Team D4rkn3ttz[verified]@Team_D4rkn3ttzActive Exploitation
The brief highlights alleged mass exploitation of CVE-2025-55182 on exposed Next.js hosts and a pre‑auth ShareFile RCE chain, urging patches and tighter cloud authentication monitoring.
Nicolas Krassas[verified]@DinosnGeneral
The text points to a blog post covering two pre‑authentication RCE chain vulnerabilities (CVE‑2026‑2699 & CVE‑2026‑2701) but does not provide PoC, exploit, patch, or active exploitation details.
DFIR Radar[verified]@DFIR_RadarExploit
The post outlines a pre‑auth RCE chain involving CVE‑2026‑2699 and CVE‑2026‑2701 that has reportedly compromised over 30,000 ShareFile instances, provides technical breakdowns, and announces a patch released on March 10 2026.
Syed Aquib[verified]@syedaquib77Disclosure
The alert reports two critical CVEs (CVE‑2026‑2699 and CVE‑2026‑2701) in Progress ShareFile Storage Zone Controller with a PoC, provides detailed technical information, and recommends immediate patching to mitigate potential remote code execution and data exfiltration.
Syed Aquib[verified]@syedaquib77PoC
The post announces two critical ShareFile CVEs with a proof‑of‑concept highlighted, urging immediate patching or mitigations to prevent unauthenticated RCE and webshell deployment.
ThreatCluster[verified]@threatclusterDisclosure
The post announces two critical vulnerabilities (CVE-2026-2699 and CVE-2026-2701) that allow unauthenticated remote code execution and file exfiltration on Progress ShareFile Storage Zones Controller, potentially impacting up to 30,000 internet‑exposed instances.
TECHEPAGES[verified]@techepagesActive Exploitation
Progress warns ShareFile customers of an active threat exploiting CVE-2026-2699 and CVE-2026-2701 for unauthenticated RCE, urging controller shutdown and patching while the investigation continues.
The Hacker News@TheHackersNewsDisclosure
Progress ShareFile’s auth bypass (CVE‑2026‑2699) and RCE (CVE‑2026‑2701) allow attackers to upload shells to ~30k internet‑facing instances; patch 5.12.4 is available.