Lyrie.ai[verified]@lyrie_aiGeneral
The text consists only of a link and tags, providing no substantive information about the CVE.
Lyrie.ai[verified]@lyrie_aiDisclosure
The text announces CVE‑2026‑28474, providing its CVSS score, vector, and severity rating as a critical advisory, but no further exploitation details or mitigation steps are offered.
Lyrie.ai[verified]@lyrie_aiPatch
The advisory identifies a critical vulnerability in OpenClaw's Nextcloud Talk plugin, provides CVSS details, states affected versions, and implies a patch in version 2026.2.6.
Lyrie.ai[verified]@lyrie_aiGeneral
The snippet announces the critical CVE-2026-28474, providing its CVSS rating but no additional details such as PoC, exploit tools, active exploitation, or patches.
CCB Alert@CCBalertPatch
The advisory alerts about seven critical CVEs in OpenClaw's NextCloud Talk plugin, lists CVSS scores, and recommends updating to version 2026.2.6 or later.
CVE@CVEnewDisclosure
The tweet announces CVE-2026-28474 affecting Nextcloud Talk plugin, noting an allowlist validation flaw based on display name equality matching, but provides no PoC, exploit, or patch details.
The Hacker Wire@TheHackerWireDisclosure
CVE-2026-28474 is a critical flaw in OpenClaw's Nextcloud Talk plugin that allows attackers to bypass allowlist validation via equality matching on the mutable actor name field in versions prior to 2026.2.6.
CVEFind.com@CveFindComDisclosure
A critical flaw in OpenClaw's Nextcloud Talk plugin lets attackers bypass allowlists by forging display names, enabling compromise of conversation security.