SRG[verified]@SimeonGarrattGeneral
The post merely states that two CVEs might be real, with no evidence of exploitation, remediation, or technical detail.
SRG[verified]@SimeonGarrattPoC
The tweet indicates that proof‑of‑concepts for CVE‑2026‑22778 and CVE‑2026‑24779 are available and that Canadian core infrastructure is reportedly vulnerable.
DailyCVE@dailycveDisclosure
The tweet announces the newly disclosed vulnerability CVE‑2026‑24779, describing it as an SSRF bypass with high severity, and links to a CVE article for more details.
CVE@CVEnewGeneral
The post references CVE‑2026‑25960 and notes a bypass of SSRF protection added for a related CVE, but it provides no evidence of a PoC, exploit, active exploitation, patch, or false‑positive claim.
cvereports@_cvereportsDisclosure
A critical SSRF vulnerability (CVE‑2026‑24779) affecting vLLM versions prior to 0.14.1 is disclosed with technical details, but no PoC, exploit, or evidence of active exploitation is presented.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
CVE-2026-24779 is a Server‑Side Request Forgery flaw in the vLLM multimodal feature that allows URL parsing bypass.
CVE@CVEnewDisclosure
The text announces a Server‑Side Request Forgery vulnerability in vLLM versions before 0.14.1, referencing the CVE record and indicating that newer releases contain the fix.