
HAIJA INTEL REPORT
Tweets / X
6 items








Regular sources
9 itemsRe: Vulnerability fixes in util-linux-2.42.3
Posted by Salvatore Bonaccorso on Sep 05 Hi, https://github.com/util-linux/util-linux/commit/286dd3ff41526b582ef48830de239dffbaa61f90 Regards, Salvatore
Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
Google on Thursday released security updates to patch 12 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerabil…
GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests
OpenAI on Thursday officially unveiled GPT‑6 Astra, which it described as the "world's most intelligent and aligned model." The development comes days after the artifici…
O-CMS 1.0.0 Authenticated OS Command Injection via ai_cli_script
Posted by Ron E on Sep 03 Description O-CMS version 1.0.0 contains an authenticated OS command injection vulnerability in the AI CLI configuration functionality. An auth…
Flextype v1.0.0-alpha.3 CMS registerShortcodes() Remote Code Execution via Attacker-Controlled File Inclusion
Posted by Ron E on Sep 03 Description Flextype CMS contains a remote code execution vulnerability in the interaction between the Entries API and Shortcodes::registerShor…
Flextype v1.0.0-alpha.3 Stored Expression Injection Enables PHP Remote Code Execution
Posted by Ron E on Sep 03 Description Flextype CMS v1.0.0-alpha.3 contains a stored code execution vulnerability caused by the interaction between globally processed ent…
Flextype v1.0.0-alpha.3 Path Traversal in Entry Copy Allows Arbitrary Directory Copy and File Disclosure
Posted by Ron E on Sep 03 Description Flextype CMS v1.0.0-alpha.3 contains a path traversal vulnerability in the Entries copy functionality. An authenticated remote atta…
Payara 7.2026.1.RC1 Remote Code Execution via Server-Side Includes #exec Directive in Payara Server
Posted by Ron E on Sep 03 *Description:* Payara Server contains a vulnerability in its Server-Side Includes (SSI) implementation that allows arbitrary operating system c…
Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without lo…