home.social

#cvss10 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #cvss10, aggregated by home.social.

fetched live
  1. 🚨 CRITICAL: CVE-2026-42901 in Microsoft Entra (CWE-346) enables remote privilege escalation via origin validation error. Immediate patching is essential — official fix available: radar.offseq.com/threat/cve-20 #OffSeq #Microsoft #Vuln #CVSS10 #Security

  2. Cisco Catalyst SD-WAN CVSS 10.0 zero-day (CVE-2026-20127) has been actively exploited, with attackers gaining admin access.

    Full technical breakdown: forum.hashpwn.net/post/10802

    #cisco #sdwan #cvss10 #cve202620127 #exploit #cybersecurity #infosec #news #hashpwn

  3. Cisco Catalyst SD-WAN CVSS 10.0 zero-day (CVE-2026-20127) has been actively exploited, with attackers gaining admin access.

    Full technical breakdown: forum.hashpwn.net/post/10802

    #cisco #sdwan #cvss10 #cve202620127 #exploit #cybersecurity #infosec #news #hashpwn

  4. 🚨 ALERT! 🚨 #NextJS finally achieved what we all thought impossible: a CVSS 10.0 vulnerability! 🎯 Bravo, they've hit the bullseye of FAIL! 🙈 It's always heartwarming when devs leave the #backdoor open for #hackers to make themselves at home. 🏠🔓
    nextjs.org/blog/CVE-2025-66478 #Vulnerability #CVSS10 #SecurityFail #HackerNews #ngated

  5. 🚨 ALERT! 🚨 #NextJS finally achieved what we all thought impossible: a CVSS 10.0 vulnerability! 🎯 Bravo, they've hit the bullseye of FAIL! 🙈 It's always heartwarming when devs leave the #backdoor open for #hackers to make themselves at home. 🏠🔓
    nextjs.org/blog/CVE-2025-66478 #Vulnerability #CVSS10 #SecurityFail #HackerNews #ngated

  6. GitLab admins: Get patchin'. Now. cku.gt/D4bjM
    This 0day is exploited ITW as we speak, I have multiple reports of successful admin account takeovers.
    #0day #gitlab #privesc #patchnow #cvss10

  7. GitLab admins: Get patchin'. Now. cku.gt/D4bjM
    This 0day is exploited ITW as we speak, I have multiple reports of successful admin account takeovers.
    #0day #gitlab #privesc #patchnow #cvss10

  8. This graphapi vulnerability (seriously, phpinfo, in 2023?) is one of those things that only affect a fraction of users, but if you're affected, you'd better have already addressed it, because the is live.

    arstechnica.com/security/2023/

  9. This #owncloud graphapi vulnerability (seriously, phpinfo, in 2023?) is one of those things that only affect a fraction of users, but if you're affected, you'd better have already addressed it, because the #exploit is live.

    arstechnica.com/security/2023/

    #CVSS10