Kruptos[verified]@KuptoKosmosPoC
The tweet announces a high‑severity CVE (CVE‑2025‑62718, CVSS 9.9) and confirms the existence of poC evidence that bypasses authentication to reach unauthenticated API endpoints.
Upwind Security MDR[verified]@UpwindMDRDisclosure
Two new high‑severity axios vulnerabilities, CVE‑2026‑44492 and CVE‑2026‑44494, have been disclosed, explaining how proxy handling flaws allow SSRF and MITM attacks; users are urged to upgrade to patched releases.
Gray Hats@the_yellow_fallDisclosure
Axios CVE-2025-62718 is a critical SSRF vulnerability caused by NO_PROXY bypass via hostname normalization errors; users are urged to patch or normalize immediately.
つみかさね@tsumikasanedevDisclosure
The post announces a severe SSRF vulnerability in Axios, providing CVE details and affected versions, but no PoC, exploit code, or remediation information is discussed.
Shadowcat Labs@shadowcatLabsGeneral
The message reports an alleged Polymarket compromise, citing a user PII database, hardcoded API keys, and three CVEs, but does not provide Proof of Concept, exploitation evidence, or mitigation guidance.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces CVE‑2025‑62718, detailing a proxy bypass and SSRF flaw in Axios prior to version 1.15.0, but does not discuss PoC, exploitation, patches, or misinformation.
DailyCVE@dailycveDisclosure
The tweet announces the critical CVE-2025-62718, a NO_PROXY loopback bypass vulnerability, referencing an external article while lacking details on exploitation, patches, or PoC.
Lambda Watchdog@LambdaWatchdogGeneral
The tweet confirms CVE‑2025‑62718 is no longer present in the latest AWS Lambda base images, but offers no additional details or mitigation steps.