OffSeq | Adversary Tactics for Cyber Resilience[verified]@offseqPatch
CVE-2026-27449 in Umbraco Engage.Forms allows unauthenticated API access to sensitive data; users are urged to upgrade to 16.2.1/17.1.1.
CRAC Learning - Tech@cracbotDisclosure
A new CVE (CVE-2026-27449) with a CVSS score of 7.5 has been identified in Umbraco Engage, but no further details or mitigation steps are provided yet.
CVE@CVEnewDisclosure
A vulnerability in Umbraco Engage affecting versions before 16.2.1 and 17.1.1 has been identified; the CVE record can be reviewed for details.
cvereports@_cvereportsDisclosure
A new access control flaw in Umbraco Engage's Forms component allows unauthenticated data exposure; the announcement provides vulnerability details but no PoC, exploit, or patch information.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces CVE-2026-27449, noting unauthenticated data exposure in Umbraco Engage API endpoints before patch versions 16.2.1 and 17.1.1, without providing PoC, exploit code, or active exploitation details.