CVE-2026-12778Disclosure

LOW

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

3.5/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC and exploit tooling are both present
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-06-22)
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-06-20: 1Mentions · 2026-06-21: 1Mentions · 2026-06-22: 2PoC Mentioned / Linked · 2026-06-22: 2Exploit Tool / Code · 2026-06-22: 1Technical Details · 2026-06-21: 1Technical Details · 2026-06-22: 206-2006-2106-22
Signal classification2 categories
Disclosure
250.0%
PoC
250.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-06-201
Disclosure1
2026-06-211
Disclosure1
2026-06-222
PoC2
Full discourse4 posts
  • Winslow@senzee1984
    Disclosure

    Utilized LLM and discovered kernel drivers' vulnerabilities, 8 of them are already credited, all of them are LPE vulnerabilities: CVE-2026-12217, CVE-2026-12778, CVE-2026-12779, CVE-2026-12780, CVE-2026-12781, CVE-2026-12782, CVE-2026-12784, CVE-2026-12786

    Post summary

    An LLM-based analysis has identified eight kernel driver LPE vulnerabilities (CVE‑2026‑12217, 12778–12786) that have been credited, but no official disclosure, patch, or exploit details are provided.

    140843911.5K
    1.8K followersView on X
  • CSIRT Italia@csirt_it
    PoC

    #Aomei: disponibili #PoC per lo sfruttamento delle CVE-2026-12778, CVE-2026-12779 e CVE-2026-12780 Rischio: 🟠 Tipologia: 🔸 Elevation of Privilege 🔸 Data Manipulation 🔗 https://www.acn.gov.it/portale/w/aomei-disponibili-poc-pubblici-per-le-cve-2026-12778-cve-2026-12779-e-cve-2026-12780 ⚠ Monitorare il sito del vendor https://t.co/AgmlKeKyEd

    Post summary

    The post announces publicly available PoC code for CVE-2026-12778, CVE-2026-12779, and CVE-2026-12780, offering links for details and encouraging vendor site monitoring.

    00041772
    9.0K followersView on X
  • Hephaestvs@Vulcanux_
    PoC

    csirt_it: ‼ #Aomei: disponibili #PoC per lo sfruttamento delle CVE-2026-12778, CVE-2026-12779 e CVE-2026-12780 Rischio: 🟠 Tipologia: 🔸 Elevation of Privilege 🔸 Data Manipulation 🔗 https://www.acn.gov.it/portale/w/aomei-disponibili-poc-pubblici-per-le-cve-2026-12778-cve-2026-12779-e-cve-2026-12780 ⚠ Monitorare il sito del vendor https://t.co/8mgSyYzo49

    Post summary

    PoC code for CVE‑2026‑12778, CVE‑2026‑12779, and CVE‑2026‑12780 are publicly available, but no exploitation details, patch info, or real‑world usage is reported.

    0000048
    620 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-12778 Improper Access Control in AOMEI Partition Assistant Kernel Driver Up to 10.10.1 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-12778

    Post summary

    The text announces a disclosure of an improper access control vulnerability in the AOMEI Partition Assistant kernel driver affecting versions up to 10.10.1.

    0000059
    4.1K followersView on X

Explore more