CCB Alert

3.2K posts

CCB Alert banner
CCB Alert

CCB Alert

@CCBalert

CCB Alert is the advisory page of the Centre for Cybersecurity Belgium @CCBbelgium. Use [email protected] for interaction.

Belgium 参加日 Ağustos 2009
201 フォロー中7.2K フォロワー
CCB Alert
CCB Alert@CCBalert·
Warning: Critical Improper Verification of Cryptographic Signature vulnerability in #ScreenConnect. CVE-2026-3564 CVSS: 9.0. Unauthenticated attackers can get access to machine keys and use them to elevate their access. #Patch #Patch #Patch
English
0
0
0
191
CCB Alert
CCB Alert@CCBalert·
Warning: 10 Critical #RCE vulnerabilities patched in #GStreamer! Highlights: CVE-2026-3083 & CVE-2026-3085 CVSS: 8.8. Network-exploitable Heap Overflow & OOB Write in RTP stream parsing. #Patch #Patch #Patch
English
0
0
0
284
CCB Alert
CCB Alert@CCBalert·
Warning: Critical #XSS Account Takeover in #ZITADEL. CVE-2026-29191 CVSS: 9.3. This flaw in Login V2 /saml-post can enable account takeover and then lead to serious compromise. #Patch #Patch #Patch
English
0
0
0
206
CCB Alert
CCB Alert@CCBalert·
Warning: Deserialization and Improper Input Validation vulnerability in #Microsoft Office SharePoint. CVE-2026-26106 CVE-2026-26114 CVSS 8.8. These vulnerabilities can lead to remote code execution #RCE! #Patch #Patch #Patch
English
0
3
2
511
CCB Alert
CCB Alert@CCBalert·
Warning: Critical Authentication Bypass vulnerability in #JwtAuthenticator pac4j-jwt. CVE-2026-29000 CVSS: 9.3. This vulnerability can allow an attacker to bypass signature verification to then authenticate as any user. #ATO #Patch #Patch #Patch
English
0
1
1
417
CCB Alert
CCB Alert@CCBalert·
Warning: Critical race condition and session takeover vulnerability in #ParseServer. CVE-2026-32242 CVSS 9.1 CVE-2026-32248 CVSS: 9.3. This vulnerability can lead to a token being accepted by the wrong provider which results in an #ATO. #Patch #Patch #Patch
English
0
0
0
226
CCB Alert
CCB Alert@CCBalert·
Warning: Critical vulnerability in #LXD daemon. CVE-2026-28384 CVSS: 9.4. This vulnerability can allow an unprivileged user to execute commands as the LXD daemon on the server. #Patch #Patch #Patch
English
0
0
0
272
CCB Alert
CCB Alert@CCBalert·
Warning: Critical Second-order Expression Injection Vulnerability in #n8n. CVE-2026-27493 CVSS: 9.5. This vulnerability could escalate to remote code execution when chained with an expression sandbox escape. #Patch #Patch #Patch
English
0
0
0
251
CCB Alert
CCB Alert@CCBalert·
Warning: High Vulnerability in #ingress-nginx #Kubernetes. CVE-2026-3288 CVSS: 8.8. This vulnerability can lead arbitrary code execution in the context of the ingress-nginx-controller. #Patch #Patch #Patch
English
0
1
0
342
CCB Alert
CCB Alert@CCBalert·
Warning: #CISA has observed active exploitation of the #n8n vulnerability (#CVE-2025-68613, CVSSv3.1 9.9). It has been added to the CISA KEV list. Time to #Patch #Patch #Patch
English
0
0
0
432
CCB Alert
CCB Alert@CCBalert·
Warning: #Cisco patched 4 vulnerabilities in it's IOS XR software. The two most critical flaws (#CVE-2026-20040, #CVE-2026-20046 ; CVSSv3.1 8.8 ) could allow an authenticated local attacker to execute arbitrary commands as root. #Patch #Patch #Patch
English
0
1
0
323
CCB Alert
CCB Alert@CCBalert·
Warning: #Gitlab patched 15 vulnerabilities. The most critical one (#CVE-2026-1090, CVSSv3.1 8.7) could allow an authenticated attacker to inject JavaScript in a browser. Time to #Patch #Patch #Patch
English
0
1
0
283
CCB Alert
CCB Alert@CCBalert·
Warning: #Fortinet patched 22 vulnerabilities. Flaws in FortiWeb, FortiSwitchAXFixed, and FortiManager can allow remote, unauthenticated attackers to bypass rate limits or execute unauthorized code. #Patch #Patch #Patch
English
0
6
3
701