Autumn Good@autumn_good_35Disclosure
The tweet announces the CVE‑2026‑40872 vulnerability—a stored XSS in mailcow’s autodiscover logs—and provides a link to the GitHub advisory. No PoC, exploit code, or active exploitation details are mentioned.
CCB Alert@CCBalertPatch
The alert announces that CVE-2026-40872, a critical Stored XSS vulnerability in Mailcow, has been fixed and directs readers to the patch advisory.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The tweet announces the discovery of a stored XSS vulnerability (CVE‑2026‑40872) in mailcow Autodiscover logs, linking to a vulnerability details page.
0day Signal@0dayPublishingDisclosure
The article announces CVE‑2026‑40872, noting an unauthenticated XSS flaw in mailcow’s Dockerized environment that exploits the Autodiscover EMailAddress field and can affect admin dashboards with no user interaction.