セキュリティ対策Lab[verified]@securityLab_jpPatch
The post announces that Microsoft Azure/Entra/Teams and Apple have applied patches for critical CVEs, including CVE‑2026‑63508, with details and a link to the vendor advisory.
Steve Waterhouse[verified]@Water_StevePatch
The post announces Microsoft and Apple’s out‑of‑cycle security updates for several high‑severity CVEs, highlighting RCE and elevation‑of‑privilege flaws, and notes that the fixes are already integrated into recent macOS releases.
Sami Laiho[verified]@samilaihoPatch
Microsoft announced CVE‑2026‑63508 as a critical elevation‑of‑privilege flaw with an official fix; no PoC or exploitation details were disclosed.
Upwind Security MDR[verified]@UpwindMDRDisclosure
Microsoft Planetary Computer Pro GeoCatalog exposes a critical function lacking authentication, leading to unauthenticated privilege escalation (CVE-2026-63508); mitigation involves enforcing upstream authentication.
SecNews[verified]@SecNews_GRPoC
CVE-2026-63508 is highlighted as a no‑authentication flaw, with a provided link that likely contains a proof‑of‑concept, but no exploit, patch, or active exploitation details are disclosed.
Windows Forum[verified]@windowsforumGeneral
The tweet reports Microsoft’s disclosure of an elevation‑of‑privilege flaw in Planetary Computer Pro but provides no technical, exploit, patch, or active‑exploitation details.
しーにゃ♪@公式@SyynyaPatch
The post announces that Microsoft and Apple have released patches for several high‑severity vulnerabilities, including CVEs with CVSS 10.0, and urges immediate action.
CVE@CVEnewDisclosure
CVE-2026-63508 reveals a missing authentication flaw in Microsoft Planetary Computer Pro that permits an unauthorized attacker to elevate privileges over a network.