CyberHighConfirmedDeveloping
9.3
Unpatched Kaltura mwEmbed vulnerabilities enable unauthenticated RCE and file exposure
The Hacker News·2 days ago
Threat actors are chaining two vulnerabilities in PaperCut software to achieve unauthenticated remote code execution. Huntress has confirmed initial exploitation in customer environments involving command execution and malicious Java class deployment, indicating a high risk for organizations running unpatched PaperCut servers.