Teegra 🧝♀️𝕏[verified]@TeeegraActive Exploitation
CISA has listed CVE-2026-45247 as a known exploited vulnerability affecting all Mirasvit Cache Warmer versions before 1.11.12, with no mention of PoC, exploit code, patch, or debunking.
Elusive[verified]@ElusivePrivacyActive Exploitation
CISA reports three CVEs – Linux cgroups container escape, Android Framework integer overflow, and Magento 2 RCE – as actively exploited, noting patch availability for the Magento issue and a 21‑day deadline for federal responders.
piyokango[verified]@piyokangoActive Exploitation
CVE‑2026‑45247, a high‑severity PHP object injection in Mirasvit Full Page Cache Warmer, has been confirmed exploited in the wild with PoC details available, but no patch or workaround is explicitly mentioned.
Elusive[verified]@ElusivePrivacyActive Exploitation
CVE-2026-45247 is a high‑severeness PHP object injection flaw in Mirasvit Full Page Cache Warmer, actively exploited to deploy web shells and create admin accounts on Magento 2 sites, with a vendor patch (v1.1.52) available.
Orizon[verified]@OrizonCyberPatch
The tweet announces CVE‑2026‑45247, a critical PHP object injection flaw in Mirasvit Full Page Cache Warmer, and urges users to apply the available patch.
Lyrie.ai[verified]@lyrie_aiGeneral
CVE‑2026‑45247, linked to Mirasvit Full Page Cache Warmer, has been added to the CISA KEV list, indicating a recognized vulnerability but without further technical or exploitation details.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA KEV notes CVE-2026-45247 for Mirasvit Full Page Cache Warmer and reports the first exploit attempt in the wild at 03:00 UTC.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CVE‑2026‑45247 has been added to the CISA KEV list for Mirasvit Full Page Cache Warmer, indicating it is currently being exploited in the wild.