White Knight Labs[verified]@WKL_cyberActive Exploitation
Attackers are actively scanning exposed Vite dev servers for CVE-2026-39364 to steal credentials, with over 800 attacks observed and a recommendation to patch and rotate secrets.
tpx Security ⠠⠵[verified]@tpx_SecurityActive Exploitation
The post reports F5 Labs detecting mass automated scanning that actively exploits CVE-2026-39364 in exposed Vite dev servers, with specific bypass and data-extraction details.
Security Boulevard[verified]@securityblvdActive Exploitation
The text directly reports that attackers are actively mass-scanning and exploiting CVE-2026-39364 on exposed Vite servers to steal cloud credentials, with a reference link to further details but no specific exploit code, patch, or technical vulnerability classification included in the text.
Threat Landscape[verified]@LandscapeThreatActive Exploitation
The text reports active mass-scanning exploitation of CVE-2026-39364 in Vite development servers to access sensitive files, with evidence of widespread real-world attacks and a recommendation to patch and rotate secrets.
Corban Villa[verified]@corban_villaPoC
The tweet announces that an exploit (CVE‑2026‑39364) has been discovered and links to a likely proof‑of‑concept, but provides no further details on technical aspects or active exploitation.
Venkata Satish Guttula 🛰️[verified]@snakeyesV1Patch
The text discloses an unauthenticated Vite information-disclosure issue affecting specified versions, reports observed probing, and recommends upgrading, restricting port 5173, and rotating exposed credentials.
セキュリティ対策Lab[verified]@securityLab_jpActive Exploitation
The text reports large-scale scanning activity targeting CVE-2026-39364 with ~32,000 observations by F5, including cloud credential exploration, indicating active exploitation—but lacks patch, PoC, or technical vulnerability details.
CloudSecurityAlliance[verified]@cloudsaActive Exploitation
The briefing reports active exploitation of several CVEs—most notably a Cisco Email Gateway zero‑day on CISA’s KEV list and a Gitea RCE used in multiple breaches—alongside credential‑stealing Vite server bugs and a new hardware attestation bypass tool.