Skip to content

CVE-2026-61500

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
September 30, 2026
Last Seen
October 3, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with...

Public Exploits

Checking GitHub for proof-of-concept code…