Cyberdark Imapct[verified]@kenebeiiDisclosure
The tweet announces the discovery of an out‑of‑bound read vulnerability in Squid's FTP gateway (CVE‑2026‑47729) and links to a security lab post, but it does not provide any proof‑of‑concept, exploit, patch, or evidence of active exploitation.
CyberAlertsHQ[verified]@CyberAlertsHQPatch
The post clarifies that Squid 7.6 does not contain the Squidbleed fix; users should use the interim mitigation of disabling FTP support, and the official patch will arrive with unreleased Squid 7.7.
セキュリティ対策Lab[verified]@securityLab_jpPatch
Squid has issued patches for CVE‑2026‑47729 (out‑of‑bounds read) and CVE‑2026‑50012 (heap buffer overflow), as announced on the security lab website.
Can Artuc[verified]@canartucPatch
Squid 7.6 patches two memory bugs—CVE‑2026‑47729 (out‑of‑bounds read in the FTP gateway) and CVE‑2026‑50012 (heap overflow in cache digests on --enable-cache-digests builds). No exploitation activity or PoC is mentioned.
Open Source Security mailing list@oss_securityDisclosure
The post announces two newly disclosed Squid vulnerabilities, describing an OOB read and a heap buffer overflow; it notes that CVE‑2026‑50012 is fixed in version 7.6 but provides no PoC, exploit, or evidence of active exploitation.
Autumn Good@autumn_good_35Disclosure
Information about two CVEs (CVE-2026-47729, CVE-2026-50012) that were fixed in Squid v7.6 is now publicly available, though a formal vendor announcement has not yet been made.
Autumn Good@autumn_good_35Patch
An official advisory was released for two new Squid CVEs (CVE-2026-47729 and CVE-2026-50012) detailing memory disclosure and memory corruption vulnerabilities; the text does not include exploit details or patch specifics.
VulDB 🛡@vuldbActive Exploitation
CTI analysts report numerous observed activities exploiting Squid via CVE‑2026‑50012, indicating active malicious use but lacking details on the exploit or patch.