CVE-2026-3670General

LOWCVSS 1.9 · LOW

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was detected in Freedom Factory dGEN1 up to 20260221. Affected is an unknown function of the component com.dgen.alarm. Performing a manipulation results in improper authorization. The attack requires a local approach. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-266CWE-285

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-03-07: 3Technical Details · 2026-03-07: 203-07
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3670 - Freedom Factory dGEN1 com.dgen.alarm improper authorization Intel Report: https://ift.tt/0oq8sEW

    Post summary

    Alert announces CVE-2026-3670, an improper authorization flaw in Freedom Factory dGEN1’s com.dgen.alarm component, with an Intel report link for further details.

    0000135
    344 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-3670 A vulnerability was detected in Freedom Factory dGEN1 up to 20260221. Affected is an unknown function of the component com.dgen.alarm. Performing a manipulation results… https://www.cve.org/CVERecord?id=CVE-2026-3670

    Post summary

    A CVE record (CVE‑2026‑3670) was noted for Freedom Factory dGEN1, indicating an undefined flaw in com.dgen.alarm, but no further technical details, exploitation evidence, or remediation steps are provided.

    0000094
    56.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-3670 Local Privilege Escalation in Freedom Factory dGEN1 via Improper Authorization https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3670

    Post summary

    The CVE announces a local privilege escalation vulnerability in Freedom Factory dGEN1, but lacks detailed exploit or patch information.

    0000045
    4.0K followersView on X

Explore more