Joined May 2025
6 Photos and videos
Pinned Tweet
11 Jun 2025
Launching today! Volerion transforms raw CVEs into structured and instant insights #CVE #CyberSecurity #infosec
2
17
40
14,732
🚨 CVE-2026-4633: Keycloak leaks valid usernames by returning different errors during login (remote, no login). Attackers can map accounts for further attacks. Disable Organizations or the identity-first login flow until a fix lands. Full advisory ➡️ volerion.com/vulnerabilities… #Keycloak #infosec #AppSec
3
5
689
🚨 CVE-2026-33011: NestJS apps using @nestjs/platform-fastify let HEAD calls bypass GET middleware, running handlers without checks. Upgrade to 11.1.16 to stay secure. More details ➡️ volerion.com/vulnerabilities… #NestJS #NodeJS #AppSec

48
🚨 CVE-2026-26308: Envoy Proxy merges duplicate headers, letting attackers bypass RBAC Deny rules and reach protected services. Update to 1.37.1 / 1.36.5 / 1.35.9 / 1.34.13 or enable rbac_match_headers_individually. More info ➡️ volerion.com/vulnerabilities… #Envoy #infosec #DevOps

1
139