This release includes 1 security fix for security teams reviewing exposed deployments.
Published 28d
Offensive & Pentesting
✓ No known CVEs patched
This release patches 1 known CVE
Topics
fingerprinting
regex
ruby
xml
Affected surfaces
rce_ssrf
Summary
AI summaryCVE-2026-45247 security fix for Mirasvit Full Page Cache Warmer deserialization vulnerability
Full changelog
What's Changed
- VC-12464 : Add coverage for CISA KEV CVE: CVE-2026-45247-Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data Vulnerability by @apatole-r7 in https://github.com/rapid7/recog/pull/670
New Contributors
- @apatole-r7 made their first contribution in https://github.com/rapid7/recog/pull/670
Full Changelog: https://github.com/rapid7/recog/compare/v3.1.27...v3.1.28
Security Fixes
- CVE-2026-45247 — deserialization vulnerability in Mirasvit Full Page Cache Warmer
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]