PatchSiren

projectdiscovery CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH projectdiscovery CVE published 2026-09-16

CVE-2026-92718

CVE-2026-92718 Nuclei Template Signature Verification Bypass. Nuclei versions before 3.11.1 are vulnerable to a template signature verification bypass due to caching based solely on file modification time without content checksums. This allows attackers to replace verified templates with unsigned malicious content and restore the original modification time, potentially leading to arbitrary code execution. [truncated]