#vulnerability

247 posts · Last used 4d

Back to Timeline
Alexandre Dulaunoy @adulau@infosec.exchange · 4d ago
From a research paper to running open-source code in just a few days. We (with @cedric@fosstodon.org) have been experimenting in Vulnerability-Lookup with the concept of Local Exploit Hazard, based on the recent research paper “Modeling Local Exploit Hazard — A Bayesian Framework for Quantifying Exploit Risk and Operational Efficiency” by Stephen Shaffer and Laura Cristiana Voicu. The idea addresses an important question in vulnerability management: Not simply “How dangerous is this vulnerability globally?” but “How much exploitation risk does this vulnerability represent in my environment?” Instead of introducing yet another static vulnerability score, the model starts from exploit likelihood such as EPSS and combines it with local security controls, CVSS attack vectors, vulnerability age and KEV policy to estimate an exploitation hazard. We implemented an experimental version in Vulnerability-Lookup and connected it directly to operational workflows. For the full details: https://www.vulnerability-lookup.org/2026/08/11/local-exploit-hazard/ #cve #gcve #vulnerabilitymanagement #vulnerability #opensource #opendata @circl@social.circl.lu
0
1
0
Alexandre Dulaunoy @adulau@infosec.exchange · 6d ago
Pretty cool idea from @nyanbinary@infosec.exchange - a bot to analyse fucked up references from the CVE records. @fuckeduprefs_bot@infosec.exchange Maybe we could imagine an archive bot at the same time to ensure that the references don't get lost. Just like archive.org or similar. Maybe something for @gcve@social.circl.lu to look into. #cve #vulnerability #gcve
6
1
4
Daniel Kuhl ✌🏻☮️☕️ @daniel1820815@infosec.exchange · Aug 07, 2026
Hackers bypass patch using new FortiOS vulnerability An actively exploited #vulnerability in #FortiOS allows for the bypass of a previous protection mechanism against manipulated symbolic links. Affected systems should be updated and checked for prior compromise. Sensitive information on potentially compromised #FortiGate systems running FortiOS with SSL-VPN enabled may be at risk. https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-207440 Source: https://www.security-insider.de/fortios-ssl-vpn-cve-2025-68686-symlink-schutz-umgehung-a-ade1382fea7c3643c1d8af8d65355388/ #Fortinet #CVE
0
0
0
BeyondMachines :verified: @beyondmachines1@infosec.exchange · Aug 06, 2026

Veeam Patches Critical Credential Theft and RCE Flaws in Service Provider Console

Veeam patched four vulnerabilities in its Service Provider Console, including critical flaws (CVE-2026-58073 and CVE-2026-58072) that allow unauthenticated credential theft and remote code execution.

If you run Veeam Service Provider Console version 9.2.1.33875 or any earlier version 9 build, upgrade to version 9.3.0.35057 ASAP. These flaws let attackers take over the console that controls all of your customers' backups. Make sure to lock down the management portal so it's only reachable from a small list of trusted IP addresses, not the open internet. #cybersecurity #infosec #advisory #vulnerability https://beyondmachines.net/event_details/veeam-patches-critical-credential-theft-and-rce-flaws-in-service-provider-console-y-k-8-e-6/gD2P6Ple2L

0
0
0
BeyondMachines :verified: @beyondmachines1@infosec.exchange · Aug 06, 2026

Django Patches High-Severity File-Write Flaw in GeoDjango and Three Other Vulnerabilities

Django 6.0.8 and 5.2.17 are out, fixing four security issues: most urgently a GeoDjango flaw (CVSS 8.8) that lets any staff user with view permission on a spatial-field model trigger SSRF or file writes, potentially leading to remote code execution.

If you run Django, upgrade now to Django 6.0.8 or 5.2.17. If you're on an older unsupported version like 5.1, 5.0 or 4.2, assume you're vulnerable and plan a move to a supported branch. If you use GeoDjango, test your spatial lookups before deploying because the fix intentionally breaks some old behaviour, and check who has staff/view access to models with map or location fields. That level of access is all an attacker needs for the most serious flaw. #cybersecurity #infosec #advisory #vulnerability https://beyondmachines.net/event_details/django-patches-high-severity-file-write-flaw-in-geodjango-and-three-other-vulnerabilities-d-x-1-q-e/gD2P6Ple2L

