Cyberpress Stored XSS Vulnerability in RustFS Console Exposes Admin S3 Credentials
Article Content
Browse articles
A stored cross-site scripting (XSS) vulnerability in the RustFS Console has been identified, allowing attackers to steal admin S3 credentials. This flaw poses a significant risk of full account takeovers for affected users. The issue was reported on February 27, 2026, and has been confirmed by multiple cybersecurity sources.
Ask AI about this cluster
Answers cite the sources they use
Updated 182d ago How this analysis works
Timeline
2026-02-27
Vulnerability reported in RustFS Console
2026-02-28
Cyberpress publishes details on the XSS flaw
More articles in this cluster (2)
Continue Reading
Critical Stored XSS Vulnerabilities Found in SiYuan Versions Before 3.7.4 Two critical vulnerabilities, CVE-2026-73050 and CVE-2026-73052, have been identified in SiYuan versions prior to 3.7.4. CVE-2026-73050 allows attackers to exploit stored cross-site scripting (XSS) via unescaped color fields in select options, executing arbitrary JavaScript in victim browsers. CVE-2026-73052 enables…