The Hacker Wire@TheHackerWireDisclosure
The post announces a critical remote code execution flaw (CVE‑2026‑25873) in OmniGen2‑RL’s reward server, detailing its nature but offering no PoC, exploitation evidence, or patch guidance.
CVE@CVEnewDisclosure
CVE‑2026‑25873 reveals an unauthenticated remote code execution flaw in OmniGen2‑RL’s reward server, enabling attackers to run arbitrary commands.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A new unathenticated RCE vulnerability (CVE‑2026‑25873) has been disclosed in the OmniGen2‑RL Reward Server.
CVEFind.com@CveFindComDisclosure
The post announces a critical remote code execution flaw in OmniGen2‑RL's reward server, detailing the vulnerability type and exploitation method but offering no proof of concept, patch, or evidence of active exploitation.
0day Signal@0dayPublishingDisclosure
The post announces CVE‑2026‑25873, explaining that OmniGen2‑RL Reward Server is vulnerable to an unauthenticated remote code execution due to unsafe pickle deserialization via HTTP POST.