maruomosquit[verified]@maru1151157Patch
CVE-2026-30921 enables remote code execution via Playwright code sent by low‑privileged users; the vulnerability is fixed in OneUptime 10.0.20.
DailyCVE@dailycveDisclosure
The tweet links to a DailyCVE article announcing a remote code execution vulnerability (CVE‑2026‑30921) and a URI scheme bypass in Nuxt (CVE‑2024‑34344), but it offers only the basic classification without detailed exploit or mitigation information.
CVEFind.com@CveFindComDisclosure
The post announces the CVE‑2026‑30921 vulnerability in OneUptime, noting that low‑privileged users can run untrusted Playwright code on the server, resulting in remote code execution.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces a new CVE—CVE-2026-30921—reporting a remote code execution flaw in OneUptime Synthetic Monitors via a Playwright browser object, but provides no PoC, exploit code, or patch information.
The Hacker Wire@TheHackerWireDisclosure
A new critical vulnerability (CVE‑2026‑30921) in OneUptime allows low‑privileged users to run arbitrary Playwright scripts via Synthetic Monitors, potentially leading to code execution. No active exploitation, patches, or PoC details are cited in the excerpt.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE‑2026‑30921, noting that before OneUptime 10.0.20, low‑privileged project users could submit custom code via Synthetic Monitors, but no PoC, exploit, patch, or active exploitation details are provided.
CVE@CVEnewDisclosure
The CVE-2026-30921 record indicates that OneUptime's Synthetic Monitors allow low‑privileged users to submit custom content, suggesting a potential vulnerability. No proof‑of‑concept, exploit code, active exploitation, patch, or false‑positive claim is provided.
DailyCVE@dailycveDisclosure
The text announces the discovery of a critical remote code execution vulnerability (CVE-2026-30921) in OneUptime, but provides no additional details or evidence of exploitation.