
Nahuel and his team investigate deeply integrated vulnerabilities and reduce the attack surface with disabling, blocking, and other fun configurations. CVEs covered: CVE-2025-25017 Cross-Site Scripting in Kibana Vega Visualization Engine CVE-2026-0386 Remote Code Execution in Windows Deployment Services CVE-2026-24294 SMB Server Improper Authentication https://www.linkedin.com/pulse/issue-14-risk-ripples-outward-vicarius-g3qzc/
Post summary
The post enumerates three CVEs and suggests generic mitigation steps without providing detailed technical data, exploit availability, or evidence of active exploitation.
