CVE-2026-8449General

LOW

Exploitation observed; activity peaked at 3 mentions and remains active

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

Rejected reason: This CVE ID has been rejected or withdrawn.

3.5/ 10 priority

Priority

LOW

Exploitation

ACTIVE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • Active exploitation appears in 1 classified signals
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 3 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-05-12); latest day: 1
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-05-12: 3Mentions · 2026-05-13: 1Active Exploitation · 2026-05-12: 1Technical Details · 2026-05-12: 2Technical Details · 2026-05-13: 105-1205-13
Signal classification3 categories
General
250.0%
Active Exploitation
125.0%
Disclosure
125.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-123
Active Exploitation1Disclosure1General1
2026-05-131
General1
Full discourse4 posts
  • Shota Zaizen (財前 匠汰)@z41zen
    General

    Linuxカーネルのコントリビュートにより修正した脆弱性、CVE発行されました🙂 https://www.cve.org/CVERecord?id=CVE-2026-8449

    Post summary

    The post only announces that a CVE was issued for a fixed Linux kernel vulnerability, offering no technical, exploit, or mitigation details.

    0101741.3K
    43 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-8449 Remote Memory Corruption in Linux ksmbd ACL Inheritance Path Leading to Privilege Escalation https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-8449

    Post summary

    The post references CVE-2026-8449, noting a remote memory corruption issue in ksmbd’s ACL inheritance that can cause privilege escalation, but provides no PoC, exploit code, active exploitation evidence, or patch information.

    0001091
    4.0K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Active Exploitation

    ⚠️ HIGH — CVE-2026-8449 Linux ksmbd contains a remote memory corruption vulnerability in the ACL inheritance path that allows remote clients wi… CVSS 8.8 ⚡ Exploit in the wild Full analysis → https://sec.kaitan.id/cves/CVE-2026-8449 #Linux #CyberSecurity #InfoSec

    Post summary

    CVE-2026-8449 is a high‑CVSS 8.8 remote memory corruption flaw in Linux ksmbd’s ACL inheritance that is reportedly being exploited in the wild; no PoC, exploit code, or patch information is included.

    00000147
    90 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-8449 Linux ksmbd contains a remote memory corruption vulnerability in the ACL inheritance path that allows remote clients with directory creation permissions to trigger a he… https://www.cve.org/CVERecord?id=CVE-2026-8449

    Post summary

    CVE-2026-8449 is a disclosed remote memory corruption flaw in Linux ksmbd's ACL inheritance path, enabling remote clients with directory creation permissions to trigger the vulnerability.

    00000101
    57.5K followersView on X

Explore more