MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 10 h ago, last 10 h ago, peak #4

Zammad warns of session hijacking flaw enabling remote code execution

Original: Zammad security alert: session hijacking and remote code execution CVE-2026-102489 concerns session hijacking that can l

Zammad has issued a security alert for CVE-2026-102489, a session hijacking vulnerability that can lead to remote code execution as the Zammad service account on affected older installations. DIVD reports that the flaw has already been exploited in a real-world incident, prompting urgent calls for administrators to update their systems.

Why now: Confirmed exploitation in a real incident makes this an urgent patching priority for organisations running Zammad.

ZammadCVE-2026-102489DIVD

Open on mastodon →

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/986491