CVE-2026-88804: Unauthenticated update of public UI settings leading to stored XSS in Rancher, 9.4 Rating π₯
An unauthenticated attacker can plant malicious content that runs in the browser of anyone visiting the Rancher login page. This can leak the local administrator bootstrap password or hijack an active admin session, leading to complete control of the Rancher installation and its managed downstream clusters.
Search at Netlas.io:
π Link: https://nt.ls/dtxM5
π Dork: http.favicon.hash_sha256:2d7adbc74e7c8941927d04e702acbff577d219fef8617c8c3014d34ae395525b OR http.body:"<title>Rancher</title>" OR http.unknown_headers.key:"x_api_cattle_auth"
Vendor's advisory:
https://github.com/rancher/rancher/security/advisories/GHSA-992f-xh8r-jg2f
An unauthenticated attacker can plant malicious content that runs in the browser of anyone visiting the Rancher login page. This can leak the local administrator bootstrap password or hijack an active admin session, leading to complete control of the Rancher installation and its managed downstream clusters.
Search at Netlas.io:
π Link: https://nt.ls/dtxM5
π Dork: http.favicon.hash_sha256:2d7adbc74e7c8941927d04e702acbff577d219fef8617c8c3014d34ae395525b OR http.body:"<title>Rancher</title>" OR http.unknown_headers.key:"x_api_cattle_auth"
Vendor's advisory:
https://github.com/rancher/rancher/security/advisories/GHSA-992f-xh8r-jg2f
β€7
This media is not supported in your browser
VIEW IN TELEGRAM
π€£11π6β€4
/etc/passwd ==> WAF restriction? Use these:
/e?c/?asswd
/e*c/*asswd
/??c/?asswd
/??c/?assw?
Doesn't work always, just give it a try. π―
#bugbountytip #bugbountytips #bugbounty
/e?c/?asswd
/e*c/*asswd
/??c/?asswd
/??c/?assw?
Doesn't work always, just give it a try. π―
#bugbountytip #bugbountytips #bugbounty
β€16π3
This media is not supported in your browser
VIEW IN TELEGRAM
#pentesting #redteam #bugbounty
Please open Telegram to view this post
VIEW IN TELEGRAM
β€5π2
Please open Telegram to view this post
VIEW IN TELEGRAM
topmate.io
Bug Bounty Guide 2026 with Saumadip Mandal
Bug Bounty Guide 2026 with Saumadip Mandal Β· Master modern bug bounty hunting with 86 pages, 25 chapter Β· Digital Product Β· βΉ199 Β· Topmate
β€1π1
π¨Pentration Testing, Beginners To Expert!
https://github.com/xalgord/Massive-Web-Application-Penetration-Testing-Bug-Bounty-Notes#phase-2--web-and-server-technology
https://github.com/xalgord/Massive-Web-Application-Penetration-Testing-Bug-Bounty-Notes#phase-2--web-and-server-technology
β€9
A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab. Built for disciplined, ethical hunting.
https://github.com/DevCop95/bugbounty-lab101
https://github.com/DevCop95/bugbounty-lab101
GitHub
GitHub - DevCop95/bugbounty-lab101: A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automatedβ¦
A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab....
β€7π3π₯°1
π¨ Critical pre-auth RCE in Citrix NetScaler ADC and NetScaler Gateway (CVE-2026-88771)
Critical Vulnerability Alert!
Citrix NetScaler ADC and NetScaler Gateway is affected by CVE-2026-88771.
π Identify Targets via ZoomEye:
Search Dork: app="Citrix NetScaler"
Exposure: 239.2k instances identified globally.
ZoomEye Search Link:
π https://www.zoomeye.ai/searchResult?q=YXBwPSJDaXRyaXggTmV0U2NhbGVyIg%3D%3D
#Infosec #CyberSecurity #ZoomEye
Critical Vulnerability Alert!
Citrix NetScaler ADC and NetScaler Gateway is affected by CVE-2026-88771.
π Identify Targets via ZoomEye:
Search Dork: app="Citrix NetScaler"
Exposure: 239.2k instances identified globally.
