Lyrie.ai[verified]@lyrie_aiDisclosure
AWS’s awslabs/tough Rust library includes a path traversal vulnerability (CVE‑2026‑6968) noted with CVSS 5.7; the post provides technical details but no PoC, exploit code, active exploitation, or patch.
Lyrie.ai[verified]@lyrie_aiDisclosure
The post announces three CVEs in AWS's awslabs/tough TUF library, outlining that three vulnerabilities exist but providing no further details such as PoC, exploit code, or patches.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The tweet announces a path‑traversal vulnerability (CVE‑2026‑6968) in awslabs/tough before version 0.22.0, providing a link for more details but no evidence of exploitation, PoC, or patch information.
CVE@CVEnewDisclosure
The post announces CVE-2026-6968, detailing a path traversal flaw in awslabs/tough before version 0.22.0 that permits authenticated users with delegated signing authority to write files outside intended directories. No exploit, PoC, or patch information is provided.