CVE-2026-6730Disclosure

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-08-01: 1Technical Details · 2026-08-01: 108-01
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
Full discourse1 post
  • Xavier Rivera@XavierRiveraX
    Disclosure

    NVD assigned CVE-2026-67308 (CVSS 10.0) to a shell injection flaw in Wazuh's GitHub Actions workflows. A crafted VERSION.json in a pull request lets attackers run arbitrary commands and exfiltrate GITHUB_TOKEN plus AWS credentials from self-hosted runners. https://thecircuitry.to/article/nvd-adds-shell-injection-flaw-in-wazuh-github-actions-workflows-as-cve-2026-6730-msaev55r

    Post summary

    The NVD announced CVE-2026-67308, a critical shell injection flaw in Wazuh GitHub Actions workflows that allows attackers to execute arbitrary commands via a crafted VERSION.json in a pull request, potentially exfiltrating GITHUB_TOKEN and AWS credentials from self-hosted runners.

    00000125
    597 followersView on X

Explore more