Fazt[verified]@FaztTechActive Exploitation
The post highlights multiple recent CVEs, noting active exploitation by TeamPCP against GitHub and npm, while also mentioning that Microsoft has patched numerous vulnerabilities this month.
International Cyber Digest[verified]@IntCyberDigestActive Exploitation
Microsoft’s CVE‑2026‑42897 allows arbitrary JavaScript execution in Outlook Web Access and is already being exploited in the wild, targeting on‑prem Exchange 2016/2019 and SE, with no patch or mitigation described.
三輪信雄[verified]@NobMiwaGeneral
The snippet mentions CVE-2026-42897 and notes that infection can occur via email, but provides no further technical, exploit, or mitigation details.
Kostas[verified]@KostastsalePoC
The blog explains how OWAReaper abuses CVE‑2026‑42897 to execute XSS in Outlook Web Access, using GitHub queries and CDN/DNS tunnelling for exfiltration; patching stops initial exploitation but may not remove persistence.
إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediActive Exploitation
Microsoft reports CVE‑2026‑42897 is actively exploited in real attacks, where attackers send crafted emails that trigger an XSS flaw in Exchange OWA, allowing malicious JavaScript to run with the victim’s session privileges. No PoC, exploit code, or patch details are provided.
cr3ghost[verified]@cr3ghostActive Exploitation
The text reports that threat actor TA488 is actively exploiting CVE‑2026‑42897 in Outlook Web Access, injecting JavaScript in email bodies to steal OAuth tokens and grant elevated mailbox permissions, indicating real‑world malicious activity.
Sekurak[verified]@SekurakDisclosure
Microsoft Exchange Server 2016/2019/SE is affected by a critical 0‑day CVE‑2026‑42897, a persistent XSS triggered in OWA via JavaScript, with temporary workarounds in place and full patches pending.
blackorbird[verified]@blackorbirdPoC
The post references CVE-2026-42897 tied to a new Outlook Web Access exploit and suggests a PoC is available, but lacks details on active attacks, patches, or technical specifics.