Skip to main content
CyberReportedHighDevelopingFeatured
7.1

AI-Discovered Rejetto HFS Flaw Exploited in Wild; Admin RCE Confirmed

CVE-2026-61500 in Rejetto HTTP File Server is under active exploitation, allowing recovery of the session-cookie signing key for admin access and remote code execution. The vulnerability was originally discovered with AI assistance, marking a notable shift in threat research. Immediate patching is critical for exposed instances.

SecurityWeek3 days agoengCredibility 25%View source

Score Breakdown

Mosaic Score7.1
Model confidence0.7
Significance0.8
Source credibility0.3
Source

Related signals

8 found