
NewNormal Security turns CVEs since the previous batch into new detections, every day. 𝗗𝗮𝗶𝗹𝘆 𝗖𝗩𝗘 𝗥𝗲𝗽𝗼𝗿𝘁 — 24 Sep 2026 𝗔𝗱𝗱𝗲𝗱 to NewScan 𝘁𝗼𝗱𝗮𝘆: 🔑 Blank default JWT signing secret — forge an admin session, and nothing can revoke it (SigNoz CVE-2026-97055) 🔓 Reports built for callers who never logged in — user names, devices, print history (PaperCut CVE-2026-87739) 📂 Path traversal in scan-to-fax settings — an admin foothold becomes commands on the host (PaperCut CVE-2026-82077) Test your stack with NewScan — free, self-hosted: https://newnormalsecurity.com/newscan?utm_source=x&utm_medium=social&utm_campaign=daily-cve #infosec #AppSec #JWT #CSO #REDTEAM
