
A zero-day vulnerability in Actual Sync Server was discovered by an external pentester, then reviewed and documented by Fluid Attacks:ID CVE-2026-3089. You can find the full details here:🔗https://fluidattacks.com/advisories/fugue. We have disclosed 230 #CVE to this date: 🔗https://fluidattacks.com/advisories https://t.co/gC0Uxm7qsR
Post summary
Fluid Attacks has publicly disclosed a zero‑day vulnerability (CVE‑2026‑3089) affecting Actual Sync Server, with detailed information available through their advisory link.



