NullSecurityX[verified]@NullSecurityXPoC
The post highlights a video that demonstrates a full exploitation chain for CVE-2026-3888 and CVE-2026-27944, offering technical details but no actual exploit code or active usage reports.
Hack The Box[verified]@hackthebox_euGeneral
A new HTB Labs Enterprise Platform machine challenges users to exploit two newly disclosed CVEs—an authentication bypass in Nginx UI (CVE‑2026‑27944) followed by a timing-based logic flaw in Ubuntu snapd (CVE‑2026‑3888)—to achieve root privileges.
Nicolas Krassas[verified]@DinosnDisclosure
The article announces a critical Nginx UI flaw (CVE-2026-27944) that exposes server backups, but provides no PoC, exploit details, or patch information.
NullSecurityX[verified]@NullSecurityXGeneral
The tweet merely announces the existence of CVE-2026-3888 and CVE-2026-27944 and hints at upcoming content via a YouTube channel, providing no technical or exploit details.
GreyNoise[verified]@GreyNoiseIOActive Exploitation
GreyNoise reports active probing and exploitation of CVE-2026-27944, CVE-2024-44000, and CVE-2026-60137, with evidence of real‑world attacks and inclusion in the CISA KEV catalog.
kokumօtօ[verified]@__kokumotoPoC
The post confirms a PoC was published for CVE-2026-27944, details the vulnerability with a high CVSS score, and notes a patch in version 2.3.3, but provides no evidence of active exploitation or a specific exploit tool.
connect24h[verified]@connect24hDisclosure
The post announces CVE‑2026‑27944, shares technical details, notes that a PoC has been released, and urges users to update to v2.3.3+ and harden exposure.
maru[verified]@maru1151157Patch
CVE-2026-27944 exposes an un‑authenticated /api/backup endpoint that leaks an encryption key via the X-Backup-Security header, allowing attackers to download and decrypt backups, resulting in data compromise; the issue is fixed in version 2.3.3.