Active scanning detected for critical Rejetto HFS vulnerability
Automated scans target servers for CVE-2026-61500, a flaw enabling remote code execution via weak signing key

Key Takeaways
- Automated scanning for Rejetto HFS servers has been detected globally.
- The activity targets CVE-2026-61500, a flaw related to a weak signing key.
- Exploitation could lead to session forgery, account takeover, and remote code execution.
- No official patch has been confirmed; administrators should apply updates and restrict exposure.
- The CVE assignment and scanning claims require independent verification due to date inconsistencies.
Related Security News

Microsoft Exchange Server Flaw CVE-2026-96940 Allows Privilege Escalation
Microsoft has released out-of-band security updates to address CVE-2026-96940, a high-severity vulnerability in Microsoft Exchange Server rated 8.8 on the CVSS scale. The flaw involves weak authorization mechanisms that could allow an authenticated attacker to elevate privileges and access other users' mailboxes. Administrators are urged to apply the updates promptly.



