MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 10 h ago, last 10 h ago, peak #10

pfSense vulnerability allows privilege injection, patch released

Original: 🚨 EUVD-2026-70495 πŸ“Š Score: 5.1/10 (CVSS v3.1) πŸ“¦ Product: pfSense Plus, pfSense CE 🏒 Vendor: Netgate πŸ“… Published: 2026-09

A medium-severity vulnerability, tracked as EUVD-2026-70495 with a CVSS score of 5.1, affects Netgate's pfSense Plus before version 26.07 and pfSense CE before 2.9.0. The flaw lets authenticated users holding the Status: Monitoring privilege inject arbitrary content, potentially leading to further abuse. Netgate published the advisory on 3 September 2026 and updated it on 1 October; administrators are advised to upgrade.

Why now: Network administrators are checking whether their pfSense firewalls are exposed and applying the fixed versions.

NetgatepfSensepfSense CEpfSense Plus

Open on mastodon β†’

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/649577