Overview
Description
Statistics
- 3 Posts
Fediverse
CRITICAL CISA KEV ALERT: CVE-2026-42016 targets JFrog Artifactory via incorrect authorization and token scope flaws. Active exploitation verified. Access our TSUITE brief for Splunk, Sentinel, QRadar queries, and endpoint hardening steps to secure your software pipelines.
Attackers are chaining three JFrog Artifactory bugs to plant admin backdoors
Multiple threat actors have been chaining three JFrog Artifactory vulnerabilities, CVE-2026-42018, CVE-2026-42016, and CVE-2026-82329, in active exploitation confirmed between August 15 and September 8, using two of the bugs together to extract an anonymous-user token and escalate it to admin privileges, or…
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
CVE-2026-81006 Linux kernel ipmi: failed registration leaves sysfs files on freed memory, risking use-after-free. CVSS N/A, patch status unknown. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-81006/ #CVE #Linux #infosec
Overview
- Nintendo
- Nintendo Switch
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Discover the dangerous Nintendo Switch QR code vulnerability (CVE-2026-82079) allowing hackers to execute code. Learn how system update 23.0.0 fixes it.
#NintendoSwitch #CyberSecurity #CVE202682079 #QRCode #Vulnerability
Overview
- moment
- moment
Description
Statistics
- 2 Posts
- 2 Interactions
Overview
Description
Statistics
- 1 Post
- 1 Interaction
Overview
- ModelTC
- LightLLM
- LightLLM
Description
Statistics
- 1 Post
Fediverse
CVE-2026-90919: ModelTC LightLLM <=1.2.0 faces CRITICAL RCE risk. Unauthenticated /visual_register WebSocket lets attackers send malicious pickle data, leading to code execution. Patch or restrict access fast. https://radar.offseq.com/threat/cve-2026-90919-deserialization-of-untrusted-data-in-modeltc-lightllm-99a91583cd9500c2 #OffSeq #CVE202690919 #RCE #LightLLM
Overview
- KGUARD
- KGUARD_firmware
Description
Statistics
- 1 Post
Fediverse
CVE-2026-87827 (CVSS 10) is a KGUARD DVR vulnerability exploited by the Mirai botnet for unauthenticated RCE and complete device compromise.
#KGUARD #DVR #CVE202687827 #Mirai #Botnet #IoTSecurity #RCE #DDoS #ExploitedInTheWild #InfoSec
Overview
- Apache Software Foundation
- Apache Syncope
- org.apache.syncope.core:syncope-core-spring
Description
Statistics
- 1 Post
Fediverse
CVE-2026-78330 | CRITICAL: Apache Syncope vuln allows admin escalation if JWKS is exposed and JWT auth used. Affects 3.0.0-M0 – 3.0.16, 4.0.0-M0 – 4.0.7, 4.1.0-M0 – 4.1.2. Upgrade to 4.0.8/4.1.3 to mitigate. Details: https://radar.offseq.com/threat/incorrect-privilege-assignment-vulnerability-in-apache-syncope-cve-2026-78330-b2c023a1d947f76b #OffSeq #Vulnerability #ApacheSyncope
Overview
- D-Link
- DI-8400
Description
Statistics
- 1 Post
Fediverse
Stack-based buffer overflow (CVE-2026-91001, CVSS 9.4) in D-Link DI-8400 (16.07) exposes devices to RCE. Exploit code is public. Restrict management access until fix. Details: https://radar.offseq.com/threat/cve-2026-91001-stack-based-buffer-overflow-in-d-link-di-8400-abc2e3e858f255b9 #OffSeq #CVE202691001 #IoTSecurity #Vulnerability
Overview
- AWS
- Amazon SSM Agent
Description
Statistics
- 1 Post