Misbar | مسبار[verified]@MisbarSecDisclosure
The post announces a critical SandboxJS sandbox escape vulnerability (CVS 10, CVE‑2026‑34208) that can lead to host poisoning, and advises that patches be applied as soon as they are released.
Firmis Labs[verified]@FirmisLabsPatch
The note references CVE-2026-34208 with a CVSS of 10.0 and advises updating SandboxJS to 0.8.36 or newer, offering a workaround but showing no exploit or active usage details.
Michael Martino[verified]@battista212Patch
CISA alerts about CVE‑2026‑34208, a high‑severity unsafe deserialization flaw in SandboxJS that could enable arbitrary code execution, and advises affected users to apply patches immediately.
キタきつね[verified]@foxbookDisclosure
CVE‑2026‑34208 is reported as a critical sandbox‑escape flaw (CVSS 10) in SandboxJS, with PoC information linked but no evidence of active exploitation, patch, or mitigation steps.
Gray Hats@the_yellow_fallDisclosure
The post announces a critical 10.0 sandbox escape vulnerability in SandboxJS that can poison host objects, urges immediate update, but does not provide PoC, exploit details, or evidence of active exploitation.
Threat@THREATCHAINGeneral
The tweet announces CVE-2026-34208 and points to an external article for details but provides no evidence of a PoC, exploit, active attacks, patch, or technical specifics.
Mr. OS@ksg93rdDisclosure
The tweet announces three newly disclosed critical vulnerabilities, linking to GitHub advisories, and provides technical details but no evidence of active exploitation, patches, or exploit tools.
Abdulaziz Alharbi@Alharbi_AbzGeneral
A short list of four CVEs with affected products is presented, but no additional technical details, PoCs, or mitigation information are included.