CVE-2026-44392PoC

MEDIUMCVSS 5.3 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Assume compromise if assets are exposed
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

Missing authorization vulnerability exists in Movable Type. Under certain conditions, when a user without administrator privileges signs in to the product, unintended update processing may be executed.

5.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-862

Priority

MEDIUM

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Active exploitation appears in 1 classified signals
  • Public PoC is present in monitored signal
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-05-21); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-21: 1Mentions · 2026-05-25: 1PoC Mentioned / Linked · 2026-05-21: 1Active Exploitation · 2026-05-21: 1Technical Details · 2026-05-21: 1Technical Details · 2026-05-25: 105-2105-25
Signal classification2 categories
PoC
150.0%
Disclosure
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-05-211
PoC1
2026-05-251
Disclosure1
Full discourse2 posts
  • ボス@サイバーセキュリティの専門家@boss_sec_labo
    PoC

    権限チェックの抜け、intentの検証漏れ、教員PC1台からNASまでの侵入、そしてAIが自分で脆弱性を見つけ始めた日。今日のニュースは『小さな前提の抜け』が連鎖で破滅に化ける話だ。 ・Movable Type CVE-2026-44392、権限チェック欠如で意図せぬアップデートが走る ・RoboForm Android CVE-2026-47782、intent検証不備で無警告ファイル取得 ・東北大学、教員PC起点で大学病院NASまで侵入、治験データ漏えいの恐れ ・Instructure Canvas、ShinyHuntersに2億7500万件流出、教育分野で過去最大 ・Cloudflare、AnthropicのMythosで脆弱性発見からPoC生成まで自律実行を検証 AIが自分で脆弱性を見つけてPoCまで作る時代だ。みんなの現場は、まだ『パッチが出てから動く』そのままで通用するか?権限の境界、もう一度引き直す時期じゃないか?

    Post summary

    The passage highlights multiple CVEs, their technical flaws, real-world exploitation incidents, and AI’s ability to autonomously detect vulnerabilities and produce PoC, underscoring the need for timely patching.

    00070411
    1.2K followersView on X
  • Mr.Rabbit@01ra66it
    Disclosure

    【Movable Type管理画面にアクセス制御の脆弱性】 JVNは、Movable Typeの管理画面における不適切なアクセス制御の脆弱性 CVE-2026-44392 を公表しました。 この脆弱性により、管理者以外のユーザーによって意図しないアップデート処理が実行される可能性があります。 Movable Typeは国内サイトで長く利用されてきたCMSであり、古い構成や委託運用サイトでは更新状況が見落とされがちです。 日本のWeb運用者は、対象バージョン、管理画面のアクセス制限、不要アカウント、アップデート処理ログを確認したい脆弱性です。 #MovableType #CMS #CVE202644392 #JVN #Webセキュリティ #脆弱性対応 #SOC https://jvn.jp/jp/JVN56484285/

    Post summary

    JVN announced CVE-2026-44392 in Movable Type’s admin interface, noting that unauthorized users could trigger unintended updates. No PoC, exploit, active exploitation, or patch info is included.

    00000291
    3.7K followersView on X

Explore more