Orizon[verified]@OrizonCyberPatch
The tweet announces a critical SQL injection CVE-2026-23696 affecting Windmill CE and EE versions 1.276.0–1.603.2 and urges users to apply the available patch immediately.
pdnuclei-bot@pdnuclei_botPoC
The post discloses an authenticated SQL injection flaw in Windmill versions prior to 1.603.3 and provides a link to a library entry that likely contains proof‑of‑concept code.
CTIWatch@ctiwatchcloudDisclosure
The tweet announces three newly disclosed CVEs with their CVSS scores and provides a link to a vulnerabilities page, but gives no further technical depth or exploit information.
Hephaestvs@Vulcanux_PoC
Windmill vulnerabilities CVE‑2026‑23696 and CVE‑2026‑22683 have a PoC available and links to it, but only a general recommendation to update affected software is provided; no active exploitation or detailed exploit code is mentioned.
Hephaestvs@Vulcanux_PoC
The post announces a PoC for CVE‑2026‑23696 and CVE‑2026‑22683 and urges users to update affected software.
CVEFind.com@CveFindComDisclosure
Windmill CE/EE versions 1.276.0–1.603.2 are vulnerable to a critical SQL injection that could enable attackers to read sensitive data and execute arbitrary code. No PoC, exploit, or patch details are shared.
CVE@CVEnewDisclosure
The post announces an SQL injection vulnerability in Windmill CE and EE versions 1.276.0 through 1.603.2 that allows authenticated users to manipulate folder ownership management.
0day Signal@0dayPublishingDisclosure
The post announces CVE‑2026‑23696, outlines a SQL injection that leaks JWT secrets leading to RCE, but provides no PoC, exploit tool, patch, or evidence of active exploitation.