Overview
Description
Statistics
- 1 Post
Fediverse
⚠️ CVE-2026-7470: HIGH severity stack buffer overflow in Tenda 4G300 (US_4G300V1.0Mt_V1.01.42_CN_TDC01). Exploit public, no patch yet. Restrict access & monitor for activity. https://radar.offseq.com/threat/cve-2026-7470-stack-based-buffer-overflow-in-tenda-f207f452 #OffSeq #Vulnerability #Tenda #RouterSecurity
Overview
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 2 Posts
Overview
Description
Statistics
- 1 Post
Overview
- ariagle
- MP-Ukagaka
Description
Statistics
- 1 Post
Overview
- SaturdayDrive
- Ninja Forms - File Uploads
Description
Statistics
- 1 Post
Fediverse
If you use Ninja Forms File Uploads in a version lower than 3.3.28, update IMMEDIATELY and check your website for malware!
CVE score 9.8 🚨
https://tenable.com/cve/CVE-2026-0740
Overview
- dnnsoftware
- Dnn.Platform
Description
Statistics
- 1 Post
Fediverse
CVE-2026-40321: stored XSS in DNN (DotNetNuke) prior to v10.2.2 chains to full RCE.
Any authenticated user can upload a crafted SVG with embedded JavaScript. If a power user opens it, the payload calls DNN's own config endpoint to drop an ASPX backdoor in the server root.
One file. One click. Full RCE. CVSS 8.1, patched, fully documented.
Write-up + PoC payloads: https://pentest-tools.com/blog/dotnetnuke-xss-to-rce
More research from our team: https://pentest-tools.com/research
Overview
Description
Statistics
- 1 Post
Overview
- Jenkins Project
- Jenkins GitHub Plugin
Description
Statistics
- 1 Post
Fediverse
🚨 CRITICAL: Jenkins GitHub Plugin ≤1.46.0 has a stored XSS (CVE-2026-42523). Attackers with Overall/Read permission can run JS in users' browsers. Limit permissions & check vendor for patches. https://radar.offseq.com/threat/cve-2026-42523-vulnerability-in-jenkins-project-je-d7de8e87 #OffSeq #Jenkins #XSS #Vuln
Overview
Description
Statistics
- 2 Posts