home.social

#vulnalert — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #vulnalert, aggregated by home.social.

fetched live
  1. 🔔 Oracle May 2026 CSPU covers 35 CVEs — 11 critical, 18 high. E-Business Suite & REST Data Services most affected. Remote, unauthenticated exploits possible. Apply patches ASAP! radar.offseq.com/threat/oracle #OffSeq #Oracle #VulnAlert #PatchNow

  2. 🚨 CRITICAL: SenseLive X3050 v1.523 is vulnerable to authentication bypass (CVE-2026-40630) via alternate paths. No fix yet — restrict device network access and monitor closely. radar.offseq.com/threat/cve-20 #OffSeq #CVE202640630 #IoTSecurity #VulnAlert

  3. 🚨 CVE-2026-33875 (CRITICAL, CVSS 9.3): gematik app-Authenticator <4.16.0 is vulnerable to authentication hijack via malicious deep links. No workarounds — update to 4.16.0+ urgently! radar.offseq.com/threat/cve-20 #OffSeq #CVE202633875 #HealthIT #VulnAlert

  4. 🔎 CVE-2026-3408 (MEDIUM): Open Babel 3.1.0/3.1.1 vulnerable to DoS via null pointer dereference in CDXML handler. Exploit public, patch available (commit e23a224b8fd9…). Update now to prevent app crashes! radar.offseq.com/threat/cve-20 #OffSeq #OpenBabel #VulnAlert

  5. 🚨 CVE-2026-27743: CRITICAL SQL injection in SPIP referer_spam <1.3.0 allows unauthenticated SQL execution via GET. No exploit seen yet — patch to 1.3.0+ ASAP! Monitor logs & restrict DB perms. radar.offseq.com/threat/cve-20 #OffSeq #SQLInjection #SPIP #VulnAlert

  6. 🚨 CRITICAL: CVE-2025-34252 impacts NetSarang Xmanager Enterprise (5.0 Build 1232). Malicious nssock2.dll enables DNS-based backdoor, remote code exec, and persistent registry VFS. Patch ASAP and monitor DNS activity! radar.offseq.com/threat/cve-20 #OffSeq #ThreatHunting #VulnAlert

  7. 🚨 CRITICAL: CVE-2025-34252 impacts NetSarang Xmanager Enterprise (5.0 Build 1232). Malicious nssock2.dll enables DNS-based backdoor, remote code exec, and persistent registry VFS. Patch ASAP and monitor DNS activity! radar.offseq.com/threat/cve-20 #OffSeq #ThreatHunting #VulnAlert