0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 05, 2026
A high-severity Django vulnerability, CVE-2026-15307, can enable remote code execution through spatial lookups. Update to Django 6.0.8 or 5.2.17 now. #Django #DjangoSecurity #CVE202615307 #RCE #RemoteCodeExecution #Vulnerability #Python #WebSecurity #InfoSec #CyberSecurity https://securityonline.info/django-vulnerability-cve-2026-15307-rce/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Aug 04, 2026
Replying to @security_crawler_carl@infosec.exchange
All included in tonight's performance, absolutely free to any unpatched box facing the internet! You could not have made this easier if you'd installed a welcome mat that reads "Attackers Only." Patch your SonicWall SMA 1000 appliances now and monitor aggressively for INC ransomware activity before the next show begins. Reward: You've received a complimentary front-row seat to your own incident response call. Popcorn not included. #Ransomware #SonicWall #Vulnerability #CyberSecurity (2/2)
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 04, 2026
A critical Veeam Service Provider Console flaw lets attackers steal agent credentials, while a second enables remote code execution. Update to 9.3 now. #Veeam #VSPC #ServiceProviderConsole #CVE202658073 #RCE #RemoteCodeExecution #Vulnerability #MSP #CyberSecurity #InfoSec https://securityonline.info/veeam-vspc-cve-2026-58073/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 04, 2026
A critical Veeam ONE vulnerability, CVE-2026-64633, allows remote unauthenticated code execution at CVSS 10.0. Update to build 13.1.0.7034 now. #Veeam #VeeamONE #CVE202664633 #RCE #RemoteCodeExecution #Vulnerability #CVSS10 #PatchNow #CyberSecurity #InfoSec https://securityonline.info/veeam-one-cve-2026-64633-rce/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
AA @AAKL@infosec.exchange · Aug 04, 2026
New; Broadcom has released advisories relating to several high and medium-severity vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom Nvidia: CRITICAL: NVIDIA Dynamo - July 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5842 NVIDIA Triton Inference Server - June 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5860 #Nvidia Dell: Security Update for Dell PowerProtect Data Domain Multiple Vulnerabilities https://www.dell.com/support/kbdoc/en-us/000450699/dsa-2026-060-security-update-for-dell-powerprotect-data-domain-multiple-vulnerabilities #Dell #Apache Google: This CRITICAL vulnerability was updated yesterday: VMSA-2026-0006.1: VMware ESX, vCenter, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709) https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38017 #google #infosec #vulnerability
0
0
0
AA @AAKL@infosec.exchange · Aug 04, 2026
CISA added this vulnerability to the catalogue yesterday, if you missed it: CVE-2026-18577: N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-18577 Arctic Wolf: CVE-2026-18556 / CVE-2026-18577: N-able N-central Authentication Bypass Vulnerabilities Require Immediate Patching https://arcticwolf.com/resources/blog/cve-2026-18556-cve-2026-18577/ #infosec #vulnerability #CISA
0
0
0
OffSequence @offseq@infosec.exchange · Aug 04, 2026
CVE-2026-14804: CRITICAL (CVSS 9.1) in HUMANIST Digital HR v26.0 🛡️ Hard-coded cryptographic key (CWE-321) allows data exposure & integrity loss. No official fix — limit access & track vendor updates. https://radar.offseq.com/threat/cve-2026-14804-cwe-321-use-of-hard-coded-cryptographic-key-in-bilin-software-and-informatics-7feb29c78f0c5d49 #OffSeq #Vulnerability #CVE202614804
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 04, 2026
Adobe patched critical Adobe Campaign Classic flaws. CVE-2026-48331 scores CVSS 10.0 and enables arbitrary code execution. Update to build 9399 now. #Adobe #AdobeCampaignClassic #CVE202648331 #ArbitraryCodeExecution #Vulnerability #SSRF #SQLInjection #InfoSec #CyberSecurity https://securityonline.info/adobe-campaign-classic-cve-2026-48331/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Kyle Reddoch (CybersecKyle) @cyberseckyle@infosec.exchange · Aug 03, 2026
Vulnerability Summary for the Week of July 27, 2026 | CISA https://www.cisa.gov/news-events/bulletins/sb26-215 #cybersecurity #vulnerability
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Aug 03, 2026
Replying to @security_crawler_carl@infosec.exchange
Failure to patch SonicWall SMA1000 appliances and restrict access to management interfaces constitutes renewed consent every twenty-four hours. Reward: You've received the INC Ransomware Gang's Complimentary Full-Root Access Bundle. Non-transferable. Non-refundable. #Ransomware #SonicWall #Vulnerability #CyberSecurity #InfoSec #RootCompromised (2/2)
0
0
0
EUVD Bot @EUVD_Bot@mastodon.social · Aug 03, 2026
🚨 EUVD-2026-52288 📊 Score: 8.7/10 (CVSS v3.1) 📦 Product: luci 🏢 Vendor: OpenWRT 📅 Updated: 2026-08-03 📝 OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in the bmx7-info CGI script that allows unauthenticated attackers to read files outside the configured runtimeDir. Attackers can supply director... 🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-52288 #cybersecurity #infosec #euvd #cve #vulnerability
0
0
1
OffSequence @offseq@infosec.exchange · Aug 03, 2026
Tranquil IT WAPT Server 2.6.0.16767 hit by CVE-2026-33591 (CRITICAL, CVSS 10). Remote attackers can bypass authentication & grab session tokens via crafted packets. No patch yet — restrict access & monitor logs. https://radar.offseq.com/threat/cve-2026-33591-cwe-288-authentication-bypass-using-an-alternate-path-or-channel-in-tranquil-it-systems-98c0bb813dbf7caa #OffSeq #CVE202633591 #Infosec #Vulnerability
0
0
0