
🐣@Thezinnekalu
Two of the vulnerabilities I found in Progress software have been assigned CVEs. Let's go🚀 https://www.cve.org/CVERecord?id=CVE-2026-86158 https://www.cve.org/CVERecord?id=CVE-2026-86158
11604782.1K
1.2K followersView on X
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
Missing authentication in the local .NET backend (Fiddler.WebUi) of Progress Software Fiddler Everywhere 8.0.2 allows a local unauthenticated attacker to mint OAuth tokens and read the machine-in-the-middle root certificate through an unauthenticated localhost HTTP and SignalR RPC channel.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
NONE

Two of the vulnerabilities I found in Progress software have been assigned CVEs. Let's go🚀 https://www.cve.org/CVERecord?id=CVE-2026-86158 https://www.cve.org/CVERecord?id=CVE-2026-86158