MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 14 h ago, last 14 h ago, peak #4

High-severity vulnerability disclosed in Capgo update service

Original: 🚨 EUVD-2026-87707 πŸ“Š Score: 8.6/10 (CVSS v3.1) πŸ“¦ Product: capgo.app 🏒 Vendor: Cap-go πŸ“… Published: 2026-09-26 | Updated: 2

A security advisory published as EUVD-2026-87707 describes a vulnerability in Capgo, the over-the-air update service for Capacitor apps, rated 8.6 out of 10 on the CVSS scale. Versions up to 12.261.0 reportedly contain an incomplete access-control fix for the public.sso_providers table, meaning earlier mitigation efforts did not fully close the flaw. The advisory was published on 26 September 2026 and updated on 30 September, prompting developers who rely on Capgo to check whether they need to update.

Why now: Developers using Capgo for app updates are checking whether the newly disclosed access-control flaw affects their deployments.

Cap-goCapgoEUVD-2026-87707

Open on mastodon β†’

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/528010