
🚨*CVE* CVE-2026-74796 OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache directory during initialization. Attackers can place a malicious symlink in a trusted… https://www.cve.org/CVERecord?id=CVE-2026-74796 ----- Traducción: CVE-2026-74796 Ope… https://infoflow.cloud`
Post summary
The tweet announces CVE-2026-74796, noting a symlink validation flaw in OpenTofu before 1.11.7 and linking to the CVE record.

