[CYBERDIGEST]
⊞ Dashboard ⚡ Intelligence 📝 Reports 📚 Global Threats 💻 Hack Lab 🗄️ Resources ⌬ 0xJerry's Lab
📡 RSS Feed
System Online

Tag

#Bifrost

blogHIGH 8.1

CVE-2026-86242: Unauthenticated Remote Code Execution in Bifrost HTTP Transport

CVE-2026-86242 is a high-severity vulnerability in Bifrost HTTP transport versions before 2.0.0. An unauthenticated attacker can exploit this vulnerability by sending a POST request to /api/plugins with a custom plugin path as an HTTP URL, leading to potential remote code execution or server-side request forgery. The vulnerability has a CVSS score of 8.1 and requires immediate attention.

Sep 7, 20261 source