
Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
Disclosure
#CVE-2026-39560 - Critical #PHP Object Injection in #Hiroshi <= 1.5.1. Unauthenticated exploit. CVSS 8.1. No patch available. Disable immediately. #CVEAlert #InfoSec #Developers #devsecops #devops #linux #ubuntu More detailed info and other CVES: https://www.valtersit.com/cve/CVE-2026-39560
Post summary
The tweet announces CVE‑2026‑39560, a critical PHP Object Injection flaw in Hiroshi <=1.5.1 with CVSS 8.1, no patch yet, advising users to disable the software immediately.
0000066
948 followersView on X
