Rıdvan Yağlı[verified]@ridvanyagliExploit
A proof-of-concept exploit for CVE-2026-25057 affecting MarkUs versions up to 2.9.0 has been released, demonstrating an authenticated zip slip vulnerability that can lead to arbitrary file write and remote code execution.
CVE@CVEnewGeneral
The text references CVE-2026-25057 in a vague way, noting a zip upload feature in MarkUs before version 2.9.1, but it provides no concrete details about exploitation, patching, or technical aspects.
cybrmonk@cybr_monkExploit
The tweet reports a critical Zip‑Path Traversal vulnerability (CVE‑2026‑25057) in MarkUs and notes that exploit code is publicly available on GitHub, with no mention of a patch or active exploitation.
PulsePatch.io@pulsepatchioPatch
CVE-2026-25057 is a Zip Slip flaw in MarkUs that permits RCE through config uploads; the issue is mitigated by applying the available patch.
CVEFind.com@CveFindComPatch
The post warns of a critical MarkUs vulnerability that allows path writes via zip uploads and directs users to patch to version 2.9.1.
The Hacker Wire@TheHackerWireGeneral
The post alerts to a critical CVE in MarkUs, but provides no detailed technical, exploit, or patch information.