maruomosquit[verified]@maru1151157Disclosure
The post discloses a high‑severity remote code execution vulnerability in OneUptime versions before 10.0.35, details how Playwright scripts can be abused, notes the issue is fixed in v10.0.35, and links to a vulnerability page for more information.
White Rabbitx[verified]@TheRabbitPyPatch
CVE‑2026‑33396 is a critical OS command injection vulnerability (CVSS 9.9) in Synthetic Monitoring Playwright sandbox, allowing full compromise; immediate patching is required.
White Rabbitx[verified]@TheRabbitPyPatch
The post announces a critical OS command injection vulnerability (CVE-2026-33396) with an immediate patch recommendation.
CVE@CVEnewDisclosure
The tweet announces CVE‑2026‑33396, noting that a low‑privileged authenticated user in OneUptime prior to v10.0.35 can achieve remote exploitation, but no PoC, exploit code, or patch is mentioned.
CTIWatch@ctiwatchcloudGeneral
The post announces three high‑CVSS CVEs and links to a vulnerabilities page, but it provides no PoC, exploit, mitigation, or detailed technical information.
The Hacker Wire@TheHackerWireDisclosure
The text announces CVE‑2026‑33396, a critical remote command execution flaw for low‑privileged users in OneUptime versions below 10.0.35, without providing PoC, exploit code, or patch details.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The tweet announces CVE-2026-33396, revealing a sandbox escape flaw in OneUptime's Synthetic Monitor Playwright runtime that permits arbitrary command execution on the Probe, with no mention of patches, exploits, or active exploitation.
CVEFind.com@CveFindComPatch
The post alerts to a critical remote command execution vulnerability in OneUptime versions below 10.0.35 and directs users to update to 10.0.35 to mitigate the risk.