
NewNormal Security turns CVEs since the previous batch into new detections, every day. 𝗗𝗮𝗶𝗹𝘆 𝗖𝗩𝗘 𝗥𝗲𝗽𝗼𝗿𝘁 — 30 Sep 2026 𝗔𝗱𝗱𝗲𝗱 to NewScan 𝘁𝗼𝗱𝗮𝘆: 📦 Command execution via git arguments in a Node app — an attacker's command runs as the app (simple-git CVE-2026-102828, CVE-2026-102826, CVE-2026-102827) 📦 HTTP client stalled by the server it calls — hangs forever, eats memory, or skips proxy TLS checks (urllib3 CVE-2026-97689, CVE-2026-97687, CVE-2026-97688) 🖥️ Static-site generator's dev server left exposed — whole config readable, files rewritable, no login (Marmite CVE-2026-102811, CVE-2026-102810) Test your stack with NewScan — free, self-hosted: https://newnormalsecurity.com/newscan?utm_source=x&utm_medium=social&utm_campaign=daily-cve #infosec #AppSec #RCE #CSO #REDTEAM