ZoomEye Search Link:
π https://www.zoomeye.ai/searchResult?q=YXBwPSJDaXRyaXggTmV0U2NhbGVyIg%3D%3D
#Infosec #CyberSecurity #ZoomEye
β€2
Exploit β’ Auto Sh3lls in MAGENTO π¦
Modes π₯
β Detect (default) fingerprint Magento + version, classify VULN/ASSUMED.
β Exploit (--exploit) run the full chain, execute --code (or default id), verify via a fresh canary file written by the injected PHP.
π₯ Affecting +1kk Websites Magento Cms
DM π @Mm_fit
Channel: https://t.me/fox_security_cve
#AD
Modes π₯
β Detect (default) fingerprint Magento + version, classify VULN/ASSUMED.
β Exploit (--exploit) run the full chain, execute --code (or default id), verify via a fresh canary file written by the injected PHP.
π₯ Affecting +1kk Websites Magento Cms
DM π @Mm_fit
Channel: https://t.me/fox_security_cve
#AD
β€8πΏ3π¦2
π¨APKLeaks - Scanning APK file for URIs, endpoints & secrets.
β https://github.com/dwisiswant0/apkleaks
β https://github.com/dwisiswant0/apkleaks
β€10
π¨ CVE-2026-102489: Zammad Unauthenticated Remote Code Execution Exploited Zero-Day
Critical Vulnerability Alert!
Zammad (Zammad GmbH) is affected by CVE-2026-102489.
π Identify Targets via ZoomEye:
Search Dork: app="Zammad"
Exposure: 12k instances identified globally.
ZoomEye Search Link:
π https://www.zoomeye.ai/searchResult?q=YXBwPSJaYW1tYWQi
#ZoomEye #CyberSecurity #Zammad #CVE2026102489 #RCE #ZeroDay
Critical Vulnerability Alert!
Zammad (Zammad GmbH) is affected by CVE-2026-102489.
π Identify Targets via ZoomEye:
Search Dork: app="Zammad"
Exposure: 12k instances identified globally.
ZoomEye Search Link:
π https://www.zoomeye.ai/searchResult?q=YXBwPSJaYW1tYWQi
#ZoomEye #CyberSecurity #Zammad #CVE2026102489 #RCE #ZeroDay
β€6
CVE-2026-63292 and others: Multiple vulnerabilities in Apache HTTP Server, up to 9.8 rating βπ₯
Apache Software Foundation disclosed 20 new vulnerabilities. The most severe can lead to RCE, arbitrary code execution via stack-based buffer overflow, and DoS/potential RCE via use-after-free. Memory corruption, privilege escalation, and info disclosure bugs were also patched.
Search at Netlas.io:
π Link: https://nt.ls/fFMkT
π Dork: tag.name:"apache"
Vendor's advisory:
https://httpd.apache.org/security/vulnerabilities_24.html
Apache Software Foundation disclosed 20 new vulnerabilities. The most severe can lead to RCE, arbitrary code execution via stack-based buffer overflow, and DoS/potential RCE via use-after-free. Memory corruption, privilege escalation, and info disclosure bugs were also patched.
Search at Netlas.io:
π Link: https://nt.ls/fFMkT
π Dork: tag.name:"apache"
Vendor's advisory:
https://httpd.apache.org/security/vulnerabilities_24.html
β€5π1
π¨ WatchGuard Firebox fingerd Pre-Authentication Stack Overflow (CVE-2026-81433) Allows Remote Code Execution
Critical Vulnerability Alert!
WatchGuard Fireware OS (Firebox) is affected by CVE-2026-81433.
π Identify Targets via ZoomEye:
Search Dork: title="WatchGuard"
Exposure: 105.5k instances identified globally.
ZoomEye Search Link:
π https://www.zoomeye.ai/searchResult?q=dGl0bGU9IldhdGNoR3VhcmQi
#CVE202681433 #WatchGuard #Firebox #FirewareOS #RCE #CyberSecurity
Critical Vulnerability Alert!
WatchGuard Fireware OS (Firebox) is affected by CVE-2026-81433.
π Identify Targets via ZoomEye:
Search Dork: title="WatchGuard"
Exposure: 105.5k instances identified globally.
ZoomEye Search Link:
π https://www.zoomeye.ai/searchResult?q=dGl0bGU9IldhdGNoR3VhcmQi
#CVE202681433 #WatchGuard #Firebox #FirewareOS #RCE #CyberSecurity
π1