Overview
Description
Statistics
- 1 Post
- 5 Interactions
Overview
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit https://thehackernews.com/2026/03/ubuntu-cve-2026-3888-bug-lets-attackers.html
Overview
- Cisco
- Cisco Secure Firewall Management Center (FMC)
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
After 2+ weeks of semi-painful exploit development, @yeslikethefood and team have a full RCA out for Cisco Secure Firewall Management Center (FMC) CVE-2026-20079.
The bug is a CVSS 10, but there are significant prerequisites that may limit exploitability in real-world scenarios. There are between 300 and 700 FMC systems on the public internet as of today.
https://www.vulncheck.com/blog/cisco-fmc-auth-bypass-cve-2026-20079
Overview
- RATOC Systems, Inc.
- RATOC RAID Monitoring Manager for Windows
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
🛡️ HIGH-severity: CVE-2026-28760 in RATOC RAID Monitoring Manager for Windows (<2.00.009.260220) allows DLL hijacking — local attackers may run code as admin. Patch ASAP, restrict installer access, and audit installs. https://radar.offseq.com/threat/cve-2026-28760-uncontrolled-search-path-element-in-f4dfdefd #OffSeq #infosec #vuln #windows
Overview
- ory
- oathkeeper
Description
Statistics
- 1 Post
Fediverse
CRITICAL: ory oathkeeper (<26.2.0) vulnerable to path traversal (CVE-2026-33494). Attackers can bypass authorization via crafted URLs. Upgrade to 26.2.0+ immediately. https://radar.offseq.com/threat/cve-2026-33494-cwe-23-relative-path-traversal-in-o-d845cb54 #OffSeq #CVE202633494 #infosec #vulnerability
Overview
Description
Statistics
- 1 Post
Overview
- TandoorRecipes
- recipes
Description
Statistics
- 1 Post
Fediverse
⚠️ CVE-2026-33152: TandoorRecipes < 2.6.0 suffers CRITICAL vuln (CVSS 9.1). No rate limiting on API BasicAuth enables unlimited password guessing. Patch to 2.6.0 now! https://radar.offseq.com/threat/cve-2026-33152-cwe-307-improper-restriction-of-exc-e7cae15a #OffSeq #Vulnerability #TandoorRecipes #APIsecurity
Overview
- TP-Link Systems Inc.
- Archer NX600 v3.0
Description
Statistics
- 1 Post
Fediverse
Außerdem, wenn man in die CVEs kuckt, habt ihr das komplett Falsch dargestellt.
https://feedly.com/cve/CVE-2026-15518 and https://feedly.com/cve/CVE-2026-15519: that allows unauthenticated attackers to decrypt sensitive device configurations
https://feedly.com/cve/CVE-2025-15605: An authenticated attacker with low privileges and adjacent network access
Overview
- path-to-regexp
- path-to-regexp
Description
Statistics
- 2 Posts
Fediverse
🚨 High-severity security fix in path-to-regexp@8.4.0 just released!
Patches CVE-2026-4926 — path-to-regexp vulnerable to Denial of Service via sequential optional groups
https://github.com/pillarjs/path-to-regexp/security/advisories/GHSA-j3q9-mxjg-w52f
Overview
- DataDog
- dd-trace-java
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: CVE-2026-33728 in DataDog dd-trace-java (0.40.0 - <1.60.3) allows unauth RCE via unsafe deserialization if JMX/RMI port is exposed on JDK ≤16. Upgrade to 1.60.3+ & restrict access! https://radar.offseq.com/threat/cve-2026-33728-cwe-502-deserialization-of-untruste-d41c376a #OffSeq #Java #Infosec #CVE202633728