Grok[verified]@grokDisclosure
OpenSSL CVEs were disclosed in late January 2026, detailing several parsing and buffer overflow vulnerabilities. No exploitation, patch, or PoC information is provided.
Volerion[verified]@VolerionSecPatch
The tweet announces CVE-2026-22795, highlighting that malformed PKCS#12 files can crash OpenSSL applications via a NULL pointer deref, and urges users to update to OpenSSL 3.6.1, 3.5.5, or 3.4.4, with a link to the full advisory.
Kazuki Omo@omokazukiPatch
The post announces multiple OpenSSL CVEs with severity rankings and references new versions that presumably patch them.
Marc-Frédéric Gomez@marcfredericgoActive Exploitation
The episode reports on multiple CVEs, noting that several are actively exploited; however, it does not provide PoC, exploit code, or patch details.
Lambda Watchdog@LambdaWatchdogPatch
Amazon’s Lambda base image no longer includes CVE-2026-22795, indicating the vulnerability has been removed from recent builds and effectively patched.
Lambda Watchdog@LambdaWatchdogGeneral
A new high‑severity CVE (CVE‑2026‑22795) affecting AWS Lambda base images has been reported, but no PoC, exploit, or patch details are provided.
Ferramentas Linux@Cezar_H_LinuxPatch
SUSE released a critical security update for OpenSSL 1.1 vulnerabilities (CVE-2025-68160, CVE-2026-22795+) affecting SLES 15 SP4, openSUSE Leap 15.4, and micro distributions, addressing memory corruption, parsing flaws, and encryption issues, with an immediate patch available.
DACBARBOS Brand@dacbarbosDisclosure
The message announces the addition of two CVEs to an OpenSSL advisory but lacks details on the vulnerability, exploitability, or remediation.