
#AppSec 1⃣ Jellyfin RCE (CVE-2026-35033) https://www.sonarsource.com/blog/jellyfin-remote-code-execution 2⃣ Exploiting Langflow's validate_code() Endpoint for RCE (CVE-2026-0770) https://www.resecurity.com/blog/article/exploiting-langflows-validatecode-endpoint-for-remote-code-execution 3⃣ Cruising for Shells in Flowise: 6 RCEs https://www.elttam.com/blog/cruising-for-shells-in-flowise 4⃣ Check Point SmartConsole Authentication Bypass Technical Analysis (CVE-2026-16232) https://www.rapid7.com/blog/post/ra-check-point-smartconsole-authentication-bypass-technical-analysis-cve-2026-16232
Post summary
The post lists recent CVE disclosures (mostly RCEs) and links to blog posts offering proof‑of‑concept demonstrations, but does not mention active exploitation, patches, or debunking.


