: TandoorRecipes < 2.6.0 suffers CRITICAL vuln (CVSS 9.1). No rate limiting on API BasicAuth enables unlimited password guessing. Patch to 2.6.0 now! https://radar.offseq.com/threat/cve-2026-33152-cwe-307-improper-restriction-of-exc-e7cae15a #OffSeq #Vulnerability #TandoorRecipes #APIsecurity
Overview
- path-to-regexp
- path-to-regexp
Description
Statistics
- 2 Posts
Fediverse
🚨 High-severity security fix in path-to-regexp@8.4.0 just released!
Patches CVE-2026-4926 — path-to-regexp vulnerable to Denial of Service via sequential optional groups
https://github.com/pillarjs/path-to-regexp/security/advisories/GHSA-j3q9-mxjg-w52f
Overview
- DataDog
- dd-trace-java
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: CVE-2026-33728 in DataDog dd-trace-java (0.40.0 - <1.60.3) allows unauth RCE via unsafe deserialization if JMX/RMI port is exposed on JDK ≤16. Upgrade to 1.60.3+ & restrict access! https://radar.offseq.com/threat/cve-2026-33728-cwe-502-deserialization-of-untruste-d41c376a #OffSeq #Java #Infosec #CVE202633728
Overview
Description
Statistics
- 1 Post