kokumօtօ[verified]@__kokumotoDisclosure
The post announces an unpatched prompt injection vulnerability (CVE‑2026‑2256) in MS‑Agent that permits arbitrary command execution by bypassing a banned list, but it does not provide a PoC, exploit code, or evidence of active exploitation.
ZeitTrender[verified]@ZeitTrenderDisclosure
CVE-2026-2256 is a critical flaw in ModelScope MS‑Agent that allows attackers to hijack AI agents and gain full system control via unsanitized shell commands. A patch is not yet available.
Misbar | مسبار[verified]@MisbarSecActive Exploitation
Cisco’s urgent advisory reveals that CVE-2026-2256 and CVE-2026-20128 in Catalyst SD‑WAN Manager are being actively exploited, prompting immediate mitigation actions.
Misbar | مسبار[verified]@MisbarSecDisclosure
Researchers have identified critical, unauthenticated flaws in the Nginx UI (CVE‑2026‑27944 and CVE‑2026‑2256) that can leak decryption keys and server secrets.
Oktsec[verified]@oktsecPoC
CVE-2026-2256 exposes ms‑agent to full system compromise with a publicly available PoC; the vulnerability is severe (CVSS 9.8) and requires an immediate patch to version 1.6.0rc1 or newer.
キタきつね[verified]@foxbookDisclosure
A new unpatched vulnerability in MS‑Agent (CVE‑2026‑2256) could allow hackers to hijack AI assistants, but no PoC, exploit, or patch details are provided.
Erik Newton[verified]@newtonlawActive Exploitation
A zero‑day in MS‑Agent (CVE‑2026‑2256) has a publicly available PoC and is being actively exploited—over 200,000 OpenClaw instances are exposed, and no patch is yet available.
The Agent Economist[verified]@The_Agent_EconDisclosure
Researchers disclosed a command injection flaw in ModelScope MS‑Agent (CVE‑2026‑2256), released a public PoC, and warned users to sandbox or shut down the service pending a patch.