Tag
critical
threat
Unauthenticated SSRF and Secret Exfiltration in Flyto Core
1 rule 4 TTPs 1 CVEAn unauthenticated SSRF vulnerability in the Flyto Core /run endpoint allows attackers to exfiltrate the internal FLYTO_RUNNER_SECRET and perform unauthorized requests against internal infrastructure.
Flyto Core
ssrf
credential-theft
vulnerability
cve-2026-67426
path-traversal
arbitrary-file-write
rce
framework
1r
4t
1c
medium
advisory
Multiple Netty Vulnerabilities Enable Denial of Service Attacks
1 TTPMultiple vulnerabilities in Netty can be exploited by an attacker to conduct Denial of Service (DoS) attacks, impacting the availability of services utilizing the Netty framework.
Netty
denial-of-service
vulnerability
framework
1t