Upwind Security MDR[verified]@UpwindMDRDisclosure
A new high‑severity SSRF vulnerability (CVE‑2026‑69246) in Guzzle allows attackers to bypass host allow/deny checks via percent‑decoding/IDNA mapping; affected versions are <7.15.2 and <8.0.1, with upgrade recommended.
Hugo | DevOps | Cybersecurity 🇱🇻[verified]@HugoValtersDisclosure
The post announces CVE‑2026‑69246, detailing a Host header mishandling in Guzzle that can cause request smuggling/SSRF; no patch is yet available and no exploit or PoC is disclosed.
SecNews[verified]@SecNews_GRGeneral
The excerpt merely announces the existence of CVE‑2026‑69246 with a critical severity claim, providing no actionable details or evidence of exploitation.
CVE@CVEnewDisclosure
The post notes that Guzzle versions prior to 7.15.2 and 8.0.1 are impacted by CVE‑2026‑69246, implying a fix in those releases, but provides no PoC, exploit, or active exploitation details.
Infoflowcloud@infoflowcloudGeneral
The tweet announces CVE-2026-69246 in Guzzle, noting a transport‑URI handling issue, and provides a link to the CVE record; it offers no exploit details, patches or evidence of active exploitation.