maruomosquit[verified]@maru1151157Disclosure
A critical authentication bypass via HTTP path traversal in ORY Oathkeeper is disclosed, detailed with a CVSS score of 10, and corrected in version 26.2.0.
CVE@CVEnewDisclosure
A CVE-2026-33494 is disclosed for Ory Oathkeeper versions prior to 26.2, with no additional details on exploitation or remediation.
CTIWatch@ctiwatchcloudGeneral
The post lists three high‑severity CVEs with their CVSS scores and links to a site for further details, but provides no information on exploits, patches, or active usage.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE-2026-33494, noting that versions of ORY Oathkeeper prior to 26.2 are affected, and directs readers to the official CVE record for more information.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces a critical CVE (CVE-2026-33494) affecting ORY Oathkeeper versions before 26.2.0 and provides a link to an external article for more information.
CVEFind.com@CveFindComDisclosure
The text announces a critical authorization bypass vulnerability in ORY Oathkeeper versions prior to 26.2.0, recommending users to upgrade to receive a fix.
0day Signal@0dayPublishingDisclosure
CVE-2026-33494 reveals a path‑traversal based authentication bypass in Ory Oathkeeper, rated CVSS 10.0, with further details linked; no evidence of active exploitation or patching is mentioned.
PulsePatch.io@pulsepatchioDisclosure
The post announces CVE‑2026‑33494, a path‑traversal authorization bypass in Ory Oathkeeper that may enable unauthorized access, and urges users to watch for vendor advisories.