MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 10 h ago, last 10 h ago, peak #11

pfSense vulnerability EUVD-2026-70496 allows privilege injection

Original: 🚨 EUVD-2026-70496 πŸ“Š Score: 5.1/10 (CVSS v3.1) πŸ“¦ Product: pfSense Plus, pfSense CE 🏒 Vendor: Netgate πŸ“… Published: 2026-09

A medium-severity vulnerability, EUVD-2026-70496, has been published for Netgate's pfSense firewall software. Versions of pfSense Plus before 26.07 and pfSense CE before 2.9.0 allow authenticated users holding the Firewall: Rules: Edit privilege to inject data, according to the advisory rated 5.1 out of 10 under CVSS v3.1. The issue was published on 3 September 2026 and updated on 1 October. Administrators running affected versions are advised to update.

Why now: pfSense is widely used by network administrators, and a newly published vulnerability affecting both its commercial and community editions prompts security teams to check and patch their firewalls.

NetgatepfSense PluspfSense CEEUVD-2026-70496

Open on mastodon β†’

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/649578