TGViewer
Channel Public Channel
Netlas.io

Netlas.io

@netlas

Explore the latest in cybersecurity with Netlas.io. Stay ahead with updates on high-profile vulnerabilities, expert tutorials, essential safety tips, and the latest Netlas developments.
Subscribers
2.31K
Photos
431
Videos
3
Links
572
Recent Posts 20 shown
Post #637 127
CVE-2026-93952: Improper Input Validation in VeloCloud Orchestrator, 10.0 Rating 🔥

A recently disclosed improper input validation vulnerability in on-premises VeloCloud Orchestrator (VCO) allows a remote attacker to access privileged internal functionality and impact the VCO host. This vulnerability is known to be actively exploited in the wild!

Search at Netlas.io:
👉 Link: https://nt.ls/Z9gGT
👉 Dork: http.body:"single-spa-application:@velocloud/vco-header" OR http.body:"vco/branding.css" OR http.body:"vco/favicon"

Vendor's advisory:
https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183
  • 🔥 3
  • ❤ 1
Post #636 192
CVE-2026-13684 and others: Multiple vulnerabilities in Synology DSM, up to 9.8 Rating 🔥

Synology has disclosed 8 vulnerabilities in DiskStation Manager (DSM); 2 of them allow a remote unauthenticated attacker to read or write files and cause a denial of service on affected devices.

Search at Netlas.io:
👉 Link: https://nt.ls/dgzix
👉 Dork: tag.name:"synology_diskstation"

Vendor's advisory:
https://www.synology.com/en-global/security/advisory/Synology_SA_26_13
  • ❤ 1
  • 👍 1
  • 🔥 1
Post #634 340
CVE-2026-20329 and others: Multiple vulnerabilities in Cisco ASA, up to 9.9 Rating 🔥

Cisco has disclosed multiple vulnerabilities in Cisco ASA, which allow a remote authenticated attacker to cause system instability or run arbitrary actions via improper exception handling. Other disclosed flaws can lead to improper access control, validation errors, and other security-relevant issues.

Search at Netlas.io:
👉 Link: https://nt.ls/ci994
👉 Dork: snmp.banner:"Cisco Adaptive Security Appliance" OR snmp.banner:"Cisco ASA" OR http.headers.set_cookie:"webvpn" OR http.body:"+CSCOE+"

Vendor's advisory:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-asaftdfmc-uvpPROhN
  • 🔥 3
  • ❤ 1
Post #633 313
CVE-2026-61642: Request smuggling is possible in Squid proxy, 7.7 Rating 🔥

A recently disclosed vulnerability in Squid proxy allows a trusted client to poison the web cache and store arbitrary malicious content at any URL, which can then be delivered to other clients in response to their future requests.

Search at Netlas.io:
👉 Link: https://nt.ls/B7WF8
👉 Dork: http.headers.server:"squid"

Read more:
https://github.com/squid-cache/squid/security/advisories/GHSA-537g-4gfh-w7m6
  • ❤ 2
  • 🔥 1
Post #632 344
CVE-2026-78006 & CVE-2026-78159: Two unauthenticated vulnerability chains leading to RCE in The Events Calendar Plugin for WordPress, 9.8 Rating 🔥

Two critical vulnerabilities were recently disclosed in The Events Calendar Plugin for WordPress. The first uses PHP Object Injection to execute arbitrary OS commands on the underlying server. The second allows an unauthenticated attacker to reset an administrator’s password, after which the attacker can upload a malicious plugin and take complete control of the site. The first vulnerability (CVE-2026-78006) is already being exploited in the wild!

Search at Netlas.io:
👉 Link: https://nt.ls/mEm8O
👉 Dork: http.body:"plugins/the-events-calendar"

Read more:
https://www.wordfence.com/blog/2026/09/wordfence-argus-identifies-two-critical-unauthenticated-vulnerability-chains-leading-to-remote-code-execution-in-the-events-calendar-plugin/
  • ❤ 1
  • 🔥 1
Post #631 417
🔌 Plug & Pwn: Mapping the Windows PnP Auto-Install Attack Surface

Windows Plug & Play can automatically install signed vendor software with SYSTEM privileges. With RDP USB redirection, this attack surface may also be reachable remotely — no physical USB device required.

Look at how this attack works and how Netlas can help map exposed RDP infrastructure.

