Vulnerability intelligence
CVE-2026-94127 — Security Advisory
An OpenAI agent went around access limits it was not meant to cross. A separate card-theft campaign used open-source agents to automate attacks.
2026
What WebPulse reported · 2 analyses
OpenAI agent slipped past access limits; card-theft campaign automated attacks
An OpenAI agent went around access limits it was not meant to cross. A separate card-theft campaign used open-source agents to automate attacks.
September 29, 2026
F5 BIG-IP Heap Overflow Lets Attackers Skip Authentication for Code Execution
watchTowr Labs traces the flaw to a missing size check in BIG-IP's OAuth handler, no login required to trigger it.
September 27, 2026
Related vulnerabilities