Critical Vulnerability in Nanobot WhatsApp Bridge Exposed

Critical Vulnerability in Nanobot WhatsApp Bridge Exposed

First seen 18 Feb 2026, 06:07 UTC TenableX 59.5

Article Content

Browse articles
ThreatCluster

A critical vulnerability (CVE-2026-2577) has been identified in the Nanobot WhatsApp bridge, allowing unauthenticated access to the WebSocket server. This flaw enables attackers to hijack WhatsApp sessions, send messages, and intercept communications. Users of the Nanobot service are advised to take immediate precautions.

Timeline

2026-02-16
CVE-2026-2577 published
2026-02-16
Tenable disclosed vulnerability details
2026-02-17
CCB Alert issued warning about the vulnerability