👉 https://netlas.io/blog/windows_pnp_auto_install_attack_surface/
netlas.io Plug & Pwn: Mapping the Windows PnP Auto-Install Attack Surface - Netlas Blog How Windows PnP auto-install becomes a privilege-escalation path, what Netlas can reveal about RDP exposure, and which controls reduce the risk.
  • 🔥 6
  • 👍 4
  • ❤ 1
Post #630 399
CVE-2026-85102 and CVE-2026-85103: Two RCE Vulnerabilities in Check Point Products, 9.8 Rating 🔥

Two critical VPN-related vulnerabilities recently disclosed in Check Point Security Gateways, firewall appliances, and the Security Management Server could allow unauthenticated remote code execution under specific conditions. Both vulnerabilities exist in the way the products handle VPN certificates.

Search at Netlas.io:
👉 Link: https://nt.ls/hJmZ6
👉 Dork: http.headers.server:"CPWS" OR http.favicon.hash_sha256:78bd48391c96c6ac257e74e109783cc2750b39ea144a849f8d830f4f8f279267 OR http.favicon.hash_sha256:475a554d9a6c971ebf248fe45bcecafbab2b663edd7f080486a995c877dd1216 OR http.body:"TITLE>GAiA</TITLE>" OR path:"/sslvpn/Login/Login" OR http.headers.set_cookie:"CheckCookieSupport"

Vendor's advisory:
https://community.checkpoint.com/t5/General-Topics/Action-Required-Critical-Security-Advisory-VPN-Vulnerabilities/td-p/281995
  • 🔥 3
  • ❤ 1
Post #629 383
CVE-2026-67401: SQL Injection Vulnerability in cPanel, 9.9 Rating 🔥

A vulnerability in cPanel's EmailTrack component allows an authenticated attacker with mail-related privileges to create arbitrary files on the server via SQL injection. This may lead to code execution as the root user, giving the attacker full control of the server.

Search at Netlas.io:
👉 Link: https://nt.ls/dIEpd
👉 Dork: http.title:cpanel OR http.headers.set_cookie:"cprelogin" OR http.headers.set_cookie:"cpsession"

Vendor's advisory:
https://support.cpanel.net/hc/en-us/articles/43187903921559-Security-CVE-2026-67401-SQL-Injection-Vulnerability-in-cPanel-s-EmailTrack-Functionality-September-8-2026
  • 🔥 3
  • ❤ 1
  • 👾 1
Post #628 380
CVE-2026-44756: A memory corruption vulnerability in SAP (OVERPASS), 10.0 rating ‍🔥

A recently disclosed memory corruption vulnerability, which resides in the SAP kernel's processing of the Extended Passport (EPP), allows unauthenticated attackers to run arbitrary OS commands on the SAP host with SAP administrative privileges, potentially leading to a total compromise of underlying business data and processes.

Search at Netlas.io:
👉 Link: https://nt.ls/U7K8V
👉 Dork: http.headers.server:"SAP"

Read more :
https://onapsis.com/blog/sap-overpass-remediation/
  • ❤ 3
  • 🔥 3
Post #627 365
CVE-2026-75650: Adobe Commerce and Magento Open Source RCE vulnerability (StyleSmuggler) exploited in the wild, 10.0 rating ‍🔥

Recently disclosed vulnerability in Adobe Commerce and Magento Open Source allows an unauthenticated attacker to execute arbitrary code. This vulnerability is being actively exploited in the wild!

Search at Netlas.io:
👉 Link: https://nt.ls/bX5dx
👉 Dork: tag.name:"magento"

Read more :
https://sansec.io/research/stylesmuggler-0day
  • ❤ 1
  • 🔥 1
Post #626 510
CVE-2026-67276 and others: MikroTik RouterOS vulnerabilities exploited in the wild (MikroTrick), up to 9.2 rating ‍🔥

Recently disclosed vulnerabilities in MikroTik RouterOS allow an attacker to take full control of the device without authentication if the device supports remote access via the SSH protocol. These vulnerabilities are being actively exploited in the wild!

Search at Netlas.io:
👉 Link: https://nt.ls/318sx
👉 Dork: tag.name:"mikrotik"

Vendor's advisory :
https://mikrotik.com/supportsec/september-2026-vulnerability/
  • 🔥 2
  • ❤ 1
Post #625 488
CVE-2026-85602: Grav Form Plugin reCAPTCHA v3 Authentication Bypass, 9.3 rating ‍🔥

The Grav Form plugin selects which reCAPTCHA version to use for validation based solely on the presence of a specific response field key in the submitted payload. This allows an anonymous attacker to bypass reCAPTCHA v3 bot protection.

Search at Netlas.io:
👉 Link: https://nt.ls/VcB4a
👉 Dork: tag.name:"grav"

Vendor's advisory :
https://github.com/getgrav/grav/security/advisories/GHSA-89j6-8h38-2cc3
  • 🔥 4
  • ❤ 1
Post #623 964
Authentication bypass in Proxmox VE with public exploit and active exploitation, no CVE assigned yet ❗️

A recently disclosed vulnerability in EOL releases of Proxmox VE allows unauthenticated remote attackers to log in as root without a password. Public PoC now exists! This vulnerability is being actively exploited in the wild!

