Volerion

179 posts

Volerion banner
Volerion

Volerion

@VolerionSec

Instant, consistent, and comprehensive CVE data & prioritization scoring via our next-gen algorithms.

Katılım Mayıs 2025
6 Takip Edilen60 Takipçiler
Sabitlenmiş Tweet
Volerion
Volerion@VolerionSec·
Launching today! Volerion transforms raw CVEs into structured and instant insights #CVE #CyberSecurity #infosec
Volerion tweet media
English
2
17
40
14.7K
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-4283: WP DSGVO Tools plugin lets anyone delete WordPress user accounts remotely, no login needed. Attackers abuse the super-unsubscribe endpoint to wipe profiles instantly. Patch to 3.1.39 now! Full advisory ➡️ volerion.com/vulnerabilitie… #WordPress #infosec #AppSec
English
0
1
1
174
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-33169: Long digit strings can stall Ruby on Rails apps through Active Support’s number_to_delimited (remote, no login). Upgrade to 8.1.2.1 / 8.0.4.1 / 7.2.3.1 asap. Full advisory ➡️ volerion.com/vulnerabilitie… #Rails #infosec #AppSec
English
0
1
1
132
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-4633: Keycloak leaks valid usernames by returning different errors during login (remote, no login). Attackers can map accounts for further attacks. Disable Organizations or the identity-first login flow until a fix lands. Full advisory ➡️ volerion.com/vulnerabilitie… #Keycloak #infosec #AppSec
English
0
3
6
687
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-27980: Remote attackers can fill up disk via Next.js image optimization (v10–16.1.6), knocking sites offline. Upgrade to 16.1.7 or routinely clear .next/cache/images. Full advisory ➡️ volerion.com/vulnerabilitie… #Nextjs #infosec #webdev
English
0
0
1
97
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-4271: Remote use-after-free in libsoup’s HTTP/2 server lets anyone crash apps relying on it, knocking services offline. Update libsoup to the latest release or apply vendor patches. Full advisory ➡️ volerion.com/vulnerabilitie… #infosec #Linux #GNOME
English
0
0
0
67
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-26308: Envoy Proxy merges duplicate headers, letting attackers bypass RBAC Deny rules and reach protected services. Update to 1.37.1 / 1.36.5 / 1.35.9 / 1.34.13 or enable rbac_match_headers_individually. More info ➡️ volerion.com/vulnerabilitie… #Envoy #infosec #DevOps
English
0
1
1
138
Volerion
Volerion@VolerionSec·
🚨 CVE-2026-3706: Dropbear SSH ≤2025.89 skips a critical check on Ed25519 signatures, so crafted signatures are still accepted remotely, undermining integrity and auditing. Grab the latest patch ASAP! Full advisory ➡️ volerion.com/vulnerabilitie… #Dropbear #SSH #infosec
English
0
0
0
68