にゃん☆たく/takumi.a[verified]@taku888infinityDisclosure
The text announces a series of new CVEs with technical details and associated vendor patch notifications, focusing on disclosure of vulnerabilities rather than exploitation or patch instructions.
ThaiCERT By NCSA[verified]@ThaiCERTByNCSAPatch
ThaiCERT alerts users to CVE‑2026‑8043, a critical file‑path control flaw in Ivanti Xtraction, and urges immediate patching to version 2026.2 or newer along with recommended mitigations.
connect24h[verified]@connect24hPatch
Several major vendors released patches addressing authentication bypass, RCE, and privilege escalation flaws, with the most critical being Ivanti Xtraction CVE‑2026‑8043 (CVSS 9.6).
Upwind Security MDR[verified]@UpwindMDRDisclosure
The tweet announces the discovery of a critical arbitrary file read vulnerability (CVE-2026-8043) in Ivanti Xtraction, detailing affected versions and the potential impact, but does not provide PoC, exploit, patch, or evidence of active exploitation.
AI Security Gateway[verified]@AISGatewayGeneral
The post highlights the high CVSS score of CVE-2026-8043 and warns that AI workflow integration increases attack surface, but it offers no PoC, exploit code, patch info, or evidence of real‑world attacks.
TodayInCyber[verified]@TodayInCyberIOPatch
The post announces critical vulnerabilities for Ivanti Xtraction and Fortinet products with patch releases, but does not mention any PoC, exploit tools, or active exploitation.
IntegSec[verified]@integ_secDisclosure
The statement announces a newly identified Ivanti Xtraction vulnerability (CVE‑2026‑8043) involving externally controllable file names, but offers no PoC, exploit, or patch details.
Security Arsenal, LLC[verified]@SecurityAr58409Patch
The text is a patch advisory announcing critical fixes for Ivanti Xtraction and Fortinet, addressing RCE and authentication bypass, with no exploit or PoC details provided.