WhisperX tag archive

#CVE-2026-4800

This page collects WhisperX intelligence signals tagged #CVE-2026-4800. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-04-10 09:39:45 · GitHub Issues

1. Lodash Security Patch v4.18.1 Addresses Critical Template Injection Vulnerability (CVE-2026-4800)

A critical security vulnerability in the ubiquitous JavaScript utility library Lodash has been patched, exposing a path for remote code execution. The flaw, tracked as CVE-2026-4800, resides in the `_.template` function and stems from incomplete validation of user input. While a previous patch (CVE-2021-23337) secured ...

The Lab · 2026-05-01 22:54:06 · GitHub Issues

2. CVE-2026-4800: Critical Lodash RCE Flaw Discovered in fosrl/pangolin Docker Image (CVSS 9.8)

Security researchers have identified a critical remote code execution vulnerability in the popular `fosrl/pangolin:1.18.1` Docker image, stemming from a compromised lodash package. Tracked as CVE-2026-4800 with a near-maximum CVSS score of 9.8, the flaw enables arbitrary code execution through unfiltered inputs in temp...