CVE-2026-55556Disclosure

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-06-25); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-06-25: 1Mentions · 2026-09-21: 1Technical Details · 2026-06-25: 106-2509-21
Signal classification1 categories
Disclosure
1100.0%
Referenced assets2 URLs
Full discourse2 posts
  • Open Source Security mailing list@oss_security
    Disclosure

    CVE-2026-55556: rsyslog imhttp: Basic Auth heap overflow https://www.openwall.com/lists/oss-security/2026/06/23/4 requires - rsyslog built with the contributed imhttp module - imhttp installed and available - imhttp loaded and configured - HTTP Basic Authentication enabled - attacker access to that HTTP endpoint

    Post summary

    The post announces CVE‑2026‑55556, a heap overflow in rsyslog’s imhttp module when HTTP Basic Authentication is enabled, and specifies the conditions necessary for exploitation.

    00010321
    4.6K followersView on X
  • Hephaestvs@Vulcanux_

    csirt_it: ‼️ #PoC #rsyslog: Disponibile Proof of Concept (PoC) per lo sfruttamento CVE-2026-55556 e CVE-2026-61548 Rischio: 🔴 Tipologia: 🔸 Remote Code Execution 🔸 Denial of Service 🔗 https://www.acn.gov.it/portale/w/rsyslog-poc-pubbliche-per-lo-sfruttamento-delle-cve-2026-55556-e-cve-2026-61548 ⚠️ Importante mantenere aggiornati i si… https://t.co/ai00qqXU8X

    0000047
    636 followersView on X

Explore more