solst/ICE of Astarte[verified]@IceSolstPoC
The tweet reveals a remote code execution flaw (CVE‑2026‑4946) in Ghidra, describing how malicious embedded strings trigger command execution via auto‑generated comments, and links to a write‑up containing the PoC.
Michael Martino[verified]@battista212Disclosure
The post announces CVE-2026-4946, a high‑severity command injection flaw in NSA Ghidra, detailing how attackers could embed malicious payloads inside compiled binaries that trigger arbitrary command execution through seemingly benign clickable labels.
Mr. OS@ksg93rdPoC
Two CVEs – one in Ghidra’s auto‑analysis annotations and another in SpiderMonkey’s JIT – are highlighted with proof‑of‑concept exploitation details; however, no active exploitation or patch information is provided.
bigmacd@bigmacd16684Patch
CVE-2026-4946 is a command injection vulnerability in NSA Ghidra (pre‑12.0.3); users are advised to upgrade to version 12.0.3 to mitigate the risk.
CVE@CVEnewDisclosure
The post discloses that Ghidra versions prior to 12.0.3 are vulnerable to arbitrary command execution via improperly processed annotation directives, but it provides no PoC, exploitation evidence, or patch details.
The Hacker Wire@TheHackerWireDisclosure
The text announces a high‑severity vulnerability (CVE‑2026‑4946) in Ghidra versions prior to 12.0.3, detailing arbitrary command execution via annotation directives during binary analysis.
CVEFind.com@CveFindComPatch
The message warns of a high‑severity CVE in earlier Ghidra versions and advises upgrading to mitigate the arbitrary command execution vulnerability.