Overview
- themefusion
- Avada (Fusion) Builder
Description
Statistics
- 1 Post
Fediverse
CVE-2026-97670: Avada (Fusion) Builder ≤7.16.1 has a CRITICAL code injection flaw. Unauthenticated attackers can invoke arbitrary WP action hooks — risks include content deletion & DoS. Disable vulnerable forms, await patch. https://radar.offseq.com/threat/cve-2026-97670-cwe-94-improper-control-of-generation-of-code-code-injection-in-themefusion-avada-f8cd8b04809f86cf #OffSeq #WordPress #Vuln #CVE202697670
Overview
- Tautulli
- Tautulli
Description
Statistics
- 1 Post
Fediverse
CVE-2026-52835 Tautulli code execution, CVSS 8.1. Path traversal in import handlers lets an API key holder write files outside CACHE_DIR. No fixed release yet, patch under review. Update immediately. https://www.valtersit.com/cve/CVE-2026-52835/ #CVE #infosec #Tautulli
Overview
- Telegram
- Telegram Desktop
Description
Statistics
- 1 Post
Fediverse
Critical Telegram Desktop Vulnerability (CVE-2026-107181): A Technical Analysis of One-Click Account Takeover via IPC Injection
Telegram Desktop CVE-2026-107181 enables one-click account takeover through IPC injection and local session file theft. Learn how it works and how to protect your accounthttps://thecybersecguru.com/exploits/telegram-desktop-cve-2026-107181/
Overview
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
Fediverse
CVE-2026-88404: RCE in Univer v1.0.0-alpha.2 via UniscriptExecutionService.execute(). CVSS 9.8, unpatched. Patch now.
https://www.valtersit.com/cve/CVE-2026-88404/
#CVE #infosec #cybersecurity
Overview
- Atlassian
- Bamboo Data Center
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
Fediverse
CVE-2026-88403: SSRF in NocoBase v2.1.21 lets authenticated attackers scan internal resources. CVSS 6.5, no patch yet. Restrict network access and monitor. Details: https://www.valtersit.com/cve/CVE-2026-88403/ #CVE #infosec #cybersecurity
Overview
Description
Statistics
- 1 Post
Overview
- Ahsay
- AhsayCBS
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: Unpatched AhsayCBS Vulnerabilities Exploited in the Wild
Attackers are actively exploiting two unpatched remote code execution flaws in AhsayCBS backup software versions up to 10.3.4. CVE-2026-105133 and CVE-2026-105134 allow authentication bypass and OS command injection, leading to webshell deployment, cryptominer installation, and Windows service pers…
🤖 AI generated summary
Overview
- Ahsay
- AhsayCBS
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: Unpatched AhsayCBS Vulnerabilities Exploited in the Wild
Attackers are actively exploiting two unpatched remote code execution flaws in AhsayCBS backup software versions up to 10.3.4. CVE-2026-105133 and CVE-2026-105134 allow authentication bypass and OS command injection, leading to webshell deployment, cryptominer installation, and Windows service pers…
🤖 AI generated summary