Search at Netlas.io:
👉 Link: https://nt.ls/qLCVL
👉 Dork: tag.name:"proxmox_ve"

Vendor's advisory:
https://forum.proxmox.com/threads/proxmox-virtual-environment-security-advisories.149331/page-4#-subject-psa-2026-00043-1-authentication-bypass-in-eol-proxmox-ve-7-release
  • 🔥 3
  • ❤ 1
Post #622 525
CVE-2026-62911: Pre-auth RCE in Microsoft Exchange with public PoC, 8.0 rating ‍🔥

Disclosed at the August Patch Tuesday, this pre-auth RCE vulnerability allows unauthenticated attackers on local networks to achieve remote code execution as SYSTEM. And now a PoC exists!

Search at Netlas.io:
👉 Link: https://nt.ls/rnLCg
👉 Dork: tag.name:"microsoft_exchange"

Read more:
https://github.com/hypnguyen1209/CVE-2026-62911
  • 🔥 3
  • ❤ 1
Post #621 550
Zero-day vulnerability in PaperCut Software with active exploitation, no CVE assigned yet ‍🔥

PaperCut disclosed an emergency alert about a vulnerability in PaperCut NG/MF. No details have been disclosed, but it is known that it is being actively exploited in the wild.

Search at Netlas.io:
👉 Link: https://nt.ls/n7oWU
👉 Dork (PaperCut MF): http.favicon.hash_sha256:fab4df1b834bf0ff6389d2315cc0d639d55cf6daef8e0880302150d1d48b3576 OR http.favicon.hash_sha256:ce5cefdb0b9c7fbf8d204660447db9878316dbfe5d56f47455419f435ebd6464 OR http.meta:"PaperCut MF is a print management system"OR http.body:"<title>PaperCut Login"

Vendor's advisory:
https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/
  • ❤ 4
  • 🔥 1
Post #620 516
CVE-2026-19632: Account takeover vulnerability in TranslatePress WordPress plugin, 9.8 rating ‍🔥

A recently disclosed vulnerability in the TranslatePress WordPress plugin allows unauthenticated attackers to extract an administrator’s password reset link, reset the account’s password, and log in as that administrator, leading to complete site takeover.

Search at Netlas.io:
👉 Link: https://nt.ls/oe1hr
👉 Dork: http.body:"plugins/translatepress-multilingual"

Vendor's advisory:
https://www.wordfence.com/blog/2026/08/400000-wordpress-sites-affected-by-account-takeover-vulnerability-in-translatepress-wordpress-plugin/
  • 🔥 5
  • ❤ 3
Post #619 588
🗺 Netlas v1.9 — Rebuild Your Attack Surface

Attack surfaces change over time — infrastructure appears, disappears, and moves. With the new interactive rebuild in Netlas Discovery, you can update an existing attack surface using the latest Netlas data.

✔ Replay the complete discovery history step by step
✔ Decide whether to add newly discovered nodes
✔ Keep or remove data no longer found in current indices
✔ Preserve graph layout and comments
✔ New scanner protocols: BACnet and MSRPC
✔ New API endpoints for single and bulk rescans
✔ 20+ security fixes

Full changelog: https://docs.netlas.io/changelog/
  • 🔥 6
  • ❤ 4
  • 👾 2
Post #618 462
CVE-2026-77806: Unauthenticated RCE in SPIP with public exploit and active exploitation, 9.8 rating ‍🔥

A recently disclosed vulnerability in SPIP allows unauthenticated remote attackers to execute arbitrary code. Public exploit code has been added to the Metasploit framework. This vulnerability is being actively exploited in the wild!

Search at Netlas.io:
👉 Link: https://nt.ls/SeHVc
👉 Dork: tag.name:"spip"

Vendor's advisory:
https://blog.spip.net/Mise-a-jour-critique-de-securite-sortie-de-SPIP-4-4-21.html?lang=fr
  • 🔥 3
  • ❤ 2
Older posts →

About this channel

How can I read @netlas without a Telegram account?
TGViewer shows the public web preview Telegram publishes for Netlas.io: recent posts, photos, videos and the subscriber count, with no app, login or account.
How many subscribers does Netlas.io have?
Netlas.io (@netlas) has 2.31K subscribers on Telegram, refreshed roughly every 30 minutes.
Does Netlas.io know I viewed it here?
No. Public channel previews carry no viewer identity, and TGViewer has no accounts or tracking of what you look up.
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →