For the appliances, access is unauthenticated reachability to exposed DTLS or web-management services.
A network caller needs only reachability to a DTLS-enabled Gateway VIP.
Citrix NetScaler ADC and NetScaler Gateway, customer-managed application-delivery and remote-access appliances.
Unauthenticated root-level code execution on a VPN gateway
Version-specific public code converts a reported memory-corruption condition into a reusable unauthenticated root-execution path.
An unauthenticated caller can complete the DTLS cookie exchange before sending the malicious fragments.
The exploit sends 120 records whose understated fragment lengths make reassembly overflow a smaller scratch buffer with roughly 174 KB of retained data.
Forged objects redirect control flow through a ROP chain and execute shellcode as root; crafted DTLS traffic was also tied to pre-disclosure web-shell activity.
Citrix has shipped a patch, but pre-fix appliance images remain accepted.
The EOL finding concerns EOL software builds. The reviewed sources do not establish whether every individual EOL hardware platform can run a supported fixed release.
The public management interface yields arbitrary file write and command execution.
Fortinet FortiMail, a physical, virtual or cloud-deployed secure email gateway appliance.
Unauthenticated arbitrary file write and command execution on a FortiMail appliance
Observed exploitation and the absence of a shipped effective fix turn exposed management interfaces into an immediate containment problem.
An unauthenticated caller can reach the path through an affected FortiMail HTTP or HTTPS management interface.
Path traversal and NULL-byte handling let that caller write attacker-chosen files to the appliance filesystem.
The written file can then be used to execute unauthorized commands in the FortiMail system context.
Exploitation is occurring while the effective correction remains announced rather than shipped, and pre-fix images remain accepted.
The fixed builds were still described as upcoming, so no fixed image, release notes, or patch diff was available for direct inspection.
macOS on Apple-silicon Macs using an approved USB hub, dock, or multi-port adapter
The demonstrated path requires brief physical access to a free port on a previously approved hub and an unlocked Apple-silicon Mac.
The composite device inherited approval, injected Terminal commands and copied credentials to its flash in about 24 seconds.
With the Mac locked and Lockdown Mode enabled, the interfaces still enumerated, but locked-state execution was not demonstrated.
Physical placement and an unlocked session keep the demonstrated execution path below today’s remote leads.
Thales SConnect, browser-extension middleware and a Windows native host used with eIDs, SWIFT 3SKey and other hardware signing tokens.
The path applies to Windows browsers with the vulnerable SConnect extension and native host installed.
Heap spraying after a failed RSA operation lets attacker content forge origin and package signatures, causing SConnect to load and invoke an attacker DLL.
The current Chrome Web Store listing shows the remediated 2.16.1.2 release.
The installed-helper requirement narrows the population, and a remediated release is available.
Wikipedia for Android, Wikimedia's encyclopedia client running on Android phones and tablets.
An ordinary Android app can target a device with an authenticated Wikipedia session without requesting a privileged permission.
Intent redirection reaches an internal WebView whose cookie proxy exposes CentralAuth cookies and authenticated API responses.
Public proof-of-concept application code demonstrates cookie capture and authenticated API access.
The material held here does not identify the production releases containing the correction.
Dahua IPC and SD-series embedded surveillance cameras and recorders running affected firmware builds.
The attacker needs reachability to the camera’s ONVIF HTTP handler, normally from the LAN but sometimes through port forwarding or UPnP.
A crafted Host header overwrites control data, and a ROP chain invokes attacker-supplied commands.
A patch exists, but the exact target build used by the new exploit is not established in the material held here.
Monta's hosted electric-vehicle charging platform and charging stations connected to it through WebSockets.
The Internet-facing station WebSocket service accepts connections without an account or user interaction.
An accepted caller can act in a charging station’s authority context, access station data and perform unauthorized actions.
No complete shipped fix or demonstrated exploit appears in the held evidence.
Android.Joker, a family of trojanized Android applications distributed through Google Play and other app channels.
The victim must install and run a trojanized Android application.
The newly reported module relays third-party traffic through the handset, giving its operator the victim’s mobile network identity as an exit point.
The capability change is the addition of proxy egress to variants that were distributed through Google Play.
UTMStack, a SIEM and endpoint-monitoring platform whose server dispatches commands to agents on managed Windows and Linux systems.
The attacker needs a valid UTMStack account of any role and access to the incident-command channel.
The handler lacks an administrator-role check and a command allowlist before forwarding commands to an agent.
Agents execute the commands as their service identities, commonly root on Linux or SYSTEM on Windows.
UTMStack 11.2.16 was released on October 1, but its notes do not enumerate this security correction.
Dell Container Storage Modules, Kubernetes control software that connects clusters to Dell storage systems.
The attacker needs a Kubernetes identity permitted to submit a ContainerStorageModule custom resource.
The privileged operator reconciles attacker-controlled resource data without preserving the caller’s privilege boundary, reaching root across all cluster nodes.
Dell has published a remediated CSM release, while pre-fix releases remain available and unrevoked.
The reach is cluster-wide, but only deployments delegating this uncommon resource permission expose the path.
Zammad, a self-hosted customer-support and ticketing platform commonly deployed on Linux.
The chain begins with unauthenticated Internet reachability to an affected self-hosted Zammad instance.
Session hijacking reaches code execution as the zammad service user, and a second flaw elevates that user to root.
DIVD reproduced both stages and observed the complete chain during its own compromise.
The available remediation is partial, leaving one stage of the observed root chain unresolved.
Digi Accelerated Linux, the embedded operating system used across Digi cellular routers, gateways, device servers, and XBee gateway products.
The attacker needs adjacent-network reachability to an enabled DAL OS web-administration interface.
A crafted unauthenticated HTTP POST reaches an operating-system command context and executes commands as root.
The held material establishes neither a shipped correction nor a public execution demonstration.
TP-Link Tapo C120 and C200, Wi-Fi-connected home security cameras running embedded firmware.
The chain applies to Tapo C120 V1 and C200 V5 cameras reachable from the same local network.
Replayed login-challenge data yields an administrative session that can enable a privileged service and reach command execution through unsanitized MacTool input.
The chain is model-specific and same-LAN only; TP-Link published corrected firmware, but that fix was not read for this brief.
GitLab Self-Hosted AI Gateway, the service that brokers GitLab Duo model and agent requests in self-managed installations.
The attacker needs a valid GitLab account with Duo Agent Platform access in a deployment using a self-hosted AI Gateway.
Crafted custom-flow configuration escapes the prompt-template sandbox and executes operating-system commands in the gateway’s service context.
The affected deployment intersection is narrow; GitLab published fixed releases, but the fix was not read for this brief.
U-Boot, the bootloader used by many embedded Linux and Android devices
The attacker must place a crafted image in a configured splash-screen or PXE-menu source.
Repeated EOL or DELTA operations desynchronize the cursor so later pixel runs write into adjacent bootloader memory.
No public work has yet shown a verified-boot bypass or control-flow hijacking on a representative device.
Upstream published a correction, but the fix was not read for this brief.
TP-Link Deco M9 Plus V2, an embedded whole-home mesh Wi-Fi router.
The attacker needs adjacent-network packet delivery to a Deco M9 Plus V2 while it is in its setup phase.
Attacker-controlled TDDPv2 subtype 0x91 data overflows a fixed-size stack buffer and permits code execution.
The exposure is limited to one older hardware revision during setup; TP-Link published corrected firmware, but the fix was not read for this brief.
TP-Link Kasa EC70 and EC71, embedded Wi-Fi home security cameras.
The path requires physical possession, disassembly, restoration of the debug traces and interaction with the boot process.
The production debug interface remains logically enabled and the bootloader remains unlocked despite the severed traces.
An attacker can interrupt boot, change boot parameters and obtain an unauthenticated root shell.
This defeats invasive-tamper resistance rather than a remote boundary; TP-Link published fixed firmware, but the fix was not read for this brief.
Google Chrome desktop and Android browsers processing attacker-controlled WebGL content.
The victim need only load attacker-controlled HTML in an affected Chrome build.
The WebGL path performs an out-of-bounds write that permits arbitrary code execution outside the browser sandbox.
Chrome shipped corrected desktop builds 154.0.8037.97 and 154.0.8037.98, but the available evidence does not establish whether every route back to a pre-fix build is closed.
Google Chrome for Android, the mobile web browser using ANGLE for graphics translation.
The user must load attacker-controlled HTML in an affected Chrome for Android build.
The page reaches ANGLE, triggers a heap buffer overflow and permits execution outside Chrome’s sandbox.
No additional findings today.
No reviewed change established a new Bluetooth capability; the useful movement was boundary and release evidence for already-known fixes.
The same brief, every morning. One email a day, nothing else.
fullchain.sh follows the day’s disclosures from bug to shell — what each one enables, what it links to, and where the fix left the primitive in place.
Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.