WhisperX tag archive

#plugin-system

This page collects WhisperX intelligence signals tagged #plugin-system. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-30 16:54:12 · GitHub Issues

1. SharpSite Plugin System Exposed to Critical RCE via Insecure JSON Deserialization

A P0 security vulnerability has been identified in SharpSite's plugin and configuration system, exposing at least four code locations to Remote Code Execution (RCE) through insecure deserialization. The flaw centers on Newtonsoft.Json's `TypeNameHandling.Auto` setting, a well-documented attack vector that allows advers...