Overview
- Adobe
- Adobe Commerce
Description
Statistics
- 1 Post
- 2 Interactions
Overview
- Microsoft
- .NET 10.0
Description
Statistics
- 1 Post
- 1 Interaction
Overview
- Red Hat
- Red Hat Advanced Cluster Management for Kubernetes 2
- rhacm2/multicloud-integrations-rhel9
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
CRITICAL CVE-2026-70398 in Red Hat Advanced Cluster Management for Kubernetes 2: Authenticated tenants can redirect bearer tokens via GitOpsCluster controller. No official fix. Restrict privileges & monitor activity. https://radar.offseq.com/threat/cve-2026-70398-unintended-proxy-or-intermediary-confused-deputy-in-red-hat-red-hat-advanced-cluster-3d1f26674efa89dc #OffSeq #Kubernetes #RedHat #CVE202670398
Overview
- WordPress
- WordPress
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
** XSS2Shell: WordPress XSS Vulnerability Can Lead to Remote Code Execution **
Security researchers at Pwn.ai disclosed CVE-2026-64638, a pre-authentication XSS vulnerability...
→ XSS is a well-known, well documented, old coding error: Teach your TPMs and developers!
https://www.hissenit.com/en/blog/it-security-awareness-news-roundup-08-2026.html
Overview
- OpenLDAP Foundation
- OpenLDAP
Description
Statistics
- 1 Post
- 7 Interactions
Fediverse
As an example of how ridiculous the CVE ecosystem has become... researchers claimed a CVE this year against an LMDB commandline tool (not a server) for a bug fixed in 0.9.15, which was released 2015-06-19 - eleven years ago.
https://www.openeuler.org/zh/security/cve/detail/?cveId=CVE-2026-22185&packageName=lmdb
Overview
- Puwell Technology Inc.
- IP Camera
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
PoC exploit code is public for CVE-2026-61515, an unauthenticated command injection in Puwell IP Camera firmware. CVSS 9.3. Details inside.
Overview
- Quanovate Tech Inc. (operating as Mira / Mira Care)
- Mira Firmware
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Mira Firmware v1.7.1.47 has a CRITICAL auth bug (CVE-2026-68067): login accepts any valid-format password, exposing hormone records. No patch yet; restrict access & monitor accounts. https://radar.offseq.com/threat/cve-2026-68067-cwe-1390-weak-authentication-in-quanovate-tech-inc-operating-as-mira-mira-care-mira-85cdd6a62acb5a46 #OffSeq #Vulnerability #IoTSecurity #CVE202668067
Overview
- Microsoft
- Windows 10 Version 1607
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
CVE-2026-62747 - Heap buffer overflow in Windows Device Association Service. Local privilege escalation. CVSS 7.8. Patch reported—update immediately. #CVE #Microsoft #infosec
Overview
- electerm
- electerm
Description
Statistics
- 1 Post
- 1 Interaction
Overview
- owen2345
- CamaleonCMS
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
CVE-2026-56721 - Privilege escalation in CamaleonCMS ≤2.9.2 via IDOR. Authenticated low-priv users can overwrite any credentials. CVSS 8.8. Unpatched - update immediately. #CVE #CamaleonCMS #infosec