PulsePatch.io@pulsepatchioGeneral
The tweet reports a newly identified SSRF vulnerability in Centrifugo with some technical details, but lacks a PoC, exploit code, or evidence of active exploitation.
The Hacker Wire@TheHackerWireDisclosure
A new critical SSRF vulnerability (CVE‑2026‑32301) has been disclosed for Centrifugo versions before 6.7.0, with technical details provided but no proof of exploitation or patch information.
CVEFind.com@CveFindComPatch
This tweet issues a patch reminder, advising users to update Centrifugo to the latest version to mitigate a critical SSRF vulnerability that could let attackers manipulate JWKS endpoints.
CVE@CVEnewDisclosure
The post reports that CVE‑2026‑32301 is a Server‑Side Request Forgery vulnerability affecting Centrifugo versions prior to 6.7.0, with no mention of exploits, patches, or PoC details.
0day Signal@0dayPublishingDisclosure
The post announces a zero‑day vulnerability (CVE‑2026‑32301) in Centrifugo that permits SSRF through a JWT claim injection that bypasses signature validation. A reference link to Zeroday Signal provides further details and potential PoC information.