Overview
- composer
- composer
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Composer (the dominant PHP package manager) shipped 2.9.6 and 2.2.27 LTS in April. The release fixes two command-injection bugs in the Perforce driver. CVE-2026-40261, severity 8.8. A malicious composer.json declares a Perforce repository and the shell runs whether or not Perforce is installed. Packagist disabled Perforce metadata April 10. Most CI build agents kept no audit trail across the ninety days the bug was live.
Overview
Description
Statistics
- 1 Post
Fediverse
2/
CVE-2026-7164 <https://www.cve.org/CVERecord?id=CVE-2026-7164> FreeBSD-SA-26:14.pf <https://security.freebsd.org/advisories/FreeBSD-SA-26:14.pf.asc> credited to Igor Gabriel Sousa e Souza.
I can't easily find any information about this person.
Overview
Description
Statistics
- 1 Post
Fediverse
Microsoft Update causing Print Spooler Problems - CVE-2019-1367 | https://techygeekshome.info/cve-2019-1367/?fsp_sid=40138 | #Guide #Microsoft #News #security #Updates #Windows
https://techygeekshome.info/cve-2019-1367/?fsp_sid=40138
Overview
- AWS
- QnABot on AWS
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
Fediverse
Remote Code Execution in Apache ActiveMQ
"By calling addNetworkConnector through Jolokia with a crafted URI, an attacker can chain these mechanisms together to force the broker to fetch and execute a remote Spring XML configuration file"
https://horizon3.ai/attack-research/disclosures/cve-2026-34197-activemq-rce-jolokia/
Overview
- arc53
- DocsGPT
Description
Statistics
- 1 Post
Fediverse
🚨 CRITICAL: CVE-2026-26015 in DocsGPT 0.15.0-0.16.0 enables unauthenticated RCE via command injection (CVSS 10). All deployments at risk — patch to 0.16.0 or later now! https://radar.offseq.com/threat/cve-2026-26015-cwe-77-improper-neutralization-of-s-ba83675d #OffSeq #Vuln #RCE #DocsGPT
Overview
Description
Statistics
- 3 Posts
Fediverse
CVE-2026-42167 Allows Auth Bypass And RCE In ProFTPD
https://zeropath.com/blog/proftpd-cve-2026-42167-auth-bypass-privesc-rce
Overview
- AWS
- FreeRTOS-Plus-TCP
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
Fediverse
⚠️ CVE-2026-7470: HIGH severity stack buffer overflow in Tenda 4G300 (US_4G300V1.0Mt_V1.01.42_CN_TDC01). Exploit public, no patch yet. Restrict access & monitor for activity. https://radar.offseq.com/threat/cve-2026-7470-stack-based-buffer-overflow-in-tenda-f207f452 #OffSeq #Vulnerability #Tenda #RouterSecurity
Overview
- Wireshark Foundation
- Wireshark
Description
Statistics
- 1 Post
Fediverse
⚠️ CVE-2026-5402: HIGH severity heap buffer overflow in Wireshark 4.6.0 – 4.6.4 TLS dissector. Exploitation can lead to DoS or code execution. No patch yet — avoid untrusted TLS traffic. https://radar.offseq.com/threat/cve-2026-5402-cwe-122-heap-based-buffer-overflow-i-bdf27e3b #OffSeq #Wireshark #CVE20265402 #BlueTeam