ThreatWire[verified]@ThreatWire_PoC
Public PoC code released for CVE-2026-17544, a high‑severity PHP memory corruption vulnerability affecting PHP 8.4.x < 8.4.24 and 8.5.x < 8.5.9; no patch is mentioned and no active exploitation has been reported.
Rıdvan Yağlı[verified]@ridvanyagliPoC
The post announces that a public PoC for CVE‑2026‑17544 has been published on GitHub, detailing a memory corruption flaw in PHP’s bccomp() with affected versions specified.
dbugs[verified]@ptdbugsPoC
A PoC and exploit for CVE‑2026‑17544 has been released, demonstrating an out‑of‑bounds write in PHP’s bccomp() function; no active exploitation or patch information is provided.
Upwind Security MDR[verified]@UpwindMDRPatch
The tweet details an out‑of‑bounds write vulnerability in PHP's bcmath bccomp() function (CVE‑2026‑17544) and recommends upgrading to the patched PHP 8.4.24 or 8.5.9 releases.
RootNik Labs@rootniklabsPatch
The tweet warns of a critical memory corruption flaw (CVE‑2026‑17544) in PHP and urges users to apply the patch immediately.
iototsecnews@iototsecnewsPatch
Three newly reported PHP vulnerabilities (CVE-2026-17543, CVE-2026-17544, CVE-2026-7260) pose risks of SQL injection, memory corruption, and server crashes; users are urged to apply the latest patches immediately.
takenaka hiroya@Joe_Biden_jaPatch
PHP BCMath bccomp() suffers an out‑of‑bounds write introduced in 8.4.3RC1; patched in 8.4.24 and 8.5.9, with no mention of exploitation or PoC.
Beralock@BeralockPoC
A public proof‑of‑concept has been released for CVE‑2026‑17544, a critical PHP memory‑corruption flaw in bccomp(), urging organizations to patch affected PHP 8.4 and 8.5 versions.