CVE-2026-55099Patch

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

0.5/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-06-25: 1Patch / Workaround · 2026-06-25: 1Technical Details · 2026-06-25: 106-25
Signal classification1 categories
Patch
1100.0%
Referenced assets2 URLs
Full discourse1 post
  • Open Source Security mailing list@oss_security
    Patch

    Plone: various security fixes 20260623 https://www.openwall.com/lists/oss-security/2026/06/23/9 including "Remote Code Execution via TALES Injection" CVE-2026-55099: icalendar: DoS https://www.openwall.com/lists/oss-security/2026/06/23/8 "a sub-kilobyte .ics file is enough to make a single equality check run for minutes or hang indefinitely"

    Post summary

    The post announces recent patches for Plone and discloses a denial‑of‑service flaw in icalendar that can be triggered with a small .ics file, indicating the availability of fixes for these CVEs.

    00020361
    4.7K followersView on X

Explore more